aboutsummaryrefslogtreecommitdiffstats
path: root/drmserver.te
Commit message (Expand)AuthorAgeFilesLines
* Enforce more specific service access.dcashman2015-04-081-7/+1
* Add system_api_service and app_api_service attributes.dcashman2015-04-031-1/+0
* Record observed system_server servicemanager service requests.dcashman2015-03-031-0/+6
* Make system_server_service an attribute.dcashman2015-01-141-0/+1
* Restrict service_manager find and list access.dcashman2014-12-151-9/+2
* am ebfd9f87: allow oemfs:dir searchNick Kralevich2014-10-101-0/+1
|\
| * allow oemfs:dir searchNick Kralevich2014-10-101-0/+1
* | resolved conflicts for merge of 0a20b57f to lmp-dev-plus-aospVineeta Srivastava2014-09-161-0/+3
|\|
| * Added sepolicy for oem customization.Vineeta Srivastava2014-09-161-0/+3
* | Resync lmp-dev-plus-aosp with masterNick Kralevich2014-07-251-0/+8
* | resolved conflicts for merge of 92b9360c to lmp-dev-plus-aospNick Kralevich2014-07-251-0/+2
|\ \ | |/ |/|
| * Add fine grained access control to DrmManagerService.Riley Spahn2014-07-241-0/+2
| * Further refined service_manager auditallow statements.Riley Spahn2014-07-181-1/+5
| * Add access control for each service_manager action.Riley Spahn2014-07-141-0/+4
* | DO NOT MERGE: Remove service_manager audit_allows.Riley Spahn2014-07-181-8/+0
* | Further refined service_manager auditallow statements.Riley Spahn2014-07-181-1/+5
* | Add access control for each service_manager action.Riley Spahn2014-07-151-0/+4
|/
* Add SELinux rules for service_manager.Riley Spahn2014-06-121-0/+2
* Allow reading of radio data files passed over binder.Stephen Smalley2014-03-271-0/+3
* Allow drmserver and mediaserver to read apk files.Stephen Smalley2014-03-151-0/+4
* Get rid of separate platform_app_data_file type.Stephen Smalley2014-03-131-1/+0
* Clean up socket rules.Stephen Smalley2014-02-251-2/+2
* Introduce asec_public_file type.Robert Craig2014-02-111-1/+1
* Revert "Move tlcd_sock policy over to manta."Nick Kralevich2014-02-041-1/+9
* Move tlcd_sock policy over to manta.Stephen Smalley2014-02-041-9/+1
* drmserver: allow looking in efs_file directoriesNick Kralevich2014-01-311-1/+1
* Make drmserver enforcing.Nick Kralevich2014-01-251-1/+0
* Allow drmserver to unlink old socket file.Stephen Smalley2014-01-161-0/+2
* Support forcing permissive domains to unconfined.Nick Kralevich2014-01-111-1/+1
* fix mediaserver selinux denials.Nick Kralevich2014-01-061-0/+3
* Confine drmserver, but leave it permissive for now.Stephen Smalley2013-10-291-1/+31
* Move unconfined domains out of permissive mode.Nick Kralevich2013-10-211-1/+0
* Make all domains unconfined.repo sync2013-05-201-26/+1
* Move domains into per-domain permissive mode.repo sync2013-05-141-0/+1
* Give the drmserver the ability to connect to the tee.Geremy Condra2013-04-051-0/+3
* Allow drmserver to interact with apk_data_file sock_files.Geremy Condra2013-04-051-0/+1
* Give drmserver the ability to interact with apk_data_file dirs.Geremy Condra2013-04-051-0/+1
* Allow drmserver to read the wv keys.Geremy Condra2013-04-051-0/+1
* Revert "Revert "Various minor policy fixes based on CTS.""Geremy Condra2013-03-271-0/+4
* Revert "Various minor policy fixes based on CTS."Geremy Condra2013-03-221-4/+0
* Various minor policy fixes based on CTS.Stephen Smalley2013-03-221-0/+4
* Split internal and external sdcardsWilliam Roberts2013-03-221-1/+1
* Trusted Execution Environment policy.rpcraig2012-08-131-0/+1
* Additions for grouper/JBrpcraig2012-08-101-0/+4
* Policy changes to support running the latest CTS.Stephen Smalley2012-03-071-0/+6
* SE Android policy.Stephen Smalley2012-01-041-0/+10