Gitiles
Code Review
Sign In
review.shift-gmbh.com
/
SHIFTPHONES
/
android_device_lineage_sepolicy
/
a816a39045b6e36995470fb672761f8237e9d47d
a816a39
sepolicy: recovery: Add policy for volume manager
by Alessandro Astone
· 6 years ago
b05e6a9
Allow Gallery to access system_app_data_file
by dianlujitao
· 6 years ago
351eedd
sepolicy: Move superuser policy to private
by dianlujitao
· 6 years ago
72c407d
common: Restrict HAL permissions to server side
by dianlujitao
· 6 years ago
78fce70
common: Mark platform_app as hal_lineage_livedisplay client
by dianlujitao
· 6 years ago
a21eabf
common: Label livedisplay 2.0 sysfs service
by Paul Keith
· 6 years ago
16c5b62
Remove minivold rules
by Michael Bestas
· 6 years ago
f982155
Move snap/gallery definitions back to private
by Michael Bestas
· 6 years ago
6c19eed
Clean-up recovery rules a bit
by Luca Stefani
· 6 years ago
7e67a4b
Label adb.network.port as system_prop
by Michael Bestas
· 6 years ago
3937322
Make backuptool permissive only in non user builds
by Luca Stefani
· 6 years ago
3f58c82
Make sysinit permissive
by Luca Stefani
· 6 years ago
c0eb879
lineage: Use set_prop() macro for setting adb tcp property
by LuK1337
· 6 years ago
ff9271d
Snap and gallery require to run vendor code
by Luca Stefani
· 6 years ago
da24d05
Remove not allowed rule
by Luca Stefani
· 6 years ago
de42705
Revert "common: Add sf_lcd_density_prop type and labelled props"
by dianlujitao
· 6 years ago
b986852
qcom: Remove power HAL 1.0 label
by Michael Bestas
· 6 years ago
c8ceb6f
sepolicies: add Trust hal
by Joey
· 6 years ago
701b30d
common: Migrate to livedisplay 2.0
by Bruno Martins
· 6 years ago
1c44e50
common: Add vendor.lineage.touch rules
by Michael Bestas
· 6 years ago
c72a806
lineage: Rewrite Lineage Power HAL rules
by Bruno Martins
· 6 years ago
87d305d
lineage: Properly write rules for Lineage LiveDisplay as a HAL
by Bruno Martins
· 6 years ago
e6c3ce0
sepolicy: Allow recovery update_engine to setexec backuptool
by Rashed Abdel-Tawab
· 6 years ago
0211a9c
sepolicy: Allow Settings to read ro.vendor.build.security_patch
by Rashed Abdel-Tawab
· 6 years ago
80e3105
common: Improve label of I/O sched tuning nodes
by Nico
· 6 years ago
8df8725
lineage: Address perf HAL denial with boost enabled
by dianlujitao
· 6 years ago
aaad39f
Allow LiveDisplay to access vendor display property
by dianlujitao
· 6 years ago
17ee363
common: Allow init to relabel I/O sched tuning nodes
by dianlujitao
· 6 years ago
dd4ff84
common: Label and allow access over LiveDisplay sysfs nodes
by Bruno Martins
· 6 years ago
55699af
common: Expand labeling of sysfs_vibrator nodes using genfscon
by Kevin F. Haggerty
· 6 years ago
618adbf
Make A/B backuptool permissive
by Luca Stefani
· 6 years ago
75ac3aa
selinux: add domain for Gallery
by codeworkx
· 6 years ago
8857acd
move snap_app type definition to public
by jrior001
· 6 years ago
037f27a
selinux: add domain for snap
by codeworkx
· 7 years ago
837e029
common: Label and allow init to write to I/O sched tuning nodes
by Kevin F. Haggerty
· 6 years ago
75c6cf9
common: Allow adbd to set a system_prop
by Kevin F. Haggerty
· 6 years ago
a60a7e7
Label lineage.service.adb.root as system prop
by Luca Stefani
· 6 years ago
0c74f7b
common: Label common basic USB HAL
by Bruno Martins
· 6 years ago
a85377e
sepolicy: Update to match new qcom sepolicy
by Rashed Abdel-Tawab
· 6 years ago
31b0919
sepol: Remove recovery access to vold_socket
by Rashed Abdel-Tawab
· 6 years ago
aafd2bf
sepol: Remove exfat context and set sdFAT to exFAT
by Rashed Abdel-Tawab
· 6 years ago
f1ad321
sepolicy: recovery: Allow (re)mounting system
by Paul Keith
· 6 years ago
f126e29
Make fuseblk use vfat context
by Luca Stefani
· 6 years ago
65ae242
Revert "sepolicy: qcom: Allow nfc to read and execute files in /vendor on full treble"
by LuK1337
· 7 years ago
c9b0d95
sepolicy: add rules for updater and update_engine
by Dan Pasanen
· 8 years ago
37422f7
common: add update_engine policies
by Dan Pasanen
· 7 years ago
41ac4fa
sepolicy: Label aw2013 HIDL light HAL
by Michael Bestas
· 7 years ago
0f4572f
sepolicy: introduce Trust interface
by Joey
· 7 years ago
953c9ca
sepolicy: Add legacy-mm livedisplay label
by Ethan Chen
· 7 years ago
ea92881
