Gitiles
Code Review
Sign In
gerrit-public.fairphone.software
/
fp2-dev
/
platform
/
external
/
sepolicy
/
refs/tags/fp2-sibon-18.01.1
/
shell.te
c47a11b
DO NOT MERGE: Further restrict access to socket ioctl commands
by Jeff Vander Stoep
· 8 years ago
4b4b2b9
Remove service_manager_local_audit_domain.
by dcashman
· 9 years ago
7e0838a
logd: logpersistd
by Mark Salyzyn
· 9 years ago
2f5a6a9
Replace unix_socket_connect() and explicit property sets with macro
by William Roberts
· 9 years ago
e0c8da2
neverallow shell file_type:file link
by Nick Kralevich
· 9 years ago
e207986
SELinux permissions for gatekeeper TEE proxy
by Andres Morales
· 9 years ago
93fd6f0
Consistent external storage policy.
by Jeff Sharkey
· 9 years ago
983e2af
Fix small copy/paste bug in recent shell rule.
by Jeff Sharkey
· 9 years ago
1c597f0
Shell needs to read /storage/self/primary symlink.
by Jeff Sharkey
· 9 years ago
d5892b4
Allow shell to read /proc/pid/attr/current for ps -Z.
by Stephen Smalley
· 9 years ago
23f3361
Record observed system_server servicemanager service requests.
by dcashman
· 9 years ago
cc38e6d
bootchart: add policy rules for bootchart
by Yongqin Liu
· 10 years ago
5fef2de
Allow shell to find all services.
by dcashman
· 9 years ago
25fef2e
Allow shell to read /proc.
by dcashman
· 9 years ago
4a89cdf
Make system_server_service an attribute.
by dcashman
· 9 years ago
34d32ea
selinux: add pstore
by Mark Salyzyn
· 10 years ago
0780f30
Allow dumpstate and shell to list services.
by dcashman
· 9 years ago
403d8fe
Allow shell domain to use system_server_service.
by dcashman
· 9 years ago
fc6214b
add permissions for adb shell to create symlinks in /data/local/tmp
by Brian Carlstrom
· 10 years ago
00b180d
Eliminate some duplicated rules.
by Stephen Smalley
· 10 years ago
a2e4e26
Allow shell to read/search /dev/input directory.
by Stephen Smalley
· 10 years ago
42fb824
Refactor the shell domains.
by Stephen Smalley
· 10 years ago
4fd4a20
Allow adbd / shell /data/anr access
by Nick Kralevich
· 10 years ago
ad5315d
shell: access to clear logs
by Mark Salyzyn
· 10 years ago
b3cb969
Clarify init_shell, shell, and su domain usage.
by Stephen Smalley
· 10 years ago
5c9c312
Move shell into enforcing for everyone.
by Nick Kralevich
· 10 years ago
88ce951
Create new conditional userdebug_or_eng
by Nick Kralevich
· 10 years ago
396015c
Remove ping domain.
by Stephen Smalley
· 10 years ago
712ca0a
Confine shell domain in -user builds only.
by Stephen Smalley
· 11 years ago
48759ca
Support run-as and ndk-gdb functionality.
by Stephen Smalley
· 11 years ago
d99e6d5
Restrict the ability to set SELinux enforcing mode to init.
by Stephen Smalley
· 11 years ago
0130154
Make sure exec_type is assigned to all entrypoint types.
by Stephen Smalley
· 11 years ago
77d4731
Make all domains unconfined.
by repo sync
· 11 years ago
8199123
SELinux policy that separates "init_shell" from "shell".
by Alex Klyubin
· 11 years ago
81fe5f7
Allow all domains to read the log devices.
by Stephen Smalley
· 11 years ago
e69552b
Revert "Revert "Various minor policy fixes based on CTS.""
by Geremy Condra
· 11 years ago
ba84bf1
Revert "Various minor policy fixes based on CTS."
by Geremy Condra
· 11 years ago
8a814a7
Various minor policy fixes based on CTS.
by Stephen Smalley
· 11 years ago
c195ec3
Split internal and external sdcards
by William Roberts
· 11 years ago
767abc0
Drop shell from having access to dmesg
by William Roberts
· 11 years ago
e884872
Add policy for run-as program.
by Stephen Smalley
· 12 years ago
c34a252
Allow shell to connect to property service
by William Roberts
· 12 years ago
124720a
Add policy for property service.
by Stephen Smalley
· 12 years ago
b660916
Allow the shell to create files on the sdcard.
by Stephen Smalley
· 12 years ago
d5a70a7
Drop redundant rules.
by Stephen Smalley
· 12 years ago
c83d008
Policy changes to support running the latest CTS.
by Stephen Smalley
· 12 years ago
6261d6d
Allow reading of properties area, which is now created before init has switched contexts. Revisit this later - we should explicitly label the properties file.
by Stephen Smalley
· 12 years ago
2dd4e51
SE Android policy.
by Stephen Smalley
· 12 years ago