aboutsummaryrefslogtreecommitdiffstats
path: root/system_server.te
Commit message (Expand)AuthorAgeFilesLines
* system_server: replace sys_resource with sys_ptraceHEADreplicant-6.0-0004-transitionreplicant-6.0-0004-rc6replicant-6.0-0004-rc5-transitionreplicant-6.0-0004-rc5replicant-6.0-0004-rc4replicant-6.0-0004-rc3replicant-6.0-0004-rc2replicant-6.0-0004-rc1replicant-6.0-0004replicant-6.0-0003cm-13.0Nick Kralevich2017-07-171-4/+1
* sepolicy: Add policy for sdcardfs and configfsSteve Kondik2016-07-261-0/+4
* Merge tag 'android-6.0.1_r22' of https://android.googlesource.com/platform/ex...staging/cm-13.0+r22Steve Kondik2016-03-101-1/+3
|\
| * Add policies for system_server to delete fpdata folderAmith Yamasani2015-12-181-1/+3
* | Merge tag 'android-6.0.0_r26' into cm-13.0Ricardo Cerqueira2015-11-051-1/+5
|\|
| * Allow system_server to bind ping sockets.Lorenzo Colitti2015-09-141-1/+5
* | sepolicy: Fixup neverallows for non-shipping builds..Adnan Begovic2015-10-161-1/+4
* | Merge remote-tracking branch 'upstream/marshmallow-release', tag 'android-6.0...Adnan Begovic2015-10-151-34/+84
|\|
| * Revert "Allow system_server to link,relabel and create_dir dalvikcache_data_f...Narayan Kamath2015-06-051-19/+0
| * Allow system_server to link,relabel and create_dir dalvikcache_data_file.Narayan Kamath2015-06-041-0/+19
| * Merge "Allow system server and uncrypt to operate pipe file" into mnc-devTao Bao2015-05-281-0/+1
| |\
| | * Allow system server and uncrypt to operate pipe fileTao Bao2015-05-271-0/+1
| * | Merge "Selinux: Allow system_server to create fpdata dir." into mnc-devJim Miller2015-05-221-0/+3
| |\ \
| | * | Selinux: Allow system_server to create fpdata dir.Jim Miller2015-05-211-0/+3
| * | | Merge "Rename keystore methods and delete unused permissions" into mnc-devChad Brubaker2015-05-211-6/+3
| |\ \ \ | | |/ / | |/| |
| | * | Rename keystore methods and delete unused permissionsChad Brubaker2015-05-181-6/+3
| | |/
| * | Add selinux policy for fingerprintdJim Miller2015-05-191-0/+2
| * | Label /dev/rtc0 as rtc_device.dcashman2015-05-181-0/+1
| |/
| * Add keystore user_changed permissionChad Brubaker2015-05-181-0/+1
| * Allow system_server to read/write /proc/uid_cputime/ moduleAdam Lesinski2015-05-131-0/+6
| * Replace unix_socket_connect() and explicit property sets with macroWilliam Roberts2015-05-071-11/+10
| * am 2a7a4037: am 2234f9ff: gatekeeperd: neverallow non-system_server binder callNick Kralevich2015-04-101-0/+1
| |\
| | * gatekeeperd: neverallow non-system_server binder callNick Kralevich2015-04-091-0/+1
| * | am 29f90b1e: am 7f2bb0c1: Merge "Enforce more specific service access."dcashman2015-04-091-21/+0
| |\|
| | * Enforce more specific service access.dcashman2015-04-091-21/+0
| * | am 18867dbb: am 03a6f64f: Enforce more specific service access.dcashman2015-04-081-6/+0
| |\|
| | * Enforce more specific service access.dcashman2015-04-081-6/+0
| * | am 2a762352: am 9bef2502: system_server: support hard linking for split APKsNick Kralevich2015-04-081-1/+1
| |\|
| | * system_server: support hard linking for split APKsNick Kralevich2015-04-081-1/+1
| * | am 63b07909: am 8a06c077: Allow system_server to collect app heapdumps (debug...Nick Kralevich2015-04-081-0/+4
| |\|
| | * Allow system_server to collect app heapdumps (debug builds only)Nick Kralevich2015-04-071-0/+4
| * | am 0bc36ada: am 91b7c67d: Enforce more specific service access.dcashman2015-04-081-7/+0
| |\|
| | * Enforce more specific service access.dcashman2015-04-071-7/+0
| * | am b1a13728: am 3cc6fc5f: Enforce more specific service access.dcashman2015-04-081-8/+0
| |\|
| | * Enforce more specific service access.dcashman2015-04-071-8/+0
| * | am 26ef3bbc: am 3af8c9d0: Allow system_server to read oat dirFyodor Kupolov2015-04-071-0/+1
| |\|
| | * Allow system_server to read oat dirFyodor Kupolov2015-04-071-0/+1
| * | am 86501cde: am d4c78f4b: Enforce more specific service access.dcashman2015-04-071-5/+0
| |\|
| | * Enforce more specific service access.dcashman2015-04-071-5/+0
| * | am 8a6ac553: am 73d9c2a9: Initial policy for expanded storage.Jeff Sharkey2015-04-071-0/+3
| |\|
| | * Initial policy for expanded storage.Jeff Sharkey2015-04-061-0/+3
| * | am 258ea8ed: am e207986e: SELinux permissions for gatekeeper TEE proxyAndres Morales2015-04-071-0/+1
| |\|
| | * SELinux permissions for gatekeeper TEE proxyAndres Morales2015-04-061-0/+1
| * | am 2e45bba5: am 4cdea7fc: Assign app_api_service attribute to services.dcashman2015-04-061-5/+0
| |\|
| | * Assign app_api_service attribute to services.dcashman2015-04-061-5/+0
| * | am b40dd46a: am b075338d: Assign app_api_service attribute to services.dcashman2015-04-031-4/+0
| |\|
| | * Assign app_api_service attribute to services.dcashman2015-04-031-4/+0
| * | am e83172c5: am 1598b52b: Merge "Remove obsolete system_server auditallow log...dcashman2015-04-021-15/+0
| |\|
| | * Remove obsolete system_server auditallow logging.dcashman2015-04-011-15/+0
| * | am c8197153: am 59abf4cc: Merge "Record observed service accesses."dcashman2015-04-021-0/+2
| |\|