Gitiles
Code Review
Sign In
gerrit-public.fairphone.software
/
fp2-dev
/
platform
/
external
/
sepolicy
/
792d8650d3dd5e0362a2a04a0af77f751a84b1de
792d865
Allow sdcardd to read /data/.layout_version
by Nick Kralevich
· 10 years ago
12b8f79
Allow dumpstate to read /data/tombstones.
by Christopher Ferris
· 10 years ago
af4a3db
Merge "DO NOT MERGE. Update readme to reflect addition of SEPOLICY_IGNORE." into lmp-dev
by dcashman
· 10 years ago
ea44c79
DO NOT MERGE. Update readme to reflect addition of SEPOLICY_IGNORE.
by dcashman
· 10 years ago
9f49e9f
Merge "Move MmsService into phone process (2/2)" into lmp-dev
by Ye Wen
· 10 years ago
eb8d86c
Move MmsService into phone process (2/2)
by Ye Wen
· 10 years ago
9d2703a
Prohibit execute to fs_type other than rootfs for most domains.
by Stephen Smalley
· 10 years ago
3cfc7ea
sepolicy: allow charger to read /sys/fs/pstore/console-ramoops
by Colin Cross
· 10 years ago
bf69632
DO NOT MERGE: Remove service_manager audit_allows.
by Riley Spahn
· 10 years ago
4a24475
Further refined service_manager auditallow statements.
by Riley Spahn
· 10 years ago
14aa7c0
Refine service_manager find auditallow statements.
by Riley Spahn
· 10 years ago
ac47ee2
Add com.android.net.IProxyService to service_contexts.
by Riley Spahn
· 10 years ago
57f1b89
lmkd: avoid locking libsigchain into memory
by Nick Kralevich
· 10 years ago
08ac124
Merge "Add MediaProjectionManagerService to service list DO NOT MERGE" into lmp-dev
by Michael Wright
· 10 years ago
0ccfd5d
Add MediaProjectionManagerService to service list DO NOT MERGE
by Michael Wright
· 10 years ago
e4aa75d
dex2oat: fix forward-locked upgrades with unlabeled asecs
by Nick Kralevich
· 10 years ago
555c3c5
lmkd: allow lmkd to lock itself in memory
by Nick Kralevich
· 10 years ago
64940d8
Add "webviewupdate" system server service.
by Torne (Richard Coles)
· 10 years ago
94b2ba9
dex2oat: fix forward locked apps
by Nick Kralevich
· 10 years ago
d263576
Remove auditallow from system_server.
by Riley Spahn
· 10 years ago
354d6ca
Remove radio_service from untrusted_app auditallow.
by Riley Spahn
· 10 years ago
2203fda
lmkd: allow removing cgroups and setting self to SCHED_FIFO
by Colin Cross
· 10 years ago
caf347b
Tweak rules for su domain.
by Nick Kralevich
· 10 years ago
344fc10
Add access control for each service_manager action.
by Riley Spahn
· 10 years ago
10370f5
fix system_server dex2oat exec
by Nick Kralevich
· 10 years ago
8ee37b4
reconcile aosp (c103da877b72aae80616dbc192982aaf75dfe888) after branching. Please do not merge.
by Ed Heyl
· 10 years ago
81839df
reconcile aosp (3a8c5dc05fb7696dd81b8a7c1b2524224154e8ea) after branching. Please do not merge.
by Ed Heyl
· 10 years ago
7563a6f
reconcile aosp (a7c04dcd748e1a9daf374551303a3bd578305cf9) after branching. Please do not merge.
by Ed Heyl
· 10 years ago
e9c90bd
reconcile aosp (4da3bb1481e4e894a7dee3f3b9ec8cef6f6b1aed) after branching. Please do not merge.
by Ed Heyl
· 10 years ago
2aa727e
DO NOT MERGE: Flip FORCE_PERMISSIVE_TO_UNCONFINED to true
by Nick Kralevich
· 10 years ago
0ff90f1
am 2f91ce55: am e4409728: am 65edb75d: Allow netd to create data files in /data/misc/net/.
