aboutsummaryrefslogtreecommitdiff
AgeCommit message (Expand)Author
2012-10-17Add a checkfc utility to check file_contexts validity and invoke it.tools_r21Stephen Smalley
2012-10-10Remove HAVE_SELINUX guardKenny Root
2012-09-24Switch app_* and isolated to _app and _isolated in seapp_contexts.Stephen Smalley
2012-09-20Define security labeling for isolated processes.Stephen Smalley
2012-09-18Drop the use of a policy version suffix on the sepolicy file.Stephen Smalley
2012-09-17Merge changes I98fc14e1,If334ba73Kenny Root
2012-09-17Fix for segfault/jmp depends on unitialized variableWilliam Roberts
2012-09-17Fix check_seapp segfault and undefined linking errWilliam Roberts
2012-09-17Merge "Allow domain access to /dev/ion"Kenny Root
2012-09-13Allow domain access to /dev/ionWilliam Roberts
2012-09-06Correct spelling mistakeWilliam Roberts
2012-09-05Merge upstream sepolicy into AOSPJean-Baptiste Queru
2012-09-05Merge checkseapp support.seandroid
2012-09-05Corrected gramatical issuesWilliam Roberts
2012-09-05Added new line to end of fileWilliam Roberts
2012-09-05Changed seapp_contexts temporary file namingWilliam Roberts
2012-09-04Fix mls checking codeWilliam Roberts
2012-09-04Support overrides in seapp_contextsWilliam Roberts
2012-08-24Add tf_daemon labeling support.rpcraig
2012-08-20Add ppp/mtp policy.rpcraig
2012-08-16per device seapp_context supportWilliam Roberts
2012-08-15dhcp policy.rpcraig
2012-08-13Merge upstream sepolicy into AOSPJean-Baptiste Queru
2012-08-13Trusted Execution Environment policy.rpcraig
2012-08-10Define wake_alarm and block_suspect capabilities.Stephen Smalley
2012-08-10Additions for grouper/JBrpcraig
2012-08-09Allow debugfs access and setsched for mediaserver.Stephen Smalley
2012-07-31Merge asec changes.Stephen Smalley
2012-07-31Allow system_server to relabel /data/anr.Stephen Smalley
2012-07-31Allow debuggerd to restorecon the tombstone directory.Stephen Smalley
2012-07-30Untrusted_app gets route informationHaiqing Jiang
2012-07-30domain writes to cgroup pseudo filesystemHaiqing Jiang
2012-07-30Introduce app_read_logs boolean.Stephen Smalley
2012-07-30untrusted_app reads logs when android_cts enabledHaiqing Jiang
2012-07-30read permission over lnk_file to devices when android_cts enabledHaiqing Jiang
2012-07-30New asec container labeling.rpcraig
2012-07-30Add mac_permissions.xml file.rpcraig
2012-07-30Allow CTS Test apps to access to system_data_fileHaiqing Jiang
2012-07-30socket permissions to untrusted_appHaiqing Jiang
2012-07-30appdomain r/w apk_tmp_file and shell_data_file on android_cts enabledHaiqing Jiang
2012-07-27seinfo can be used to select types, and sebool is now supported.Stephen Smalley
2012-07-27allocate perms to platformappdomain over system_data_fileHaiqing Jiang
2012-07-27mediaserver and system require abstract socket connnectionHaiqing Jiang
2012-07-27installd unlink platform_app_data_fileHaiqing Jiang
2012-07-27Platform app domain sdcard accessesHaiqing Jiang
2012-07-27Only enforce per-app process and file isolation via SELinux for third party a...Stephen Smalley
2012-07-24external/sepolicy: mediaserver open application data filesHaiqing Jiang
2012-07-24external/sepolicy: system r/w udp_socket of appdomainhqjiang
2012-07-24external/sepolicy: install daemon unlink application data fileshqjiang
2012-07-19Target the denials/policies over qtaguid file and device: 1. Relabel /proc/ne...hqjiang