Gitiles
Code Review
Sign In
LeafOS
/
LeafOS-Project
/
android_system_sepolicy
/
c48971f69fa07c98e62b9a8b0a2ba171846fbea1
/
system_app.te
5871d1b
resolved conflicts for merge of 51bfecf4 to lmp-dev-plus-aosp
by Robin Lee
· 10 years ago
51bfecf
Pull keychain-data policy out of system-data
by Robin Lee
· 10 years ago
09eae90
Remove system_server create access from /data/dalvik-cache
by Brian Carlstrom
· 10 years ago
372d0df
Remove system_server create access from /data/dalvik-cache
by Brian Carlstrom
· 10 years ago
bf69632
DO NOT MERGE: Remove service_manager audit_allows.
by Riley Spahn
· 11 years ago
14aa7c0
Refine service_manager find auditallow statements.
by Riley Spahn
· 11 years ago
88157ea
Refine service_manager find auditallow statements.
by Riley Spahn
· 11 years ago
344fc10
Add access control for each service_manager action.
by Riley Spahn
· 11 years ago
b8511e0
Add access control for each service_manager action.
by Riley Spahn
· 11 years ago
596bcc7
Remove keystore auditallow statements from system.
by Riley Spahn
· 11 years ago
b1ec3df
Add imms service and system_app_service type.
by Riley Spahn
· 11 years ago
1196d2a
Adding policies for KeyStore MAC.
by Riley Spahn
· 11 years ago
fee4915
Align SELinux property policy with init property_perms.
by Stephen Smalley
· 11 years ago
9e7bbf6
selinux: logd Development settings
by Mark Salyzyn
· 11 years ago
d159122
Make system_app enforcing.
by Stephen Smalley
· 11 years ago
f1ea707
Restore system_app access to system-owned /data directories.
by Stephen Smalley
· 11 years ago
c52d738
Allow Developer settings to change runtime size of logd
by Mark Salyzyn
· 11 years ago
91a4f8d
Label app data directories for system UID apps with a different type.
by Stephen Smalley
· 11 years ago
1c0c010
Allow system_app to start bugreport and to create /data/anr/traces.txt.
by Stephen Smalley
· 11 years ago
b0db712
Clean up, unify, and deduplicate app domain rules.
by Stephen Smalley
· 11 years ago
28afdd9
Deduplicate binder_call rules.
by Stephen Smalley
· 11 years ago
2c347e0
Drop obsolete keystore_socket type and rules.
by Stephen Smalley
· 11 years ago
85708ec
Resolve overlapping rules between app.te and net.te.
by Stephen Smalley
· 11 years ago
48b1883
Introduce asec_public_file type.
by Robert Craig
· 11 years ago
2e7a301
Address bug report denials.
by Nick Kralevich
· 11 years ago
623975f
Support forcing permissive domains to unconfined.
by Nick Kralevich
· 11 years ago
3e78000
Allow system_app to set properties
by Nick Kralevich
· 11 years ago
dd1ec6d
Give system_server / system_app ability to write some properties
by Nick Kralevich
· 11 years ago
5637099
Confine all app domains, but make them permissive for now.
by Stephen Smalley
· 11 years ago
353c72e
Move unconfined domains out of permissive mode.
by Nick Kralevich
· 11 years ago
8840fa7
Split system_app from system.
by Stephen Smalley
· 11 years ago