index
:
android_external_sepolicy
caf/cm-12.0
caf/cm-12.1
cm-10.1
cm-10.2
cm-11.0
cm-12.0
cm-12.1
cm-13.0
jellybean
jellybean-stable
mr1.1-staging
shipping/cm-11.0
stable/cm-10.2
stable/cm-11.0
stable/cm-11.0-XNF8Y
stable/cm-11.0-XNF9X
stable/cm-11.0-XNG2S
stable/cm-11.0-XNG3C
stable/cm-12.0-YNG1I
stable/cm-12.0-YNG1T
stable/cm-12.0-YNG1TA
stable/cm-12.0-YNG3C
stable/cm-12.0-YNG4N
stable/cm-12.1-YOG3C
stable/cm-12.1-YOG4P
stable/cm-12.1-YOG7D
stable/cm-13.0-ZNH0E
stable/cm-13.0-ZNH2K
stable/cm-13.0-ZNH2KB
stable/cm-13.0-ZNH5Y
staging/cm-12.0-caf
staging/cm-12.1
staging/cm-13.0+r22
Unnamed repository; edit this file 'description' to name the repository.
about
summary
refs
log
tree
commit
diff
stats
log msg
author
committer
range
path:
root
/
domain.te
Commit message (
Expand
)
Author
Age
Files
Lines
*
am a331c593: am 5aac86dc: Revert "Revert "SELinux policy changes for re-execi...
Elliott Hughes
2015-04-24
1
-1
/
+2
|
\
|
*
Revert "Revert "SELinux policy changes for re-execing init.""
Elliott Hughes
2015-04-24
1
-1
/
+2
*
|
am 6b82aaeb: am 6d97d9b8: Merge "Revert "SELinux policy changes for re-execin...
Nick Kralevich
2015-04-24
1
-2
/
+1
|
\
|
|
*
Revert "SELinux policy changes for re-execing init."
Nick Kralevich
2015-04-24
1
-2
/
+1
*
|
am f17bbab7: am ecd57731: Merge "SELinux policy changes for re-execing init."
Elliott Hughes
2015-04-24
1
-1
/
+2
|
\
|
|
*
SELinux policy changes for re-execing init.
Elliott Hughes
2015-04-23
1
-1
/
+2
*
|
Merge "Remove recovery from mknod neverallow rule"
Nick Kralevich
2015-04-15
1
-1
/
+1
|
\
\
|
*
|
Remove recovery from mknod neverallow rule
Nick Kralevich
2015-04-14
1
-1
/
+1
*
|
|
am 38885bc4: am e96c3abe: Add neverallow for mounting on proc
dcashman
2015-04-14
1
-0
/
+2
|
\
\
\
|
|
/
/
|
/
|
/
|
|
/
|
*
Add neverallow for mounting on proc
dcashman
2015-04-14
1
-0
/
+2
*
|
am 29f90b1e: am 7f2bb0c1: Merge "Enforce more specific service access."
dcashman
2015-04-09
1
-3
/
+0
|
\
|
|
*
Enforce more specific service access.
dcashman
2015-04-09
1
-3
/
+0
*
|
am 41c5ead3: am b62b2020: Merge "domain: relax execmod restrictions"
Nick Kralevich
2015-04-02
1
-1
/
+4
|
\
|
|
*
domain: relax execmod restrictions
Nick Kralevich
2015-04-01
1
-1
/
+4
|
*
Adding e4crypt support
Paul Lawrence
2015-03-27
1
-0
/
+1
*
|
am 1df53474: am a7eb161e: Merge "add neverallow rules for execmod"
Nick Kralevich
2015-03-25
1
-0
/
+15
|
\
|
|
*
add neverallow rules for execmod
Nick Kralevich
2015-03-24
1
-0
/
+15
*
|
am 671d16fe: am 581f25b0: Merge "Add new "procrank" SELinux domain."
Nick Kralevich
2015-03-19
1
-1
/
+8
|
\
|
|
*
Add new "procrank" SELinux domain.
Nick Kralevich
2015-03-19
1
-1
/
+8
*
|
am f836abef: am 8bd13687: neverallow su_exec:file execute
Nick Kralevich
2015-03-15
1
-0
/
+5
|
\
|
|
*
neverallow su_exec:file execute
Nick Kralevich
2015-03-14
1
-0
/
+5
*
|
Adding e4crypt support
Paul Lawrence
2015-03-13
1
-0
/
+1
*
|
am 1193bdf4: am 6843a793: am 8f81dcad: Only allow system_server to send comma...
dcashman
2015-03-10
1
-0
/
+4
|
\
|
|
*
Only allow system_server to send commands to zygote.
dcashman
2015-03-09
1
-0
/
+4
*
|
Revert "Allow recovery to create device nodes and modify rootfs"
Nick Kralevich
2015-03-02
1
-2
/
+2
|
/
*
Allow init to execute /sbin/slideshow
Sami Tolvanen
2015-02-26
1
-1
/
+1
*
Revert /proc/net related changes
Nick Kralevich
2015-02-25
1
-2
/
+1
*
sepolicy: remove block_device access from install_recovery
Stephen Smalley
2015-02-24
1
-1
/
+1
*
neverallow mounton lnk_file fifo_file sock_file
Nick Kralevich
2015-02-23
1
-0
/
+4
*
domain.te: neverallow System V IPC classes
Nick Kralevich
2015-02-11
1
-0
/
+18
*
Remove service_manager_type auditing of shell source domain.
dcashman
2015-02-06
1
-1
/
+1
*
don't allow mounting on top of /system files/directories
Nick Kralevich
2015-02-05
1
-0
/
+3
*
Add compile time checks for /data/dalvik-cache access
Nick Kralevich
2015-01-30
1
-0
/
+10
*
domain.te: allow /proc/net/psched access
Nick Kralevich
2015-01-22
1
-0
/
+2
*
remove /proc/net read access from domain.te
Nick Kralevich
2015-01-14
1
-1
/
+0
*
Make system_server_service an attribute.
dcashman
2015-01-14
1
-0
/
+3
*
Restrict service_manager find and list access.
dcashman
2014-12-15
1
-5
/
+0
*
Add neverallow rule for set_context_mgr.
dcashman
2014-12-10
1
-0
/
+3
*
Revert " Add neverallow rule for set_context_mgr."
dcashman
2014-12-09
1
-3
/
+0
*
Add neverallow rule for set_context_mgr.
dcashman
2014-12-05
1
-0
/
+3
*
Allow recovery to create device nodes and modify rootfs
Nick Kralevich
2014-11-07
1
-2
/
+2
*
recovery.te: add /data neverallow rules
Nick Kralevich
2014-11-05
1
-2
/
+2
*
allow coredump functionality
Nick Kralevich
2014-10-31
1
-0
/
+4
*
Remove -unconfineddomain from neverallow rules.
Stephen Smalley
2014-10-21
1
-5
/
+6
*
Remove block_device:blk_file access from fsck.
Stephen Smalley
2014-10-21
1
-1
/
+1
*
Define specific block device types for system and recovery partitions.
Stephen Smalley
2014-10-02
1
-0
/
+6
*
Do not allow init to execute anything without changing domains.
Stephen Smalley
2014-09-28
1
-1
/
+5
*
zygote: allow replacing /proc/cpuinfo
Nick Kralevich
2014-09-26
1
-0
/
+1
*
Add support for factory reset protection.
dcashman
2014-09-19
1
-0
/
+2
*
Remove /dev/log/* access
Nick Kralevich
2014-09-18
1
-2
/
+0
[next]