aboutsummaryrefslogtreecommitdiffstats
path: root/shell.te
Commit message (Expand)AuthorAgeFilesLines
* neverallow shell file_type:file linkNick Kralevich2015-04-161-0/+8
* SELinux permissions for gatekeeper TEE proxyAndres Morales2015-04-061-1/+2
* Consistent external storage policy.Jeff Sharkey2015-04-021-3/+0
* Fix small copy/paste bug in recent shell rule.Jeff Sharkey2015-03-301-1/+1
* Shell needs to read /storage/self/primary symlink.Jeff Sharkey2015-03-301-0/+3
* Allow shell to read /proc/pid/attr/current for ps -Z.Stephen Smalley2015-03-161-0/+3
* Record observed system_server servicemanager service requests.dcashman2015-03-031-0/+1
* bootchart: add policy rules for bootchartYongqin Liu2015-02-241-0/+6
* Allow shell to find all services.dcashman2015-01-231-4/+2
* Allow shell to read /proc.dcashman2015-01-161-0/+4
* Make system_server_service an attribute.dcashman2015-01-141-0/+1
* selinux: add pstoreMark Salyzyn2015-01-141-1/+4
* Allow dumpstate and shell to list services.dcashman2014-12-301-0/+3
* Allow shell domain to use system_server_service.dcashman2014-12-221-0/+2
* add permissions for adb shell to create symlinks in /data/local/tmpBrian Carlstrom2014-12-101-0/+1
* Eliminate some duplicated rules.Stephen Smalley2014-06-171-1/+0
* Allow shell to read/search /dev/input directory.Stephen Smalley2014-06-121-0/+1
* Refactor the shell domains.Stephen Smalley2014-06-111-2/+36
* Allow adbd / shell /data/anr accessNick Kralevich2014-06-051-0/+4
* shell: access to clear logsMark Salyzyn2014-03-171-0/+4
* Clarify init_shell, shell, and su domain usage.Stephen Smalley2014-02-211-1/+1
* Move shell into enforcing for everyone.Nick Kralevich2014-01-241-5/+0
* Create new conditional userdebug_or_engNick Kralevich2014-01-091-2/+4
* Remove ping domain.Stephen Smalley2014-01-071-0/+3
* Confine shell domain in -user builds only.Stephen Smalley2013-12-181-12/+4
* Support run-as and ndk-gdb functionality.Stephen Smalley2013-12-091-0/+9
* Restrict the ability to set SELinux enforcing mode to init.Stephen Smalley2013-12-021-0/+3
* Make sure exec_type is assigned to all entrypoint types.Stephen Smalley2013-09-271-1/+1
* Make all domains unconfined.repo sync2013-05-201-28/+2
* SELinux policy that separates "init_shell" from "shell".Alex Klyubin2013-05-061-1/+1
* Allow all domains to read the log devices.Stephen Smalley2013-04-051-3/+0
* Revert "Revert "Various minor policy fixes based on CTS.""Geremy Condra2013-03-271-1/+2
* Revert "Various minor policy fixes based on CTS."Geremy Condra2013-03-221-2/+1
* Various minor policy fixes based on CTS.Stephen Smalley2013-03-221-1/+2
* Split internal and external sdcardsWilliam Roberts2013-03-221-2/+2
* Drop shell from having access to dmesgWilliam Roberts2013-03-191-6/+0
* Add policy for run-as program.Stephen Smalley2012-11-271-1/+1
* Allow shell to connect to property serviceWilliam Roberts2012-11-271-1/+1
* Add policy for property service.Stephen Smalley2012-04-041-0/+9
* Allow the shell to create files on the sdcard.Stephen Smalley2012-03-081-1/+1
* Drop redundant rules.Stephen Smalley2012-03-071-2/+0
* Policy changes to support running the latest CTS.Stephen Smalley2012-03-071-3/+4
* Allow reading of properties area, which is now created before init has switch...Stephen Smalley2012-01-121-0/+4
* SE Android policy.Stephen Smalley2012-01-041-0/+30