by Sreeram Ramachandran
· 10 years ago
deb52ba
am 1c7463ac: am d27aeb21: am e9d97b74: recovery: allow read access to fuse filesystem
by Nick Kralevich
· 10 years ago
69aaf4a
am ddfaf822: am d86b0a81: am 9f6af083: New domain "install_recovery"
by Nick Kralevich
· 10 years ago
611922e
am 554a8a3d: am e900e573: am 77e85289: Merge "Rules to allow installing package directories."
by Jeff Sharkey
· 10 years ago
2f91ce5
am e4409728: am 65edb75d: Allow netd to create data files in /data/misc/net/.
by Sreeram Ramachandran
· 10 years ago
1c7463a
am d27aeb21: am e9d97b74: recovery: allow read access to fuse filesystem
by Nick Kralevich
· 10 years ago
ddfaf82
am d86b0a81: am 9f6af083: New domain "install_recovery"
by Nick Kralevich
· 10 years ago
554a8a3
am e900e573: am 77e85289: Merge "Rules to allow installing package directories."
by Jeff Sharkey
· 10 years ago
9f88bc5
support newer-style adbd interface in recovery
by Doug Zongker
· 10 years ago
a50467c
am a2933b66: am 2b3c5de2: Merge "install_recovery: start enforcing SELinux rules"
by Nick Kralevich
· 10 years ago
a2933b6
am 2b3c5de2: Merge "install_recovery: start enforcing SELinux rules"
by Nick Kralevich
· 10 years ago
d684f1a
am 5b347a60: am 1d2ff869: allow ueventd sysfs_type lnk_file
by Nick Kralevich
· 10 years ago
5b347a6
am 1d2ff869: allow ueventd sysfs_type lnk_file
by Nick Kralevich
· 10 years ago
1d2ff86
allow ueventd sysfs_type lnk_file
by Nick Kralevich
· 10 years ago
feb5944
am 5b5ba50f: am b59dc27a: Drop sys_rawio neverallow for tee
by Nick Kralevich
· 10 years ago
5b5ba50
am b59dc27a: Drop sys_rawio neverallow for tee
by Nick Kralevich
· 10 years ago
b59dc27
Drop sys_rawio neverallow for tee
by Nick Kralevich
· 10 years ago
2cfe1fa
am 7e953e77: am f5835666: Don\'t use don\'t
by Nick Kralevich
· 10 years ago
7e953e7
am f5835666: Don\'t use don\'t
by Nick Kralevich
· 10 years ago
eec3c7c
am f7cf7a4b: am 99d86c7a: ensure that untrusted_app can\'t set properties
by Nick Kralevich
· 10 years ago
f7cf7a4
am 99d86c7a: ensure that untrusted_app can\'t set properties
by Nick Kralevich
· 10 years ago
f583566
Don't use don't
by Nick Kralevich
· 10 years ago
99d86c7
ensure that untrusted_app can't set properties
by Nick Kralevich
· 10 years ago
88a65e2
am bfd4eac7: am 5d60f04e: sepolicy: allow system server to remove cgroups
by Colin Cross
· 10 years ago
efcb594
am aaaeb02e: am 2cd9c9bd: Merge "Typedef+rules for SysSer to access persistent block device"
by Andres Morales
· 10 years ago
389ac06
am 568443bc: am d3356826: Let DCS read staged APK clusters.
by Jeff Sharkey
· 10 years ago
bfd4eac
am 5d60f04e: sepolicy: allow system server to remove cgroups
by Colin Cross
· 10 years ago
aaaeb02
am 2cd9c9bd: Merge "Typedef+rules for SysSer to access persistent block device"
by Andres Morales
· 10 years ago
568443b
am d3356826: Let DCS read staged APK clusters.
by Jeff Sharkey
· 10 years ago
5d60f04
sepolicy: allow system server to remove cgroups
by Colin Cross
· 10 years ago
d335682
Let DCS read staged APK clusters.
by Jeff Sharkey
· 10 years ago
254953d
am 9c52a78c: am e844113b: Allow SystemServer to start PersistentDataBlockService
by Andres Morales
· 10 years ago
9c52a78
am e844113b: Allow SystemServer to start PersistentDataBlockService
by Andres Morales
· 10 years ago
2b3c5de
Merge "install_recovery: start enforcing SELinux rules"
by Nick Kralevich
· 10 years ago
0f30a44
install_recovery: start enforcing SELinux rules
by Nick Kralevich
· 10 years ago
2cd9c9b
Merge "Typedef+rules for SysSer to access persistent block device"
by Andres Morales
· 10 years ago
d8447fd
Typedef+rules for SysSer to access persistent block device
by Andres Morales
· 10 years ago
43613e6
am 5e476c36: am d2d172a3: Allow dumpstate to read the list of routing tables.