sepolicy: qcom: Allow nfc to read and execute files in /vendor on full treble
by LuK1337
· 7 years ago
956eaed
Revert "sepolicy: suppress denial logspam"
by Michael Bestas
· 7 years ago
98c7f8d
Allow recovery write to sysfs_graphics
by Michael Bestas
· 7 years ago
541bcf2
Remove adb.secure recovery property context
by Michael Bestas
· 7 years ago
5ebc0dc
sepolicy: Add rules for LiveDisplay HIDL HAL
by Bruno Martins
· 7 years ago
b95e366
common: Remove stale ntfs genfscon policy
by Paul Keith
· 7 years ago
43701f1
sepolicy: Change recovery_prop to lineage_recovery_prop
by Rashed Abdel-Tawab
· 7 years ago
467738e
recovery: Use r_dir_file macro
by Ethan Chen
· 7 years ago
bc6bf77
sepolicy: recovery: Allow reading battery and usb status
by Tom Marshall
· 7 years ago
b64134a
sepolicy: Allow vold to exec sgdisk
by Tom Marshall
· 7 years ago
dca65ca
sepolicy: Improve external storage rules
by David
· 7 years ago
8290552
sepolicy: allow untrusted app to find styleInterface
by Joey
· 7 years ago
a14df93
sepolicy: add style api
by Joey
· 7 years ago
60dfcd8
sepolicy: Fix neverallow on user builds
by Paul Keith
· 7 years ago
c4c96f6
sepolicy: Isolate qcom sysfs_graphics policy for recovery
by Adrian DC
· 7 years ago
2c9cfd4
recovery: Clean up recovery SELinux policy
by Ethan Chen
· 7 years ago
d54feea
common: Add sf_lcd_density_prop type and labelled props
by Paul Keith
· 7 years ago
5e84bfc
sepolicy: Initial policy for recovery
by Tom Marshall
· 7 years ago
823cfb1
common: Label sdfat as vfat
by Andreas Schneider
· 7 years ago
7b3aa9f
sepolicy: Cleanup context labelling for external sdcards
by Paul Keith
· 7 years ago
20256ad
sepolicy: common: Lol three spaces
by LuK1337
· 7 years ago
397788d
sepolicy: qcom: Fixing camera app not launching
by Max Bires
· 8 years ago
40b1f8e
sepolicy: Allow apps with API level <= 25 to access services
by Andreas Schneider
· 7 years ago
6fcb0af
sepolicy: suppress denial logspam
by Jeff Vander Stoep
· 7 years ago
a6a0370
sepolicy: Add policy for vendor.lineage.power HAL
by Rashed Abdel-Tawab
· 7 years ago
6488452
sepolicy/qcom: Allow livedisplay to write to /data/vendor/display
by Sam Mortimer
· 7 years ago
42ad107
sepolicy: adapt sudaemon policy for O
by jrior001
· 7 years ago
7995201
sepolicy: Clean up su policy for N
by Steve Kondik
· 8 years ago
537edb8
sepolicy: allow kernel to read storage
by FrozenCow
· 9 years ago
e6968b5
sepolicy: fix denial for sudaemon
by codeworkx
· 9 years ago
bd02d04
sepolicy: Make superuser_device and sudaemon mlstrustedobjects
by myfluxi
· 9 years ago
184c8d8
sepolicy: remove sudaemon type declaration
by Dan Pasanen
· 9 years ago
dfe2569
sepolicy: Add policies for the new superuser sockets.
by Ricardo Cerqueira
· 10 years ago
24ebf7a
selinux: Workaround for devices with PR_SET_NO_NEW_PRIVS enforcement
by Ricardo Cerqueira
· 10 years ago
4a1bf1a
SELinux: su: Remove extra quote in a comment
by Chirayu Desai
· 10 years ago
ed6c61e
Add selinux policies for superuser
by Ricardo Cerqueira
· 10 years ago
f8fdc33
Remove lineage status bar and telephony service policy
by Michael Bestas
· 7 years ago
c3bb264
sepolicy: Move exfat, ntfs and fuseblk types to system/sepolicy
by Andreas Schneider
· 7 years ago
0e69cb5
qcom: Allow fsck to check /persist
by Andreas Schneider
· 7 years ago
6e59e06
sepolicy: allow vold to mount fuse-based sdcard
by Pawit Pornkitprasan
· 11 years ago
123e1df
sepolicy: Allow vold to `getattr` on mkfs_exec
by LuK1337
· 8 years ago
d17140e
sepolicy: fix denials for external storage
by codeworkx
· 9 years ago
9ceec6f
sepolicy: treat fuseblk as sdcard_external
by Pawit Pornkitprasan
· 11 years ago
397e3cd
sepolicy: label exfat and ntfs mkfs executables
by codeworkx
· 9 years ago
a2718d3
sepolicy: Add domain for mkfs binaries
by Keith Mok
· 9 years ago
7727222
sepolicy: Set the context for fsck.exfat/ntfs to fsck_exec
by dhacker29
· 9 years ago
4daa979
sepolicy: Fix sysinit denials
by Steve Kondik
· 8 years ago
9e6ab47
sepolicy: Permissions for userinit
by Emerson Pinter
· 10 years ago
de517a7
sepolicy: allow userinit to set its property
by Georg Veichtlbauer
· 10 years ago
cbeae99
sepolicy: Add policy for sysinit
by myfluxi
· 10 years ago
48e2eaa
sepolicy: qcom: add persist_block_device type
by Dan Pasanen
· 9 years ago
Next »