aboutsummaryrefslogtreecommitdiffstats
path: root/app.te
Commit message (Expand)AuthorAgeFilesLines
* Make all domains unconfined.repo sync2013-05-201-143/+6
* Move domains into per-domain permissive mode.repo sync2013-05-141-0/+6
* Add rules for asec containers.repo sync2013-05-081-0/+4
* Add downloaded file policy.Geremy Condra2013-04-051-0/+11
* Add new domains for private apps.Robert Craig2013-04-051-2/+4
* Allow apps to execute the shell or system commands unconditionally.Stephen Smalley2013-04-051-0/+4
* Allow fstat of platform app /data/data files.Stephen Smalley2013-04-051-1/+1
* Coalesce rules for allowing execution of shared objects by app domains.Stephen Smalley2013-04-051-4/+1
* Strip unnecessary trailing semicolon on macro calls.Stephen Smalley2013-04-051-1/+1
* Allow all domains to read the log devices.Stephen Smalley2013-04-051-9/+0
* Add the ability to stat files under /cache for media_app.Geremy Condra2013-03-291-0/+6
* Drop separate domain for browser.Stephen Smalley2013-03-281-9/+0
* Eliminate most of the app policy booleans.Stephen Smalley2013-03-281-33/+6
* Revert "Revert "Various minor policy fixes based on CTS.""Geremy Condra2013-03-271-1/+2
* racoon policy.Robert Craig2013-03-221-0/+2
* Revert "Various minor policy fixes based on CTS."Geremy Condra2013-03-221-2/+1
* Various minor policy fixes based on CTS.Stephen Smalley2013-03-221-1/+2
* Split internal and external sdcardsWilliam Roberts2013-03-221-7/+13
* Update binder-related policy.Stephen Smalley2013-03-191-2/+0
* Only allow read/write not open on platform_app_data_file.Stephen Smalley2013-03-191-2/+3
* App data backup security policy.rpcraig2013-03-191-0/+7
* Change security policy so all apps can read /dev/xt_qtaguid.rpcraig2012-12-051-6/+3
* Add SELinux policy for asec containers.rpcraig2012-10-221-0/+5
* allow apps access to the keystore, dhcp/pptp fixes, wifi fixes and isolated_a...Joshua Brindle2012-10-161-6/+22
* Define security labeling for isolated processes.Stephen Smalley2012-09-201-0/+4
* Additions for grouper/JBrpcraig2012-08-101-0/+3
* Untrusted_app gets route informationHaiqing Jiang2012-07-301-0/+2
* Introduce app_read_logs boolean.Stephen Smalley2012-07-301-1/+2
* untrusted_app reads logs when android_cts enabledHaiqing Jiang2012-07-301-0/+4
* Allow CTS Test apps to access to system_data_fileHaiqing Jiang2012-07-301-1/+1
* socket permissions to untrusted_appHaiqing Jiang2012-07-301-1/+1
* allocate perms to platformappdomain over system_data_fileHaiqing Jiang2012-07-271-0/+2
* Platform app domain sdcard accessesHaiqing Jiang2012-07-271-6/+3
* Only enforce per-app process and file isolation via SELinux for third party a...Stephen Smalley2012-07-271-0/+17
* Target the denials/policies over qtaguid file and device: 1. Relabel /proc/ne...hqjiang2012-07-191-2/+4
* Address various denials introduced by JB/4.1.Stephen Smalley2012-07-121-3/+7
* Fix the app_ndk policy boolean allow rule.Michal MaĊĦek2012-07-121-1/+1
* media app should have rw access to sdcard dir and files.William Roberts2012-06-281-2/+2
* Rewrite app domains and seapp_contexts to leverage new seinfo tags.Stephen Smalley2012-06-281-17/+50
* Allow apps to write to /proc/net/xt_qtaguid/ctrl.Stephen Smalley2012-06-271-0/+3
* Allow apps to write to anr_data_file for /data/anr/traces.txt.Stephen Smalley2012-04-041-0/+4
* Introduce a separate wallpaper_file type for the wallpaper file.Stephen Smalley2012-03-191-0/+3
* Introduce a separate apk_tmp_file type for the vmdl.*\.tmp files.Stephen Smalley2012-03-191-2/+1
* Policy changes to support running the latest CTS.Stephen Smalley2012-03-071-6/+3
* Further policy for Motorola Xoom.Stephen Smalley2012-01-061-0/+3
* SE Android policy.Stephen Smalley2012-01-041-0/+107