Sign in
android
/
platform
/
external
/
sepolicy
/
HEAD
c81ebe5
Delete external/sepolicy files.
by Nick Kralevich
· 8 years ago
main
master
6937aa9
refine /data/misc/logd rules
by Nick Kralevich
· 8 years ago
4d19f98
Add mlstrustedobject to appfuse object type.
by Daichi Hirono
· 8 years ago
0144eed
Merge "init: logpersist access on debug"
by Mark Salyzyn
· 8 years ago
8ae52a0
Merge "dumpstate: access to /data/misc/recovery"
by Mark Salyzyn
· 8 years ago
4bf9a47
dumpstate: access to /data/misc/recovery
by Mark Salyzyn
· 8 years ago
121f5bf
init: logpersist access on debug
by Mark Salyzyn
· 8 years ago
369cf8c
neverallow /data/anr access for isolated/untrusted apps
by Nick Kralevich
· 8 years ago
f2d0790
sysfs_uio: declare type in core policy
by Jeff Vander Stoep
· 8 years ago
df72abb
Move sysfs_thermal to global policy and grant access.
by dcashman
· 8 years ago
16fe52c
Add recovery_persist & recovery_refresh
by Mark Salyzyn
· 8 years ago
af3ca33
global_macros: Allow directory locking
by Nick Kralevich
· 8 years ago
0792d8a
system_server.te: expand app_data_file neverallow rule
by Nick Kralevich
· 8 years ago
610f461
Add rules to allow dumpstate to run systrace.
by Felipe Leme
· 8 years ago
dda5590
Add /data/lib64, /data/vendor/lib64 to ASan sepolicy.
by Evgenii Stepanov
· 8 years ago
9ed71ef
Mark batteryproperties service as app_api_service.
by dcashman
· 8 years ago
f100b2c
Create sysfs_hwrandom type.
by dcashman
· 8 years ago
1c98332
Leftovers of SELinux policy reload mechanism
by Janis Danisevskis
· 8 years ago
f4c403d
Allow domains to getattr proc lnk_file.
by dcashman
· 8 years ago
07e6b04
Merge "Allow debuggerd to send SIGKILL."
by Josh Gao
· 8 years ago
a57cff0
Merge "Remove procfs file read perm from untrusted_app."
by Daniel Cashman
· 8 years ago
48141c3
Allow debuggerd to send SIGKILL.
by Josh Gao
· 8 years ago
b64ea38
Remove procfs file read perm from untrusted_app.
by dcashman
· 8 years ago
3c47d5a
Merge "New postinstall domain and rules to run post-install program."
by Alex Deymo
· 8 years ago
edd86a6
Merge "New postinstall domain and rules to run post-install program."
by Alex Deymo
· 8 years ago
d27df96
Update netlink socket classes. am: 01d95c23ab
by Stephen Smalley
· 8 years ago
01d95c2
Update netlink socket classes.
by Stephen Smalley
· 9 years ago
6cb2c89
New postinstall domain and rules to run post-install program.
by Alex Deymo
· 8 years ago
1274aa1
suppress unnecessary makefile output am: 6ef10bd48b
by Nick Kralevich
· 8 years ago
6ef10bd
suppress unnecessary makefile output
by Nick Kralevich
· 8 years ago
087601e
Allow bluetooth access to the tun device. am: 9a1347eee6
by Nick Kralevich
· 8 years ago
9a1347e
Allow bluetooth access to the tun device.
by Nick Kralevich
· 8 years ago
0551e9e
Don\'t allow permissive SELinux domains on user builds. am: bca98efa57
by Nick Kralevich
· 8 years ago
bca98ef
Don't allow permissive SELinux domains on user builds.
by Nick Kralevich
· 8 years ago
fff4bf7
Label /proc/meminfo. am: f25ea5f9c0
by dcashman
· 8 years ago
f25ea5f
Label /proc/meminfo.
by dcashman
· 8 years ago
9b7d419
Allow access to the daydream ("dreams") service. am: 7905d6819e
by Dan Sandler
· 8 years ago
7905d68
Allow access to the daydream ("dreams") service.
by Dan Sandler
· 8 years ago
fe06f87
Add recovery service. am: 65b5fde912
by Tao Bao
· 8 years ago
65b5fde
Add recovery service.
by Tao Bao
· 8 years ago
brillo-m10-dev
brillo-m10-release
ead74ee
Enable recovery to read batteryinfo. am: 6b843bcff0
by Yabin Cui
· 8 years ago
6b843bc
Enable recovery to read batteryinfo.
by Yabin Cui
· 8 years ago
a2c93a4
Merge commit '563b2bfc73740720af9f9048ad164e6f5a9f9128' into HEAD
by Bill Yi
· 8 years ago
9bb93fa
Merge "Allow logd.auditd to reboot to safe mode"
by Sami Tolvanen
· 8 years ago
b38e279
Allow netd to use NETLINK_SOCK_DIAG.
by Lorenzo Colitti
· 8 years ago
9c16871
Allow logd.auditd to reboot to safe mode
by Sami Tolvanen
· 8 years ago
c1e4883
Merge "Remove appdomain sysfs auditallow."
by Daniel Cashman
· 8 years ago
0b80f4d
Remove appdomain sysfs auditallow.
by dcashman
· 8 years ago
e931bdd
Merge changes from topic 'checkseapp-fixups'
by Jeffrey Vander Stoep
· 8 years ago
eb43e65
uncrypt: drop generic block_device allow rules
by Nick Kralevich
· 8 years ago
3ec34ce
update_engine: Allow to access bootctrl_block_device.