by Sreeram Ramachandran
· 10 years ago
e844113
Allow SystemServer to start PersistentDataBlockService
by Andres Morales
· 10 years ago
5e476c3
am d2d172a3: Allow dumpstate to read the list of routing tables.
by Sreeram Ramachandran
· 10 years ago
d2d172a
Allow dumpstate to read the list of routing tables.
by Sreeram Ramachandran
· 10 years ago
d9cb5ea
am e4409728: am 65edb75d: Allow netd to create data files in /data/misc/net/.
by Sreeram Ramachandran
· 10 years ago
e440972
am 65edb75d: Allow netd to create data files in /data/misc/net/.
by Sreeram Ramachandran
· 10 years ago
65edb75
Allow netd to create data files in /data/misc/net/.
by Sreeram Ramachandran
· 10 years ago
0cbdd20
am d27aeb21: am e9d97b74: recovery: allow read access to fuse filesystem
by Nick Kralevich
· 10 years ago
d27aeb2
am e9d97b74: recovery: allow read access to fuse filesystem
by Nick Kralevich
· 10 years ago
e9d97b7
recovery: allow read access to fuse filesystem
by Nick Kralevich
· 10 years ago
3173988
am d86b0a81: am 9f6af083: New domain "install_recovery"
by Nick Kralevich
· 10 years ago
d86b0a8
am 9f6af083: New domain "install_recovery"
by Nick Kralevich
· 10 years ago
9f6af08
New domain "install_recovery"
by Nick Kralevich
· 10 years ago
7deb1b0
am e900e573: am 77e85289: Merge "Rules to allow installing package directories."
by Jeff Sharkey
· 10 years ago
e900e57
am 77e85289: Merge "Rules to allow installing package directories."
by Jeff Sharkey
· 10 years ago
c02c98d
Rules to allow installing package directories.
by Jeff Sharkey
· 10 years ago
0c9a873
am 51ad2ad3: am c2ba5ed9: recovery: start enforcing SELinux rules
by Nick Kralevich
· 10 years ago
51ad2ad
am c2ba5ed9: recovery: start enforcing SELinux rules
by Nick Kralevich
· 10 years ago
c2ba5ed
recovery: start enforcing SELinux rules
by Nick Kralevich
· 10 years ago
094f399
am b23905e5: am 3508d611: fix build.
by Nick Kralevich
· 10 years ago
b23905e
am 3508d611: fix build.
by Nick Kralevich
· 10 years ago
48ffa6f
fix build.
by Nick Kralevich
· 10 years ago
3508d61
fix build.
by Nick Kralevich
· 10 years ago
bb2a06a
am e9f1c019: am 558710cd: recovery: allow relabelto unlabeled and other unlabeled rules
by Nick Kralevich
· 10 years ago
e9f1c01
am 558710cd: recovery: allow relabelto unlabeled and other unlabeled rules
by Nick Kralevich
· 10 years ago
558710c
recovery: allow relabelto unlabeled and other unlabeled rules
by Nick Kralevich
· 10 years ago
0cac452
am 04aabbac: am c0088b80: Merge "Add neverallow rules further restricing service_manager."
by Nick Kralevich
· 10 years ago
04aabba
am c0088b80: Merge "Add neverallow rules further restricing service_manager."
by Nick Kralevich
· 10 years ago
f435953
am 7b7a25ea: am b8bdfde3: ueventd: Add policy support for ueventd labeling changes
by Nick Kralevich
· 10 years ago
7b7a25e
am b8bdfde3: ueventd: Add policy support for ueventd labeling changes
by Nick Kralevich
· 10 years ago
b8bdfde
ueventd: Add policy support for ueventd labeling changes
by Nick Kralevich
· 10 years ago
77e8528
Merge "Rules to allow installing package directories."
by Jeff Sharkey
· 10 years ago
be092af
Rules to allow installing package directories.
by Jeff Sharkey
· 10 years ago
Next »