1. 5fa2a19 Make lmkd enforcing. by Nick Kralevich · 11 years ago
  2. 5467fce initial lmkd policy. by Nick Kralevich · 11 years ago
  3. af21e71 Merge "Make the sdcardd domain enforcing." by Nick Kralevich · 11 years ago
  4. bfa785a Merge "Make racoon permissive or unconfined." by Nick Kralevich · 11 years ago
  5. 9f5241e Merge "Remove block device access from unconfined domains." by Nick Kralevich · 11 years ago
  6. 00abfd6 Merge "Make ppp permissive or unconfined." by Nick Kralevich · 11 years ago
  7. 9145918 Merge "Make mtp permissive or unconfined." by Nick Kralevich · 11 years ago
  8. a792bca Merge "Make dnsmasq permissive or unconfined." by Nick Kralevich · 11 years ago
  9. 4ba8707 Merge "Update hostapd domain for /data/misc/wifi/sockets label change." by Nick Kralevich · 11 years ago
  10. bbfa352 Merge "Make inputflinger permissive or unconfined." by Nick Kralevich · 11 years ago
  11. b5558aa Merge "Make lmkd permissive or unconfined." by Nick Kralevich · 11 years ago
  12. d20c0c2 Merge "Finish fixing Zygote descriptor leakage problem" by Dave Platt · 11 years ago
  13. 3f40d4f Remove block device access from unconfined domains. by Stephen Smalley · 11 years ago
  14. 5487ca0 Remove several superuser capabilities from unconfined domains. by Stephen Smalley · 11 years ago
  15. 3db328f Merge "Make clatd permissive or unconfined." by Daniel Cashman · 11 years ago
  16. b081cc1 Remove mount-related permissions from unconfined domains. by Stephen Smalley · 11 years ago
  17. 48b1883 Introduce asec_public_file type. by Robert Craig · 11 years ago
  18. f206737 Update hostapd domain for /data/misc/wifi/sockets label change. by Stephen Smalley · 11 years ago
  19. f321456 Make clatd permissive or unconfined. by Stephen Smalley · 11 years ago
  20. c6a28f0 Make dnsmasq permissive or unconfined. by Stephen Smalley · 11 years ago
  21. 5970259 Make mtp permissive or unconfined. by Stephen Smalley · 11 years ago
  22. cc65fe8 Make ppp permissive or unconfined. by Stephen Smalley · 11 years ago
  23. 97f7c82 Make racoon permissive or unconfined. by Stephen Smalley · 11 years ago
  24. 2561a9a Make lmkd permissive or unconfined. by Stephen Smalley · 11 years ago
  25. 38b7f43 Make inputflinger permissive or unconfined. by Stephen Smalley · 11 years ago
  26. 49bd91d Make the sdcardd domain enforcing. by Stephen Smalley · 11 years ago
  27. e21871c Address screenrecord denials. by rpcraig · 11 years ago
  28. 0b218ec Finish fixing Zygote descriptor leakage problem by Dave Platt · 11 years ago
  29. 629c98c Fix NFC image transfer by Nick Kralevich · 11 years ago
  30. 10baf47 Merge "Revert "Move tlcd_sock policy over to manta."" by Nick Kralevich · 11 years ago
  31. 1a1ad95 Revert "Move tlcd_sock policy over to manta." by Nick Kralevich · 11 years ago
  32. 94e0652 Merge "Add file_contexts entries for socket files." by Nick Kralevich · 11 years ago
  33. a7e4ace Add file_contexts entries for socket files. by Stephen Smalley · 11 years ago
  34. 8cd400d Move tlcd_sock policy over to manta. by Stephen Smalley · 11 years ago
  35. ba1a731 allow wpa_cli to work. by Nick Kralevich · 11 years ago
  36. 418e2ab Label /data/misc/wifi/sockets with wpa_socket. by Stephen Smalley · 11 years ago
  37. 8ed750e sepolicy: Add write_logd, read_logd & control_logd by Mark Salyzyn · 11 years ago
  38. a637b2f assert: Do not allow access to generic device:chr_file by William Roberts · 11 years ago
  39. d0919ec assert: do not allow raw access to generic block_device by William Roberts · 11 years ago
  40. b71dae8 Merge "drmserver: allow looking in efs_file directories" by Nick Kralevich · 11 years ago
  41. 9dbd005 Update README. by Robert Craig · 11 years ago
  42. d4f6c5f Merge "Catch nonexistent BOARD_SEPOLICY_UNION policy files." by Nick Kralevich · 11 years ago
  43. 7cbe44f drmserver: allow looking in efs_file directories by Nick Kralevich · 11 years ago
  44. 8d9ef06 Merge "Remove MAC capabilities from unconfined domains." by Nick Kralevich · 11 years ago
  45. 04ee5df Remove MAC capabilities from unconfined domains. by Stephen Smalley · 11 years ago
  46. 0cbf06f Drop the typealias for camera_calibration_file. by Robert Craig · 11 years ago
  47. 208deb3 Allow dumpstate to run am and shell. by Stephen Smalley · 11 years ago
  48. 6b0ff47 Catch nonexistent BOARD_SEPOLICY_UNION policy files. by Robert Craig · 11 years ago
  49. 997680a bluetooth: allow media_rw_data_file by Nick Kralevich · 11 years ago
  50. c669667 Merge "fix healthd charger mode." by Nick Kralevich · 11 years ago
  51. 251ba76 Allow "mkdir /sdcard/foo" by Nick Kralevich · 11 years ago
