1. 618efe8 kernel: allow rebooting, and writing to /dev/__kmsg__ by Nick Kralevich · 9 years ago
  2. 5aac86d Revert "Revert "SELinux policy changes for re-execing init."" by Elliott Hughes · 9 years ago
  3. c450759 Revert "SELinux policy changes for re-execing init." by Nick Kralevich · 9 years ago
  4. 46e832f SELinux policy changes for re-execing init. by Elliott Hughes · 9 years ago
  5. 883fcfc kernel: allow usbfs:dir search by Nick Kralevich · 9 years ago
  6. 753b95f Allow kernel to read asec_image_file. by dcashman · 9 years ago
  7. 1025d13 kernel.te: fix MTP sync by Nick Kralevich · 9 years ago
  8. 9fe810b allow kernel to use vold file descriptors by Nick Kralevich · 9 years ago
  9. 4308ce8 kernel: make kernel an mlstrustedsubject by Nick Kralevich · 9 years ago
  10. bd5f8e3 kernel: remove permissive_or_unconfined() by Stephen Smalley · 9 years ago
  11. 0a296fb am f3926937: Merge "Switch kernel and init to permissive_or_unconfined()." by Daniel Cashman · 10 years ago
  12. a523aac Switch kernel and init to permissive_or_unconfined(). by Stephen Smalley · 10 years ago
  13. b0a9951 Allow kernel thread to read app data files by Nick Kralevich · 10 years ago
  14. 28b26bc support kernel writes to external SDcards by Nick Kralevich · 10 years ago
  15. 4c6b135 support kernel writes to external SDcards by Nick Kralevich · 10 years ago
  16. e9c90bd reconcile aosp (4da3bb1481e4e894a7dee3f3b9ec8cef6f6b1aed) after branching. Please do not merge. by Ed Heyl · 10 years ago
  17. 374b2a1 Rename sdcard_internal/external types. by Stephen Smalley · 10 years ago
  18. a1558be Allow kernel sdcard read access as well for MTP sync. by Stephen Smalley · 10 years ago
  19. eb6b74f Allow kernel sdcard access for MTP sync. by Stephen Smalley · 10 years ago
  20. f3c3a1a Remove execute_no_trans from unconfineddomain. by Stephen Smalley · 10 years ago
  21. bac4ccc Prevent adding transitions to kernel or init domains. by Stephen Smalley · 10 years ago
  22. 718bf84 Allow mounting of usbfs. by Stephen Smalley · 10 years ago
  23. 73b0346 Explictly allow init and kernel unlabeled access. by Stephen Smalley · 10 years ago
  24. eb1bbf2 Clean up kernel, init, and recovery domains. by Stephen Smalley · 10 years ago
  25. 03ce512 Remove /system write from unconfined by Nick Kralevich · 10 years ago
  26. 356f4be Restrict requesting contexts other than policy-defined defaults. by Stephen Smalley · 10 years ago
  27. cdae7de Drop unused rules for raw I/O, mknod, and block device access. by Stephen Smalley · 10 years ago
  28. abae8a9 Revisit kernel setenforce by Nick Kralevich · 10 years ago
  29. 02dac03 Drop relabelto_domain() macro and its associated definitions. by Stephen Smalley · 10 years ago
  30. 3f40d4f Remove block device access from unconfined domains. by Stephen Smalley · 10 years ago
  31. 5487ca0 Remove several superuser capabilities from unconfined domains. by Stephen Smalley · 10 years ago
  32. b081cc1 Remove mount-related permissions from unconfined domains. by Stephen Smalley · 10 years ago
  33. fed8a2a Remove transition / dyntransition from unconfined by Nick Kralevich · 10 years ago
  34. 8b51674 Restrict ability to set checkreqprot. by Stephen Smalley · 10 years ago
  35. fea6e66 Allow kernel domain, not init domain, to set SELinux enforcing mode. by Stephen Smalley · 11 years ago
  36. 9e8b8d9 Revert "Allow kernel domain, not init domain, to set SELinux enforcing mode." by Nick Kralevich · 11 years ago
  37. bf12e22 Allow kernel domain, not init domain, to set SELinux enforcing mode. by Stephen Smalley · 11 years ago
  38. b1d8164 Make kernel / init enforcing by Nick Kralevich · 11 years ago
  39. 217f8af Fix more long-tail denials. by Geremy Condra · 11 years ago
  40. 0c9708b domain.te: Add backwards compatibility for unlabeled files by Nick Kralevich · 11 years ago
  41. 50e37b9 Move domains into per-domain permissive mode. by repo sync · 11 years ago
  42. 2dd4e51 SE Android policy. by Stephen Smalley · 12 years ago