Commit Graph

2191 Commits

Author SHA1 Message Date
Raj Yengisetty
cd54ddf089 Add profiles to the default power menu
Change-Id: Ib829ed54d2f0112bc4ab296ec8063b4f7cda3c40
2015-01-05 20:57:39 +00:00
Abhisek Devkota
e6a352f2d0 CM Legal - use https
Change-Id: If802190875e5106e8f2bf5827069b87fbb738155
2015-01-05 12:33:19 -08:00
Ricardo Cerqueira
117984fc6b config: Build the new Terminal app
Change-Id: I23291e277b37c80742449646a771dd9f8759936e
2015-01-04 02:21:37 +00:00
Ricardo Cerqueira
1bc6d1b907 Remove Superuser app
superuser access doesn't require an app now, it's been tied to
privacy guard

Change-Id: I592a2a7d36e3e6710885161a610e13c7e835ae67
2015-01-04 01:16:45 +00:00
Ricardo Cerqueira
a7dfa18fd5 sepolicy: Add policies for the new superuser sockets.
Change-Id: Ia3e1044616bee95eb4774254fb098487d983b5db
2015-01-04 01:16:25 +00:00
Pawit Pornkitprasan
24a971ad42 cm: sepolicy: fix performance settings
Change-Id: Idea17856b4aef9258688a3ad58d0e5cac6d805a6
2015-01-03 07:57:44 +00:00
Ricardo Cerqueira
c738cc26ca selinux: Allow recovery to do recursive deletes
Our partial wipes (preserving media) require that recovery can
rmdir dirs and getattr files

Change-Id: I206f74131f9a37c5887ef30062adeabb58beaa3a
2015-01-03 04:23:08 +00:00
Konsta
444ce4a6b1 cm: Remove KSM permissions
CM12 doesn't have a KSM setting in performance settings anymore.
KSM should be configured and enabled on device basis.

Change-Id: I98a0cbe1b01a659eb28bcd459be55d78a88bda86
2015-01-01 00:40:37 +00:00
repo Shareef Ali
4bcfc3137a CM: disable root by default
Change-Id: Iab89190038e164ebd7f806050d552a2b3bdccc58
2015-01-01 00:26:13 +00:00
Steve Kondik
54f23af16e cm: Reenable auto perf activities
Change-Id: I98770244e8dfa8c069f96a8012d6709403a7d13e
2014-12-30 19:16:51 +00:00
Shareef Ali
e980819a9c apn: fix some data issues when using sprint operator numerics.
this fixes issues like
https://jira.cyanogenmod.org/browse/NIGHTLIES-404

requires:
http://review.cyanogenmod.org/#/c/79764/

Change-Id: I595788c3bf529640df16aaa75551bb55b4c0f036
2014-12-29 17:43:03 +00:00
Arne Coucheron
90d2f8ceca Change roaming protocol for "telenor.smart" to IPv4
* As per info on telenor.no

Change-Id: I7d5febd07e362d38880b454a45a3b692f52a954c
2014-12-22 22:53:34 +00:00
Matt Mower
038fba3cca sepolicy: remove stray + in type statement
Change-Id: Ic34c9ae32658541064a63153612145c6fd3d55b3
2014-12-22 15:21:57 +00:00
Andy Mast
f274019100 selinux: New rw privileges for themes
- New theme_data_file context for files under /data/system/theme
- Permit systemserver to create files/dirs under /data/resource-cache
- Permit systemserver to create files/dirs under /data/system/theme

