Gitiles
Code Review
Sign In
LeafOS
/
LeafOS-Project
/
android_system_sepolicy
/
e0378303b5ec8a4440fcdea38cca7ebf695dc2b3
/
installd.te
ae72bf2
Populate autoplay_app with minimal set of permissions
by Jeff Vander Stoep
· 9 years ago
2469b32
Remove handling of dalvik-cache/profiles
by Calin Juravle
· 9 years ago
d22987b
Create attribute for moving perms out of domain
by Jeff Vander Stoep
· 9 years ago
a1d78ff
am b01a18b9: Merge "grant installd rx perms on toybox"
by Jeffrey Vander Stoep
· 9 years ago
628e7f7
grant installd rx perms on toybox
by Jeff Vander Stoep
· 9 years ago
8328eaf
am 3cba84e2: Merge "Run idmap in its own domain."
by Daniel Cashman
· 10 years ago
b335e38
Run idmap in its own domain.
by Stephen Smalley
· 10 years ago
f8fd5ab
installd restorecon now requires getattr.
by Jeff Sharkey
· 10 years ago
9aafd4a
Allow installd to link apk_data_file and dalvikcache_data_file.
by Narayan Kamath
· 10 years ago
ecc82e0
Allow installd to move APKs.
by Jeff Sharkey
· 10 years ago
8f821db
Allow installd to move APKs.
by Jeff Sharkey
· 10 years ago
8da7876
Allow installd to move around private app data.
by Jeff Sharkey
· 10 years ago
44c95e9
Allow installd to dexopt apps on expanded storage.
by Jeff Sharkey
· 10 years ago
b87a4b1
Support for storing OAT files in app directory
by Fyodor Kupolov
· 10 years ago
0d0d5aa
installd: drop noatsecure for dex2oat
by Nick Kralevich
· 10 years ago
51bfecf
Pull keychain-data policy out of system-data
by Robin Lee
· 10 years ago
8ee37b4
reconcile aosp (c103da877b72aae80616dbc192982aaf75dfe888) after branching. Please do not merge.
by Ed Heyl
· 10 years ago
fad4d5f
Fix SELinux policies to allow resource overlays.
by Nick Kralevich
· 11 years ago
8670305
Remove world-read access to /data/dalvik-cache/profiles
by Nick Kralevich
· 11 years ago
89b9ff7
Allow installd to chown/chmod app data files.
by Stephen Smalley
· 11 years ago
d2622fd
Allow installd to stat asec files and /data/media files.
by Stephen Smalley
· 11 years ago
6f6c425
Adjust rules around /data/app entities
by Christopher Tate
· 11 years ago
f85c1fc
Allow installd, vold, system_server unlabeled access.
by Stephen Smalley
· 11 years ago
d30060a
Allow installd to unlink /data/media files and search /data/app-asec.
by Stephen Smalley
· 11 years ago
baf49bd
Label /data/.layout_version with its own type.
by Stephen Smalley
· 11 years ago
41e14c7
Allow installd rename to app_data_file for movefiles command.
by Stephen Smalley
· 11 years ago
4ebbbcb
Restrict installd to only the data file types needed.
by Stephen Smalley
· 11 years ago
02dac03
Drop relabelto_domain() macro and its associated definitions.
by Stephen Smalley
· 11 years ago
004bd4e
Allow installd to create the lib symlink for system_app_data_file
by Nick Kralevich
· 11 years ago
cd905ec
Protect keystore's files.
by Nick Kralevich
· 11 years ago
91a4f8d
Label app data directories for system UID apps with a different type.
by Stephen Smalley
· 11 years ago
6838cd5
Let installd dexopt OEM apps.
by Jeff Sharkey
· 11 years ago
19c5090
Define a type for /data/dalvik-cache/profiles.
by Stephen Smalley
· 11 years ago
016e636
Drop dontaudit sys_admin rule from installd.
by Stephen Smalley
· 11 years ago
ee5ddb2
Allow installd to restorecon /data/data.
by Stephen Smalley
· 11 years ago
f9c3257
Get rid of separate download_file type.
by Stephen Smalley
· 11 years ago
dc88dca
Get rid of separate platform_app_data_file type.
by Stephen Smalley
· 11 years ago
9cc6d8d
Adding permissions needed to remove cache
by jaejyn.shin
· 11 years ago
f5e9000
Make bluetooth, nfc, radio and shell adb-installable
by Takeshi Aimi
· 11 years ago
3bb1ccc
Fix long-tail denials in enforcing domains.
by Geremy Condra
· 11 years ago
011094c
Switch installd to use r_dir_perms for download_file dirs.
by Geremy Condra
· 11 years ago
9565c5c
Backport part of d615ef3477da23e7fca9c13b6d63915992e63d2d to klp-dev
by Nick Kralevich
· 11 years ago
839af9e
Allow installd to clear fifos and sockets
by Nick Kralevich
· 11 years ago
5bfdf34
Revert "Temporarily disable installd selinux protections"
by Nick Kralevich
· 11 years ago
0c9708b
domain.te: Add backwards compatibility for unlabeled files
by Nick Kralevich
· 11 years ago
201cfae
Temporarily disable installd selinux protections
by Nick Kralevich
· 11 years ago
51946bc
installd: enable SELinux restrictions
by Nick Kralevich
· 11 years ago
77d4731
Make all domains unconfined.
by repo sync
· 12 years ago
50e37b9
Move domains into per-domain permissive mode.
by repo sync
· 12 years ago
7bb2a55
Give domains read access to security_file domain.
by William Roberts
· 12 years ago
7672eac
Add SELinux policy for asec containers.
by rpcraig
· 12 years ago
f6ca160
installd unlink platform_app_data_file
by Haiqing Jiang
· 12 years ago
8f781f5
external/sepolicy: install daemon unlink application data files
by hqjiang
· 12 years ago
59d2803
Introduce a separate apk_tmp_file type for the vmdl.*\.tmp files.
by Stephen Smalley
· 13 years ago
2dd4e51
SE Android policy.
by Stephen Smalley
· 13 years ago