summaryrefslogtreecommitdiffstats
Commit message (Collapse)AuthorAgeFilesLines
...
| * | | | | | | sepolicy : add radio.noril property and allow set rule.Ravi Kumar Siddojigari2015-12-153-0/+5
| |/ / / / / / | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | differentiation of non-mobile targets from mobile we need this property to be updated. Change-Id: If4dda33708e539bdeb8cc375b9bca41bff5447a8
| * | | | | | Merge "msm8996: removed secure camera daemon policy"Linux Build Service Account2015-12-113-71/+0
| |\ \ \ \ \ \
| | * | | | | | msm8996: removed secure camera daemon policyElad Levi2015-12-073-71/+0
| | |/ / / / / | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | The change is required as the daemon is removed from init.target.rc Change-Id: I71386d08b04097672144f446f8559f1cf657a03d
| * | | | | | Merge "gps: Add permissions for gps driver for open/read pps device"Linux Build Service Account2015-12-111-0/+1
| |\ \ \ \ \ \
| | * | | | | | gps: Add permissions for gps driver for open/read pps deviceVamana Murthi2015-12-071-0/+1
| | |/ / / / / | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | DR_SYNC pulse from GSS is routed to pps driver and gps driver need to read the pps device to get kernel timestamp of DR_SYNC signal. Change-Id: If561054752f4476f0e8608d15b5c51c63345e76d CRs-Fixed: 942070
| * | | | | | Merge "Add SELinux support for factory reset protection"Linux Build Service Account2015-12-112-0/+2
| |\ \ \ \ \ \
| | * | | | | | Add SELinux support for factory reset protectionDilipKumar Sreeramaiah2015-12-071-0/+1
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Map factory reset protection into SELinux sepolicy/file_contexts. Use hardcoded path for partition for now. Change-Id: I0ef6f6aa92be6cbd42ba8ddb9f03abc46bda1833
| | * | | | | | Add SELinux support for factory reset protectionDilipKumar Sreeramaiah2015-12-071-0/+1
| | |/ / / / / | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Map factory reset protection into SELinux sepolicy/file_contexts. Use hardcoded path for partition for now. Change-Id: I4bb03a9b3cd28c01acff320cb95d1b07f91af5a7
| * | | | | | Merge "sepolicy : Add permissions to Camera HAL"Linux Build Service Account2015-12-111-0/+1
| |\ \ \ \ \ \
| | * | | | | | sepolicy : Add permissions to Camera HALRajeev Kulkarni2015-12-051-0/+1
| | |/ / / / / | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Provide permissions to camera HAL to receive vsync events. This helps camera HAL to display preview frames at regular vsync interval. Change-Id: I682c3d9aa516b0599e0da7d7ee90777c4185dc60
| * | | | | | Merge "sepolicy: allow location daemons to create directory"Linux Build Service Account2015-12-111-1/+1
| |\ \ \ \ \ \
| | * | | | | | sepolicy: allow location daemons to create directoryJiafei Wen2015-12-051-1/+1
| | |/ / / / / | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Add directory creating permissions to location daemons Change-Id: Iabd866ea1dfcea8bf2ebf9c79360d493b409c8ae CRs-fixed: 841091
| * | | | | | Merge "sepolicy : add bootkpi secontext and allow rule to access"Linux Build Service Account2015-12-114-0/+41
| |\ \ \ \ \ \
| | * | | | | | sepolicy : add bootkpi secontext and allow rule to accessTrilokesh Rangam2015-12-054-0/+41
| | |/ / / / / | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Bootkpi marker are logged from different services and some untrusted apps. Allowing them to with write access for logging the bootkpi marker. Change-Id: I3bfb52d611b4af52cf3c6032cca9f34874736a66
| * | | | | | Merge "dpmservice_app: donot audit /proc/<pid> query denials"Linux Build Service Account2015-12-111-0/+6
| |\ \ \ \ \ \
| | * | | | | | dpmservice_app: donot audit /proc/<pid> query denialsSusheel Yadagiri2015-12-051-0/+6
| | |/ / / / / | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | added donot audit rule for /proc/<pid>/stat query. added permissions to query app attributes CRs-fixed: 932024 Change-Id: Iefe347ccd89619962100206df38f9e5a03bd3083
| * | | | | | Merge "sepolicy :add camera_prop set rule for mm-qcamerad domain"Linux Build Service Account2015-12-111-0/+4
| |\ \ \ \ \ \
| | * | | | | | sepolicy :add camera_prop set rule for mm-qcamerad domainRavi Kumar Siddojigari2015-12-051-0/+4
