1. c47a11b DO NOT MERGE: Further restrict access to socket ioctl commands by Jeff Vander Stoep · 8 years ago
  2. 4b4b2b9 Remove service_manager_local_audit_domain. by dcashman · 9 years ago
  3. 7e0838a logd: logpersistd by Mark Salyzyn · 9 years ago
  4. 2f5a6a9 Replace unix_socket_connect() and explicit property sets with macro by William Roberts · 9 years ago
  5. e0c8da2 neverallow shell file_type:file link by Nick Kralevich · 9 years ago
  6. e207986 SELinux permissions for gatekeeper TEE proxy by Andres Morales · 9 years ago
  7. 93fd6f0 Consistent external storage policy. by Jeff Sharkey · 9 years ago
  8. 983e2af Fix small copy/paste bug in recent shell rule. by Jeff Sharkey · 9 years ago
  9. 1c597f0 Shell needs to read /storage/self/primary symlink. by Jeff Sharkey · 9 years ago
  10. d5892b4 Allow shell to read /proc/pid/attr/current for ps -Z. by Stephen Smalley · 9 years ago
  11. 23f3361 Record observed system_server servicemanager service requests. by dcashman · 9 years ago
  12. cc38e6d bootchart: add policy rules for bootchart by Yongqin Liu · 10 years ago
  13. 5fef2de Allow shell to find all services. by dcashman · 9 years ago
  14. 25fef2e Allow shell to read /proc. by dcashman · 9 years ago
  15. 4a89cdf Make system_server_service an attribute. by dcashman · 9 years ago
  16. 34d32ea selinux: add pstore by Mark Salyzyn · 10 years ago
  17. 0780f30 Allow dumpstate and shell to list services. by dcashman · 9 years ago
  18. 403d8fe Allow shell domain to use system_server_service. by dcashman · 9 years ago
  19. fc6214b add permissions for adb shell to create symlinks in /data/local/tmp by Brian Carlstrom · 10 years ago
  20. 00b180d Eliminate some duplicated rules. by Stephen Smalley · 10 years ago
  21. a2e4e26 Allow shell to read/search /dev/input directory. by Stephen Smalley · 10 years ago
  22. 42fb824 Refactor the shell domains. by Stephen Smalley · 10 years ago
  23. 4fd4a20 Allow adbd / shell /data/anr access by Nick Kralevich · 10 years ago
  24. ad5315d shell: access to clear logs by Mark Salyzyn · 10 years ago
  25. b3cb969 Clarify init_shell, shell, and su domain usage. by Stephen Smalley · 10 years ago
  26. 5c9c312 Move shell into enforcing for everyone. by Nick Kralevich · 10 years ago
  27. 88ce951 Create new conditional userdebug_or_eng by Nick Kralevich · 10 years ago
  28. 396015c Remove ping domain. by Stephen Smalley · 10 years ago
  29. 712ca0a Confine shell domain in -user builds only. by Stephen Smalley · 11 years ago
  30. 48759ca Support run-as and ndk-gdb functionality. by Stephen Smalley · 11 years ago
  31. d99e6d5 Restrict the ability to set SELinux enforcing mode to init. by Stephen Smalley · 11 years ago
  32. 0130154 Make sure exec_type is assigned to all entrypoint types. by Stephen Smalley · 11 years ago
  33. 77d4731 Make all domains unconfined. by repo sync · 11 years ago
  34. 8199123 SELinux policy that separates "init_shell" from "shell". by Alex Klyubin · 11 years ago
  35. 81fe5f7 Allow all domains to read the log devices. by Stephen Smalley · 11 years ago
  36. e69552b Revert "Revert "Various minor policy fixes based on CTS."" by Geremy Condra · 11 years ago
  37. ba84bf1 Revert "Various minor policy fixes based on CTS." by Geremy Condra · 11 years ago
  38. 8a814a7 Various minor policy fixes based on CTS. by Stephen Smalley · 11 years ago
  39. c195ec3 Split internal and external sdcards by William Roberts · 11 years ago
  40. 767abc0 Drop shell from having access to dmesg by William Roberts · 11 years ago
  41. e884872 Add policy for run-as program. by Stephen Smalley · 12 years ago
  42. c34a252 Allow shell to connect to property service by William Roberts · 12 years ago
  43. 124720a Add policy for property service. by Stephen Smalley · 12 years ago
  44. b660916 Allow the shell to create files on the sdcard. by Stephen Smalley · 12 years ago
  45. d5a70a7 Drop redundant rules. by Stephen Smalley · 12 years ago
  46. c83d008 Policy changes to support running the latest CTS. by Stephen Smalley · 12 years ago
  47. 6261d6d Allow reading of properties area, which is now created before init has switched contexts. Revisit this later - we should explicitly label the properties file. by Stephen Smalley · 12 years ago
  48. 2dd4e51 SE Android policy. by Stephen Smalley · 12 years ago