by Tao Bao
· 8 years ago
bd0768c
untrusted_app: confine filesystem creation to sandbox
by William Roberts
· 8 years ago
eebdb47
Allow system apps (Settings) to configure Bluetooth properties
by Andre Eisenbach
· 8 years ago
e3965aa
Merge "Add SELinux label for app fuse."
by Daichi Hirono
· 8 years ago
abf31ac
Allow domain to read proc dirs.
by dcashman
· 8 years ago
35a1451
Replace "neverallow domain" by "neverallow *"
by Nick Kralevich
· 8 years ago
e178ac5
Add SELinux label for app fuse.
by Daichi Hirono
· 8 years ago
d143560
persist.mmc.* only set in init
by Mark Salyzyn
· 8 years ago
4c42a0d
Merge "Fix SELinux warning when passing fuse FD from system server."
by Daichi Hirono
· 8 years ago
59e3d7b
Fix SELinux warning when passing fuse FD from system server.
by Daichi Hirono
· 8 years ago
84fbd53
Merge "init: allow to access console-ramoops with newer kernels"
by Jeffrey Vander Stoep
· 8 years ago
29adea5
checkseapp: remove .data = NULL assignments
by William Roberts
· 8 years ago
c92dae9
checkseapp: remove data types form static map
by William Roberts
· 8 years ago
696a66b
checkseapp: generalize input validation
by William Roberts
· 8 years ago
efebf97
checkseapp: update error message output
by William Roberts
· 8 years ago
25528cf
checkseapp: declare internal function as static
by William Roberts
· 8 years ago
3d8391e
Merge "mediaserver: grant perms from domain_deprecated"
by Jeffrey Vander Stoep
· 8 years ago
61e9386
Merge "logd: grant perms from domain_deprecated"
by Jeffrey Vander Stoep
· 8 years ago
e48ab78
Merge "kernel: grant perms from domain_deprecated"
by Jeffrey Vander Stoep
· 8 years ago
72e78bf
mediaserver: grant perms from domain_deprecated
by Jeff Vander Stoep
· 8 years ago
2f3979a
logd: grant perms from domain_deprecated
by Jeff Vander Stoep
· 8 years ago
bc2b76b
kernel: grant perms from domain_deprecated
by Jeff Vander Stoep
· 8 years ago
0e591bd
Allow apps to check attrs of /cache
by dcashman
· 8 years ago
1cf9321
Merge "vold: grant perms from domain_deprecated"
by Jeffrey Vander Stoep
· 8 years ago
f33507d
Merge "healthd: grant perms from domain_deprecated"
by Jeffrey Vander Stoep
· 8 years ago
fea9ad7
Merge "remove access_kmsg macro, because it to be more explicit."
by Daniel Cashman
· 8 years ago
eecaa0b
Merge "zygote: grant perms from domain_deprecated"
by Jeffrey Vander Stoep
· 8 years ago
9306072
vold: grant perms from domain_deprecated
by Jeff Vander Stoep
· 8 years ago
12401b8
healthd: grant perms from domain_deprecated
by Jeff Vander Stoep
· 8 years ago
cee6a0e
zygote: grant perms from domain_deprecated
by Jeff Vander Stoep
· 8 years ago
db559a3
Allow sdcardd tmpfs read access.
by dcashman
· 8 years ago
98f60e5
Merge "Revert "zygote: grant perms from domain_deprecated""
by Jeffrey Vander Stoep
· 8 years ago
b898360
Revert "zygote: grant perms from domain_deprecated"
by Jeffrey Vander Stoep
· 8 years ago
4115bea
Merge "zygote: grant perms from domain_deprecated"
by Jeffrey Vander Stoep
· 8 years ago
e52fff8
zygote: grant perms from domain_deprecated
by Jeff Vander Stoep
· 8 years ago
9a28f90
init: allow to access console-ramoops with newer kernels
by Sylvain Chouleur
· 8 years ago
c4121ad
Merge "Revert "Remove domain_deprecated from sdcard domains""
by Narayan Kamath
· 8 years ago
f4d7eef
Revert "Remove domain_deprecated from sdcard domains"
by Narayan Kamath
· 8 years ago
be0616b
domain: grant write perms to cgroups
by Jeff Vander Stoep
· 8 years ago
5833e3f
Restore untrusted_app proc_net access.
by dcashman
· 8 years ago
001b10b
remove access_kmsg macro, because it to be more explicit.
by SimHyunYong
· 8 years ago
093ea6f
Using r_dir_file macro in domain.te
by SimHyunYong
· 8 years ago
cdae042
Merge "Remove domain_deprecated from sdcard domains"
by Jeffrey Vander Stoep
· 8 years ago
ae29dea
Merge "bootstat: Fix the SELinux policy after removing domain_deprecated."
by James Hawkins
· 8 years ago
2e8d71c
bootstat: Fix the SELinux policy after removing domain_deprecated.
by James Hawkins
· 8 years ago
7171232
Delete policy it is alread included in binder_call macros.
by SimHyunYong
· 8 years ago
0220b34
Merge "Delete duplicated policy, it is already include in app.te."
by Jeffrey Vander Stoep
· 8 years ago
6899e0a
Merge "Allow update_engine to use Binder IPC."
by Tao Bao
· 8 years ago
5ba9af2
Delete duplicated policy, it is already include in app.te.
by SimHyunYong
· 8 years ago
dce317c
Allow update_engine to use Binder IPC.
by Tao Bao
· 8 years ago
Next »