index
:
android_external_sepolicy
caf/cm-12.0
caf/cm-12.1
cm-10.1
cm-10.2
cm-11.0
cm-12.0
cm-12.1
cm-13.0
jellybean
jellybean-stable
mr1.1-staging
shipping/cm-11.0
stable/cm-10.2
stable/cm-11.0
stable/cm-11.0-XNF8Y
stable/cm-11.0-XNF9X
stable/cm-11.0-XNG2S
stable/cm-11.0-XNG3C
stable/cm-12.0-YNG1I
stable/cm-12.0-YNG1T
stable/cm-12.0-YNG1TA
stable/cm-12.0-YNG3C
stable/cm-12.0-YNG4N
stable/cm-12.1-YOG3C
stable/cm-12.1-YOG4P
stable/cm-12.1-YOG7D
stable/cm-13.0-ZNH0E
stable/cm-13.0-ZNH2K
stable/cm-13.0-ZNH2KB
stable/cm-13.0-ZNH5Y
staging/cm-12.0-caf
staging/cm-12.1
staging/cm-13.0+r22
Unnamed repository; edit this file 'description' to name the repository.
about
summary
refs
log
tree
commit
diff
stats
log msg
author
committer
range
path:
root
/
system_server.te
Commit message (
Expand
)
Author
Age
Files
Lines
*
allow system_server to set ro.build.fingerprint
Nick Kralevich
2014-11-19
1
-0
/
+1
*
allow system_server to set kernel scheduling priority
Nick Kralevich
2014-10-24
1
-0
/
+4
*
Pull keychain-data policy out of system-data
Robin Lee
2014-10-15
1
-0
/
+2
*
allow system_server oemfs read access
Nick Kralevich
2014-10-10
1
-1
/
+1
*
Add support for factory reset protection.
dcashman
2014-09-08
1
-3
/
+3
*
Allow system reset_uid, sync_uid, password_uid
Robin Lee
2014-08-29
1
-0
/
+3
*
Remove system_server create access from /data/dalvik-cache
Brian Carlstrom
2014-08-28
1
-4
/
+0
*
Allow system_server to talk to netlink directly.
Sreeram Ramachandran
2014-07-28
1
-0
/
+3
*
Revert "fix system_server dex2oat exec"
Narayan Kamath
2014-07-25
1
-1
/
+0
*
DO NOT MERGE: Remove service_manager audit_allows.
Riley Spahn
2014-07-18
1
-3
/
+0
*
Remove auditallow from system_server.
Riley Spahn
2014-07-16
1
-9
/
+0
*
Add access control for each service_manager action.
Riley Spahn
2014-07-15
1
-0
/
+12
*
fix system_server dex2oat exec
Nick Kralevich
2014-07-15
1
-0
/
+1
*
reconcile aosp (3a8c5dc05fb7696dd81b8a7c1b2524224154e8ea) after branching. Pl...
Ed Heyl
2014-07-14
1
-0
/
+3
*
sepolicy: allow system server to remove cgroups
Colin Cross
2014-07-09
1
-0
/
+3
*
Typedef+rules for SysSer to access persistent block device
Andres Morales
2014-07-09
1
-0
/
+5
*
Rules to allow installing package directories.
Jeff Sharkey
2014-07-07
1
-2
/
+4
*
system_server: bring back sdcard_type neverallow rule
Nick Kralevich
2014-07-04
1
-1
/
+1
*
Remove keystore auditallow statements from system.
Riley Spahn
2014-07-01
1
-15
/
+0
*
Adding policies for KeyStore MAC.
Riley Spahn
2014-06-26
1
-0
/
+34
*
Allow system_server to read all /proc files
Nick Kralevich
2014-06-25
1
-9
/
+4
*
Align SELinux property policy with init property_perms.
Stephen Smalley
2014-06-23
1
-1
/
+3
*
Allow Bluetooth app to initiate DHCP service on bt-pan interface.
Paul Jensen
2014-06-19
1
-0
/
+1
*
system_server: allow open /dev/snd and read files
Nick Kralevich
2014-06-18
1
-0
/
+2
*
Eliminate some duplicated rules.
Stephen Smalley
2014-06-17
1
-1
/
+0
*
Fix SELinux policies to allow resource overlays.
Nick Kralevich
2014-06-16
1
-0
/
+4
*
system_server profile access
Nick Kralevich
2014-06-13
1
-1
/
+1
*
allow system_server getattr on /data/dalvik-cache/profiles
Nick Kralevich
2014-06-13
1
-1
/
+1
*
Remove world-read access to /data/dalvik-cache/profiles
Nick Kralevich
2014-06-12
1
-0
/
+4
*
Add SELinux rules for service_manager.
Riley Spahn
2014-06-12
1
-0
/
+2
*
system_server: Adds permission to system_server to write sysfs file
Ruchi Kandoi
2014-06-10
1
-0
/
+1
*
Make the system_server domain enforcing.
Stephen Smalley
2014-06-09
1
-1
/
+0
*
Allow system_server access to /data/media files passed via Binder.
Stephen Smalley
2014-06-04
1
-0
/
+3
*
Allow installd, vold, system_server unlabeled access.
Stephen Smalley
2014-05-29
1
-0
/
+5
*
Introduce wakelock_use()
Nick Kralevich
2014-05-23
1
-4
/
+1
*
Remove graphics_device access.
Stephen Smalley
2014-05-14
1
-3
/
+0
*
Allow system_server to read tombstones.
Stephen Smalley
2014-05-14
1
-0
/
+4
*
Restrict system_server to only the data file types needed.
Stephen Smalley
2014-05-13
1
-3
/
+67
*
Drop relabelto_domain() macro and its associated definitions.
Stephen Smalley
2014-05-09
1
-1
/
+0
*
Protect keystore's files.
Nick Kralevich
2014-05-09
1
-2
/
+2
*
Report graphics_device accesses by system_server or mediaserver.
Stephen Smalley
2014-05-07
1
-0
/
+1
*
Allow system_server pstore access.
Nick Kralevich
2014-04-15
1
-0
/
+6
*
Allow inputflinger to call system_server.
Stephen Smalley
2014-03-21
1
-0
/
+1
*
Allow system_server to set ctl.bugreport property.
Stephen Smalley
2014-03-18
1
-0
/
+1
*
Allow system_server to read from log daemon.
Stephen Smalley
2014-03-14
1
-0
/
+3
*
Silence /proc/pid denials.
Stephen Smalley
2014-03-13
1
-0
/
+7
*
Deduplicate and rationalize system_server /proc/pid access.
Stephen Smalley
2014-03-06
1
-12
/
+8
*
temp fix for build breakage.
Nick Kralevich
2014-03-05
1
-1
/
+1
*
Do not allow system_server to access SDcard files.
Stephen Smalley
2014-03-05
1
-3
/
+9
*
Address system_server denials.
Stephen Smalley
2014-03-05
1
-6
/
+28
[next]