| | |/ / / / / | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | For debugging camera driver there are couple of camera_prop that can be controlled by the camera driver which start with persist.camera. this rule allows to enable/disable this debugging flags. Change-Id: Id69404c16c0b10318f570d4aa41fc80bc94b040d
| * | | | | | Merge "sepolicy: mdm_helper: Update policy to allow boot over PCIe"Linux Build Service Account2015-12-114-1/+16
| |\ \ \ \ \ \
| | * | | | | | sepolicy: mdm_helper: Update policy to allow boot over PCIeAmeya Thakur2015-12-054-1/+16
| | |/ / / / / | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | mdm-helper can now handle booting up external modems connected over PCIe. Change-Id: I20be0aa976a0394b0a39c0bb26eef485617975da
| * | | | | | Merge "sepolicy:common: Adding socket connect policy for mm-qcamera-daemon."Linux Build Service Account2015-12-071-0/+1
| |\ \ \ \ \ \
| | * | | | | | sepolicy:common: Adding socket connect policy for mm-qcamera-daemon.Mridul Singh2015-12-051-0/+1
| | |/ / / / / | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Adding socket connect policy for mm-qcamera-daemon to avoid getting denied. Change-Id: I8af423384d94a935618ece4f2440e53d254b3711
| * | | | | | Merge "sepolicy: Allow init.qcom.sh script to media setprop's"Linux Build Service Account2015-12-073-0/+90
| |\ \ \ \ \ \
| | * | | | | | sepolicy: Allow init.qcom.sh script to media setprop'sParas Nagda2015-12-063-0/+90
| | |/ / / / / | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Define media.msm8939hw to choose target specific media_codecs.xml Change-Id: If9d5ba16a8efbf1fe79e189277481f74392f0fbd
| * | | | | | Merge "sepolicy: allow mm-pp-daemon to set debug property"Linux Build Service Account2015-12-071-0/+3
| |\ \ \ \ \ \
| | * | | | | | sepolicy: allow mm-pp-daemon to set debug propertyKrishna Chaitanya Parimi2015-12-051-0/+3
| | |/ / / / / | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | mm-pp-daemon needs to set debug.svi.checksum debug property which is being denied. This is needed for checking if checksum is being printed for userdebug and engineering builds. Change-Id: I03bd624168d7922d7eb80b536d32a93eaa4e2669 CRs-Fixed: 862136
| * | | | | | Merge "sepolicy : add secontext for general and modem emmc partition"Linux Build Service Account2015-12-071-0/+45
| |\ \ \ \ \ \
| | * | | | | | sepolicy : add secontext for general and modem emmc partitionRavi Kumar Siddojigari2015-12-051-0/+45
| | |/ / / / / | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | moving the modem and userdata partition secontext definition to target specific folder. Change-Id: If2b87aa0fbbb820feb30516aba5b6ce7c5b9a15b
| * | | | | | Merge "wfd: Add policies to allow encoder/decoder dumps"Linux Build Service Account2015-12-071-1/+4
| |\ \ \ \ \ \
| | * | | | | | wfd: Add policies to allow encoder/decoder dumpsDeepak Kushwah2015-12-051-1/+4
| | |/ / / / / | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | --Encoder/decoder modules allow dumping at their i/p and o/p ports --This requires access to /data/misc/media. Add the requisite policies for wfdservice. Change-Id: Ied2b6712f0797988ae362e11e99e0425334fa2fe
| * / / / / / SEPolicy: Add permission to set property for locationNeethu Joseph2015-12-052-0/+4
| |/ / / / / | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Add permission to set property for low power wifi positioning feature status. Change-Id: Iaf4b688ad1802c7409331f3e97bbea94aaf93540
| * | | | | Merge "Add netstats and location permissions support for RIDL/LogKit II"Linux Build Service Account2015-12-011-0/+6
| |\ \ \ \ \
| | * | | | | Add netstats and location permissions support for RIDL/LogKit IIClarence Wong2015-11-241-0/+6
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Sepolicy changes needed on new OS to support: - netstats (for userdebug and user) - location (for userdebug) Change-Id: Iea383fa600fb652886ca80678ff707cccda78a05
| * | | | | | Merge "sepolicy : add allow rule for recovery to create file on vfat"Linux Build Service Account2015-12-011-2/+2
| |\ \ \ \ \ \
| | * | | | | | sepolicy : add allow rule for recovery to create file on vfatRavi Kumar Siddojigari2015-11-261-2/+2