  52. 0352393 fix healthd charger mode. by Nick Kralevich · 11 years ago
  53. dffe634 Merge "Make drmserver enforcing." by Nick Kralevich · 11 years ago
  54. 1935173 Merge "Move adbd into enforcing (all build types)" by Nick Kralevich · 11 years ago
  55. f956366 Move adbd into enforcing (all build types) by Nick Kralevich · 11 years ago
  56. fed8a2a Remove transition / dyntransition from unconfined by Nick Kralevich · 11 years ago
  57. 5eca63f Make drmserver enforcing. by Nick Kralevich · 11 years ago
  58. 76d1476 Merge "Allow all appdomains to grab file attributes of wallpaper_file." by Nick Kralevich · 11 years ago
  59. 5c9c312 Move shell into enforcing for everyone. by Nick Kralevich · 11 years ago
  60. d233350 Merge "Support running adbd in the su domain." by Nick Kralevich · 11 years ago
  61. fc4c6b7 Allow all appdomains to grab file attributes of wallpaper_file. by Robert Craig · 11 years ago
  62. 7d0f955 Support running adbd in the su domain. by Nick Kralevich · 11 years ago
  63. 2c1a0ad Make healthd enforcing. by Stephen Smalley · 11 years ago
  64. 190c704 Allow healthd to read/write /dev/__null_. by Stephen Smalley · 11 years ago
  65. 129f8df Allow mediaserver to create dirs under /data/mediadrm. by rpcraig · 11 years ago
  66. 2e7a301 Address bug report denials. by Nick Kralevich · 11 years ago
  67. d14e9de Make bluetooth enforcing (again). by Stephen Smalley · 11 years ago
  68. 09f6a99 Allow mediaserver to connect to bluetooth. by Stephen Smalley · 11 years ago
  69. 94f322e Remove /sys/class/rfkill/rfkill.* lines by Nick Kralevich · 11 years ago
  70. 05e719b Merge "Allow drmserver to unlink old socket file." by Nick Kralevich · 11 years ago
  71. e9d3660 Merge "Make wpa_supplicant enforcing." by Nick Kralevich · 11 years ago
  72. d9b8ef4 Drop legacy device types. by Stephen Smalley · 11 years ago
  73. e11935d Allow drmserver to unlink old socket file. by Stephen Smalley · 11 years ago
  74. 5eab3ab Merge "Confine gpsd, but leave it permissive for now." by Nick Kralevich · 11 years ago
  75. b1016ed Make hci_attach enforcing. by Stephen Smalley · 11 years ago
  76. 63c26f6 Make wpa_supplicant enforcing. by Stephen Smalley · 11 years ago
  77. a60abdc Confine gpsd, but leave it permissive for now. by Stephen Smalley · 11 years ago
  78. 08fffc5 Revert "Revert "Strip file execute permissions from unconfined domains."" by Stephen Smalley · 11 years ago
  79. 8aae7bd Revert "Revert "Strip exec* permissions from unconfined domains."" by Stephen Smalley · 11 years ago
  80. 9fe4e7b ashmem_device is a character device, not a regular file. by Stephen Smalley · 11 years ago
  81. 9a40702 Allow recovery to execute ashmem_device and tmpfs. by Stephen Smalley · 11 years ago
  82. 810fc5d Merge "Add an exception for bluetooth to the sysfs neverallow rule." by Nick Kralevich · 11 years ago
  83. 7611b60 Merge "Support forcing permissive domains to unconfined." by Nick Kralevich · 11 years ago
  84. 570e5f4 Move adbd into enforcing on user devices by Nick Kralevich · 11 years ago
  85. 200e97d Merge "Add a domain for the recovery console." by Nick Kralevich · 11 years ago
  86. 6d10ca8 Add a domain for the recovery console. by Stephen Smalley · 11 years ago
  87. df8af76 Add an exception for bluetooth to the sysfs neverallow rule. by Stephen Smalley · 11 years ago
  88. 40ce0bb allow adbd setpcap by Nick Kralevich · 11 years ago
  89. 623975f Support forcing permissive domains to unconfined. by Nick Kralevich · 11 years ago
  90. 06a0d78 Merge "Revert "Strip exec* permissions from unconfined domains."" by Nick Kralevich · 11 years ago
  91. 89740a6 Revert "Strip exec* permissions from unconfined domains." by Nick Kralevich · 11 years ago
  92. e030950 Merge "Do not allow zygote to execve dalvikcache files." by Nick Kralevich · 11 years ago
  93. e210b20 Merge "Revert "Make bluetooth enforcing."" by Nick Kralevich · 11 years ago
  94. 85396e9 Revert "Make bluetooth enforcing." by Nick Kralevich · 11 years ago
  95. d7da665 Merge "Create new conditional userdebug_or_eng" by Nick Kralevich · 11 years ago
  96. 41a487d Merge "Revert "Strip file execute permissions from unconfined domains."" by Nick Kralevich · 11 years ago
  97. 43ddc10 Revert "Strip file execute permissions from unconfined domains." by Nick Kralevich · 11 years ago
  98. 88ce951 Create new conditional userdebug_or_eng by Nick Kralevich · 11 years ago
  99. 49c995d Do not allow zygote to execve dalvikcache files. by Stephen Smalley · 11 years ago
  100. 39fd781 Remove domain init:unix_stream_socket connectto permission. by Stephen Smalley · 11 years ago