aboutsummaryrefslogtreecommitdiffstats
path: root/installd.te
Commit message (Expand)AuthorAgeFilesLines
* Allow installd to move around private app data.Jeff Sharkey2015-04-091-2/+4
* Allow installd to dexopt apps on expanded storage.Jeff Sharkey2015-04-061-0/+1
* Support for storing OAT files in app directoryFyodor Kupolov2015-04-021-3/+5
* installd: drop noatsecure for dex2oatNick Kralevich2015-03-071-3/+0
* Pull keychain-data policy out of system-dataRobin Lee2014-10-151-0/+6
* reconcile aosp (c103da877b72aae80616dbc192982aaf75dfe888) after branching. Pl...Ed Heyl2014-07-141-0/+6
* Fix SELinux policies to allow resource overlays.Nick Kralevich2014-06-161-0/+4
* Remove world-read access to /data/dalvik-cache/profilesNick Kralevich2014-06-121-2/+0
* Allow installd to chown/chmod app data files.Stephen Smalley2014-06-111-1/+1
* Allow installd to stat asec files and /data/media files.Stephen Smalley2014-06-041-2/+3
* Adjust rules around /data/app entitiesChristopher Tate2014-06-031-1/+3
* Allow installd, vold, system_server unlabeled access.Stephen Smalley2014-05-291-3/+5
* Allow installd to unlink /data/media files and search /data/app-asec.Stephen Smalley2014-05-141-0/+4
* Label /data/.layout_version with its own type.Stephen Smalley2014-05-121-3/+4
* Allow installd rename to app_data_file for movefiles command.Stephen Smalley2014-05-121-2/+2
* Restrict installd to only the data file types needed.Stephen Smalley2014-05-091-32/+45
* Drop relabelto_domain() macro and its associated definitions.Stephen Smalley2014-05-091-1/+0
* Allow installd to create the lib symlink for system_app_data_fileNick Kralevich2014-05-091-0/+1
* Protect keystore's files.Nick Kralevich2014-05-091-3/+3
* Label app data directories for system UID apps with a different type.Stephen Smalley2014-05-071-2/+4
* Let installd dexopt OEM apps.Jeff Sharkey2014-04-251-0/+2
* Define a type for /data/dalvik-cache/profiles.Stephen Smalley2014-04-091-0/+2
* Drop dontaudit sys_admin rule from installd.Stephen Smalley2014-04-021-1/+0
* Allow installd to restorecon /data/data.Stephen Smalley2014-03-191-0/+15
* Get rid of separate download_file type.Stephen Smalley2014-03-141-2/+0
* Get rid of separate platform_app_data_file type.Stephen Smalley2014-03-131-1/+0
* Adding permissions needed to remove cachejaejyn.shin2013-12-241-2/+2
* Make bluetooth, nfc, radio and shell adb-installableTakeshi Aimi2013-12-191-0/+4
* Fix long-tail denials in enforcing domains.Geremy Condra2013-09-171-0/+1
* Switch installd to use r_dir_perms for download_file dirs.Geremy Condra2013-09-111-1/+1
* Backport part of d615ef3477da23e7fca9c13b6d63915992e63d2d to klp-devNick Kralevich2013-09-091-0/+1
* Allow installd to clear fifos and socketsNick Kralevich2013-09-091-1/+1
* Revert "Temporarily disable installd selinux protections"Nick Kralevich2013-07-121-1/+0
* domain.te: Add backwards compatibility for unlabeled filesNick Kralevich2013-07-101-0/+1
* Temporarily disable installd selinux protectionsNick Kralevich2013-07-031-0/+1
* installd: enable SELinux restrictionsNick Kralevich2013-07-011-2/+21
* Make all domains unconfined.repo sync2013-05-201-21/+1
* Move domains into per-domain permissive mode.repo sync2013-05-141-0/+1
* Give domains read access to security_file domain.William Roberts2013-04-051-2/+2
* Add SELinux policy for asec containers.rpcraig2012-10-221-0/+4
* installd unlink platform_app_data_fileHaiqing Jiang2012-07-271-3/+1
* external/sepolicy: install daemon unlink application data fileshqjiang2012-07-241-0/+2
* Introduce a separate apk_tmp_file type for the vmdl.*\.tmp files.Stephen Smalley2012-03-191-0/+1
* SE Android policy.Stephen Smalley2012-01-041-0/+21