| | |/ / / / / | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | As part of modem/firmware update process we need recovery to write/create files on vfat. Change-Id: I9c7fc1a825159d530f348200fce7dd2535879a7a
| * | | | | | Add SELinux support for factory reset protectionDilipKumar Sreeramaiah2015-11-191-0/+1
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Map factory reset protection into SELinux sepolicy/file_contexts. Use hardcoded path for partition for now. Change-Id: I1fa996dc7564c0cb4ccc888ccef50dd354a80a6a
| * | | | | | Add SELinux support for factory reset protectionDilipKumar Sreeramaiah2015-11-191-0/+1
| |/ / / / / | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Map factory reset protection into SELinux sepolicy/file_contexts. Use hardcoded path for partition for now. Change-Id: I9dfaff2307d2305b67ea91b9ae134e8e4090de5b
| * | | | | Merge "sepolicy: Add set property permission for irq balance"Linux Build Service Account2015-11-101-0/+1
| |\ \ \ \ \
| | * | | | | sepolicy: Add set property permission for irq balancevaibhav bhalla2015-11-101-0/+1
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Sepolicy changes needed on new OS to support IRQ Balance. This property need to set during early boot. Change-Id: Ia4b0bd9d8a24b596ff6186501378a031112e33d2
| * | | | | | mm-camera: Add debugfs read file permissions to mm-qcameraManish Poddar2015-11-091-0/+1
| |/ / / / / | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Add debugfs read file permissions for mm-qcamera-daemon Change-Id: If53b7ba12e714cdb51af950df2c0b5b00002d0ad
| * | | | | Merge "sepolicy: Define SE policy for alarm and boot animation property"Linux Build Service Account2015-11-073-0/+6
| |\ \ \ \ \
| | * | | | | sepolicy: Define SE policy for alarm and boot animation propertyMao Jinlong2015-11-053-0/+6
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | ro.alarm_boot property is to indicate whether it is alarm boot. This property need to set during early boot.If boot up is triggered by rtc alarm, boot animation will be disabled. Change-Id: Ib4243071363917664cd401e5309443587aade1dc
| * | | | | | Merge "Allow ANR for RIDL/LK2 in sepolicy"Linux Build Service Account2015-11-071-1/+2
| |\ \ \ \ \ \
| | * | | | | | Allow ANR for RIDL/LK2 in sepolicyManish Kumar2015-11-041-1/+2
| | |/ / / / / | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Allow access to /data/anr for RIDL/LK2 so we can capture ANR dumps. Change-Id: I9d85507bad080f7ac3f4cf619d05af0a58b9edbc
| * | | | | | Merge "Add sdcard and logcat permissions support for RIDL/LogKit II"Linux Build Service Account2015-11-071-0/+6
| |\ \ \ \ \ \
| | * | | | | | Add sdcard and logcat permissions support for RIDL/LogKit IIManish Kumar2015-11-051-0/+6
| | |/ / / / / | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Sepolicy changes needed on new OS to support sdcard access and logcat Change-Id: I99e518d38b06e625e5457b1999546e7b07219d13
| * | | | | | Merge "Allow ANR sepolicy read permissions for RIDL/LK2"Linux Build Service Account2015-11-071-0/+7
| |\ \ \ \ \ \
| | * | | | | | Allow ANR sepolicy read permissions for RIDL/LK2Divya Sharma2015-11-041-0/+7
| | |/ / / / / | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Enable /data/anr read only access for USER and USERDEBUG builds for RIDL and LogKit II 4.7.20. Remove write access for USERDEBUG. Change-Id: Iab63d4c01ad9aebe855d160f4fcc585dbc94579b
| * / / / / / Add SELinux support for factory reset protectionpadarshr2015-11-031-0/+1
| |/ / / / / | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Map factory reset protection into SELinux sepolicy/file_contexts. Use hardcoded path for partition for now. Change-Id: I692dd192acb733adf6d83c77ad9c0decaf218e14
| * | | | | msm8960: Add thermal daemon changes,rmt storage mount points and removed ↵Venumadhav Cheryala2015-11-017-6/+128
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | rmt_storage Thermal daemon requires mpdecision socket to be opened Add new socket for mpdecision. Add new property files for thermal. modemtst1,modemtst2,fsg will fail to mount with SElinux. add the partitions in file_context. Change-Id: I8ef5da0dc6090d60eb91561e52a77f85ac3ab8c8