Change-Id: Id597fc20b477ea395a8631623f26a7edde280799
2014-12-19 10:35:48 -08:00
Arne Coucheron
96ff95e52a cm: Remove obsolete persist.sys.dalvik.multithread property
Change-Id: I0d04f50dcca1454a7f38d8076b8418f67b140906
2014-12-18 03:37:16 +00:00
Adnan
f786721435 Update Reliance RTel APN's.
Change-Id: I64cfaef7de1b506059fc0f79bc24dd78ca0555d2
(cherry picked from commit 5f37ad9684c7117b12f599af1f25dbb6e0419687)
2014-12-17 21:19:14 +00:00
Dan Pasanen
e33cc1d37d sepolicy: allow recovery read access to /data/media/ files and dirs
Change-Id: I41173d72e86f9cf4d79f7c46166eeb71dc19d2f4
2014-12-14 10:44:53 -06:00
Ricardo Cerqueira
ebc1c942e7 selinux: Downgrade CMFM's domain
the filemanager doesn't need to be in platform_app. Put it in untrusted_app,
especially since it's a possible su client

Change-Id: I164853f2c8721d86b5b90677cb33032a3b491ff5
2014-12-13 02:44:52 +00:00
Tom Marshall
d553a9f8b5 cm: sepolicy: Remove vold external sdcard rules, moved to main sepolicy
Change-Id: I67756bad2c6e1361ecc0052003f2b4e5e4dbb007
2014-12-13 02:13:52 +00:00
Tom Marshall
66e2bc5c8c cm: Remove prebuilt Term.apk
* This is free on the Play Store, no need to bake it in.

Change-Id: Iffa24c3f2239ee06deee2fe7d1cec396200e1d79
2014-12-12 13:04:33 -08:00
Andy Mast
03555ad053 Sepolicy: Add theme service as system service
Change-Id: Idfb690be5d35c03610165b914c0a3f2260e68956
2014-12-12 01:00:34 +00:00
Abhisek Devkota
eab1fbb75b Add Bulsatcom APN
Change-Id: Iedde9248dae63ce5ad030c7713192f0a64f1d038
(cherry picked from commit 12e4e186cb111adcaf628fae0c6471fd22770470)
2014-12-11 19:59:00 +00:00
Roman Birg
20114d672c cm: add sepolicy entry for lockscreen wallpaper
Change-Id: Ie779392ab8118d192873a01ec5c7de3e5938ed17
Signed-off-by: Roman Birg <roman@cyngn.com>
2014-12-11 18:17:04 +00:00
Adnan Begovic
df2273ed95 Overlay for stats collection on cm.
Change-Id: I3ecec3507cd617a41ac2c37c5892f3e8ed0261f5
2014-12-10 22:19:35 +00:00
Ricardo Cerqueira
4df29e013d selinux: Workaround for devices with PR_SET_NO_NEW_PRIVS enforcement
PR_SET_NO_NEW_PRIVS blocks domain transitions from within app_process,
unless the new domain is bounded by the app's context. So we can't
switch to a domain that has perms not available to untrusted_app :(

This means any app can talk to the daemon, bypassing the su executable
client. That's not a good thing, and needs to be resolved.

Change-Id: I85b74f90b8737caaa193a0555b5262e7392519b2
2014-12-10 20:38:34 +00:00
Ricardo Cerqueira
7cd698341f Revert "SELinux: su: update policies"
This reverts commit 04fd9192b0.

Change-Id: I69e51fb6c151a48972cf81947c1c59c6f26f60e9
2014-12-10 17:19:14 +00:00
Steve Kondik
06ec5853f3 sepolicy: More rules for recovery
Change-Id: Ie50c04eb83cb9c62f679a1c1aa2ac482af159f7e
2014-12-09 22:20:14 +00:00
Steve Kondik
c4f6b977c5 cm: Enable AudioFX
* Drop DSPManager and libcyanogen-dsp. Devices should switch to
   standard Android effects or offload-capable versions.

