aboutsummaryrefslogtreecommitdiffstats
path: root/system_server.te
Commit message (Expand)AuthorAgeFilesLines
* gatekeeperd: neverallow non-system_server binder callNick Kralevich2015-04-091-0/+1
* Enforce more specific service access.dcashman2015-04-091-21/+0
* Enforce more specific service access.dcashman2015-04-081-6/+0
* system_server: support hard linking for split APKsNick Kralevich2015-04-081-1/+1
* Allow system_server to collect app heapdumps (debug builds only)Nick Kralevich2015-04-071-0/+4
* Enforce more specific service access.dcashman2015-04-071-7/+0
* Enforce more specific service access.dcashman2015-04-071-8/+0
* Allow system_server to read oat dirFyodor Kupolov2015-04-071-0/+1
* Enforce more specific service access.dcashman2015-04-071-5/+0
* Initial policy for expanded storage.Jeff Sharkey2015-04-061-0/+3
* SELinux permissions for gatekeeper TEE proxyAndres Morales2015-04-061-0/+1
* Assign app_api_service attribute to services.dcashman2015-04-061-5/+0
* Assign app_api_service attribute to services.dcashman2015-04-031-4/+0
* Remove obsolete system_server auditallow logging.dcashman2015-04-011-15/+0
* Record observed service accesses.dcashman2015-04-011-0/+2
* Add keystore add_authChad Brubaker2015-03-311-0/+1
* Updated policy for external storage.Jeff Sharkey2015-03-301-2/+11
* Add graphicsstats serviceJohn Reck2015-03-271-0/+1
* Revert "allow system_server to set kernel scheduling priority"Nick Kralevich2015-03-121-4/+0
* system_server: neverallow blk_file read/writeNick Kralevich2015-03-111-0/+5
* system_server: remove appdomain:file writeNick Kralevich2015-03-111-3/+0
* am 8f81dcad: Only allow system_server to send commands to zygote.dcashman2015-03-091-3/+0
|\
| * Only allow system_server to send commands to zygote.dcashman2015-03-091-3/+0
* | am 0560e75e: system_server: allow handling app generated unix_stream_socketsNick Kralevich2015-03-091-1/+1
|\|
| * system_server: allow handling app generated unix_stream_socketsNick Kralevich2015-03-081-1/+1
* | am 92b10ddb: Eliminate CAP_SYS_MODULE from system_serverNick Kralevich2015-03-051-1/+0
|\|
| * Eliminate CAP_SYS_MODULE from system_serverNick Kralevich2015-03-051-1/+0
* | am 23f33615: Record observed system_server servicemanager service requests.dcashman2015-03-031-0/+5
|\|
| * Record observed system_server servicemanager service requests.dcashman2015-03-031-0/+5
* | am d99ea5a8: Merge "Revert /proc/net related changes"Nick Kralevich2015-02-261-1/+0
|\|
| * Revert /proc/net related changesNick Kralevich2015-02-251-1/+0
* | am 437f7139: am 361cdaff: system_server: neverallow dex2oat execNick Kralevich2015-01-301-0/+6
|\|
| * system_server: neverallow dex2oat execNick Kralevich2015-01-291-0/+6
* | am a5119ee7: am 566e8fe2: Record service accesses.dcashman2015-01-201-11/+39
|\|
| * Record service accesses.dcashman2015-01-161-11/+39
* | am c1142451: am 0d16b5ac: Merge "Remove known system_server service accesses ...dcashman2015-01-161-2/+15
|\|
| * Remove known system_server service accesses from auditing.dcashman2015-01-151-2/+15
* | am acf209e8: am 99940d1a: remove /proc/net read access from domain.teNick Kralevich2015-01-151-0/+1
|\|
| * remove /proc/net read access from domain.teNick Kralevich2015-01-141-0/+1
* | resolved conflicts for merge of e55f2b81 to lmp-mr1-dev-plus-aospdcashman2015-01-141-0/+12
|\|
| * Make system_server_service an attribute.dcashman2015-01-141-0/+12
* | am d8800a10: am cd82557d: Restrict service_manager find and list access.dcashman2014-12-161-4/+18
|\|
| * Restrict service_manager find and list access.dcashman2014-12-151-4/+18
* | am c230c292: am c48971f6: allow system_server to set ro.build.fingerprintNick Kralevich2014-11-191-0/+1
|\|
| * allow system_server to set ro.build.fingerprintNick Kralevich2014-11-181-0/+1
* | am 4d9648e3: am b519949d: system_server: assert app data files never opened d...Nick Kralevich2014-10-291-0/+7
|\|
| * am b519949d: system_server: assert app data files never opened directlyNick Kralevich2014-10-281-0/+7
| |\
| | * system_server: assert app data files never opened directlyNick Kralevich2014-10-231-0/+7
| | * Add support for factory reset protection.dcashman2014-09-191-3/+3
| | * Allow system reset_uid, sync_uid, password_uidRobin Lee2014-09-111-0/+3