Gitiles
Code Review
Sign In
gerrit-public.fairphone.software
/
fp2-dev
/
platform
/
external
/
sepolicy
/
e7355fe584e5289540c5a90043c9465cc508c920
/
mediaserver.te
bf69632
DO NOT MERGE: Remove service_manager audit_allows.
by Riley Spahn
· 10 years ago
344fc10
Add access control for each service_manager action.
by Riley Spahn
· 10 years ago
f0ffff0
Make the mediaserver domain enforcing.
by Stephen Smalley
· 10 years ago
f90c41f
Add SELinux rules for service_manager.
by Riley Spahn
· 10 years ago
a16a59e
Remove graphics_device access.
by Stephen Smalley
· 10 years ago
efc7299
Allow mediaserver to use app-created pipes.
by Stephen Smalley
· 10 years ago
f42cc61
Revert "Make the mediaserver domain enforcing."
by Nick Kralevich
· 10 years ago
ae50551
Make the mediaserver domain enforcing.
by Stephen Smalley
· 10 years ago
53cde70
Report graphics_device accesses by system_server or mediaserver.
by Stephen Smalley
· 10 years ago
3fbc536
Allow reading of radio data files passed over binder.
by Stephen Smalley
· 10 years ago
721f1ad
Allow drmserver and mediaserver to read apk files.
by Stephen Smalley
· 11 years ago
dc88dca
Get rid of separate platform_app_data_file type.
by Stephen Smalley
· 11 years ago
ba74567
Allow mediaserver to connect to tee service.
by Stephen Smalley
· 11 years ago
0296b94
Move qemud and /dev/qemu policy bits to emulator-specific sepolicy.
by Stephen Smalley
· 11 years ago
48b1883
Introduce asec_public_file type.
by Robert Craig
· 11 years ago
e21871c
Address screenrecord denials.
by rpcraig
· 11 years ago
129f8df
Allow mediaserver to create dirs under /data/mediadrm.
by rpcraig
· 11 years ago
09f6a99
Allow mediaserver to connect to bluetooth.
by Stephen Smalley
· 11 years ago
623975f
Support forcing permissive domains to unconfined.
by Nick Kralevich
· 11 years ago
e45603d
address denials when playing protected content.
by Nick Kralevich
· 11 years ago
b8ac06f
Revert "Make mediaserver enforcing."
by Nick Kralevich
· 11 years ago
37339c7
fix mediaserver selinux denials.
by Nick Kralevich
· 11 years ago
cc96454
Make mediaserver enforcing.
by Stephen Smalley
· 11 years ago
8510d31
Rename camera_calibration_file and audio_firmware_file.
by Stephen Smalley
· 11 years ago
a771671
Label /data/misc/media and allow mediaserver access to it.
by Stephen Smalley
· 11 years ago
a7c8ea8
Move audio_firmware_file and /data/misc/audio entry to core sepolicy.
by Stephen Smalley
· 11 years ago
af9238c
Confine mediaserver, but leave it permissive for now.
by Stephen Smalley
· 11 years ago
353c72e
Move unconfined domains out of permissive mode.
by Nick Kralevich
· 11 years ago
77d4731
Make all domains unconfined.
by repo sync
· 11 years ago
50e37b9
Move domains into per-domain permissive mode.
by repo sync
· 11 years ago
e69552b
Revert "Revert "Various minor policy fixes based on CTS.""
by Geremy Condra
· 11 years ago
65d4f44
Various policy updates.
by Robert Craig
· 11 years ago
ba84bf1
Revert "Various minor policy fixes based on CTS."
by Geremy Condra
· 12 years ago
8a814a7
Various minor policy fixes based on CTS.
by Stephen Smalley
· 12 years ago
c195ec3
Split internal and external sdcards
by William Roberts
· 12 years ago
9ce99e3
Update binder-related policy.
by Stephen Smalley
· 12 years ago
4e030c2
mediaserver.te refactor
by William Roberts
· 12 years ago
e2ad318
Label persist audio properties
by William Roberts
· 12 years ago
ccc8271
Allow domain access to /dev/ion
by William Roberts
· 12 years ago
e07b8a5
Trusted Execution Environment policy.
by rpcraig
· 12 years ago
abd977a
Additions for grouper/JB
by rpcraig
· 12 years ago
19e7fbe
mediaserver and system require abstract socket connnection
by Haiqing Jiang
· 12 years ago
3296dea
external/sepolicy: mediaserver open application data files
by Haiqing Jiang
· 12 years ago
4c06d27
Target the denials/policies over qtaguid file and device: 1. Relabel /proc/net/xt_qtaguid/ctrl from "qtaguid" to "qtaguid_proc"; 2. Label /dev/xt_qtaguid with "qtaguid_device"; 3. Allow mediaserver read/[write] to qtaguid_proc and qtaguid_device; 4. Allow media apps read/[write] to qtaguid_proc and qtaguid_device; 5. Allow system read/[write] to qtaguid_proc and qtaguid_device.
by hqjiang
· 12 years ago
20d6963
allow camera calibration
by hqjiang
· 12 years ago
e1c545d
correct denies of inter system processes communication over named pipe
by hqjiang
· 12 years ago
ee5f400
Correct denies of rpmsg device when accessing to remote processors.
by hqjiang
· 12 years ago
07ef722
ion fix
by William Roberts
· 12 years ago
2dd4e51
SE Android policy.
by Stephen Smalley
· 13 years ago