Change-Id: I4f4eec5747e9073e576fe70e720ac3ffebb3fdd9
2014-12-09 13:29:29 -08:00
Steve Kondik
fd3b0e5c07 cm: Turn it up to Eleven
Change-Id: I61250192604498d9259470cbf1a3bb72acfe9eb6
2014-12-09 13:01:43 -08:00
Evan Widger
b8dc3a3c3d Added telenor 'smart' ipv4v6 apn
per CYAN-6070

Change-Id: I7de3f829650672f1f3b668da01a8e5be05d82fec
2014-12-08 05:53:16 +00:00
Pawit Pornkitprasan
04fd9192b0 SELinux: su: update policies
- Integrate policies from domain.te (fixes ES File Manager which uses unix socket)
- Allow platform_app to use su (fixes CM File Manager)

Change-Id: I39dd55e63b44590575bbe6d889c8d77141ba8545
2014-12-08 05:43:14 +00:00
Marcos Marado
7eb224d3a5 Fix the Reliance MMS APN (mcc 405, mnc 01)
Change-Id: Ib1f3927aa55ae57d89e6389d685e340ca4b18063
2014-12-08 05:24:35 +00:00
Steve Kondik
20af50fd4c cm: Enable notification counters
Change-Id: I6e586bd3e32005df359faae95532c1ce4ac4bd97
2014-12-05 08:31:06 -08:00
Steve Kondik
21dc3b52d6 cm: Reenable disabledComponents list
Change-Id: Id845fb4676f94d7babc6380d2cd3bd5e423078b6
2014-12-05 15:34:13 +00:00
Evan Widger
2025232f55 apn updates for globul->telenor(bg), globalcom(ng)
per CYAN-6042 and CYAN-5623

Change-Id: I818b7884cc3311b8f51e9afab35e5d228e092de4
(cherry picked from commit 6bf2a26ee818f9452dd5056b4cec49d00ceef57d)
2014-12-03 00:17:30 +00:00
Abhisek Devkota
35c7518b04 India Hutch is no longer a valid APN
Change-Id: If458a45c9ba1ac39097b6157f7c222e16b779a7c
(cherry picked from commit ec073cf4e37e7ad1b2d1062985951e99f142e691)
2014-12-01 21:49:12 +00:00
Diogo Ferreira
5c9f9efba6 sepolicy: Fix permissions for service.adb.tcp.port
This makes the rule more specific by overriding the upstream sepolicy.
Also adds the adbd context which is necessary for "adb tcpip".

Change-Id: Ia17eb56fc1682ab248764329e88eebd2a4075c97
2014-12-01 20:36:13 +00:00
Ricardo Cerqueira
d2248b27a8 otasigcheck: Use an explicit exit code for failures
Change-Id: I2b5860ea427a4db7e29b55cc632b92c6e2910494
2014-12-01 15:15:47 +00:00
Pawit Pornkitprasan
e815923b0d vendor: add policies for netd
Required due to CAF's abc9c0f4fe574ee9847f118e5d2ae8c530bac650 in
system/netd

Fixes showing how many devices are connected to the tethered hotspot

Change-Id: I1d83f7ac0b28efa6973e0baf429de2a398c471e3
2014-11-29 23:33:52 -08:00
Chirayu Desai
9e0dba30b7 SELinux: su: Remove extra quote in a comment
* Fixes
  vendor/cm/sepolicy/su.te:46:WARNING 'unrecognized character' at token '''

Change-Id: I3957ba7ac05062766cbf6c8f3c3975f20c95532e
2014-11-30 03:05:41 +00:00
Ricardo Cerqueira
e4016afa72 Allow SystemServer to set service.adb.tcp.* properties
Required for network adb enable/disable to function

Change-Id: I3e2aacb6b8e9b107dcd229187a5dd76128e20001
2014-11-29 09:01:56 -08:00
black
a1998ab77a Update Japanese APNs
Change-Id: Ia145e566f9b8a65dfb17f8d43db5c92b537b34a6
2014-11-29 08:06:20 +00:00
Abhisek Devkota
c73cf19cfd Update Reliance APNs
Change-Id: Ie223d4d485f94f374dd57fe660d44bcd0ed74a23
(cherry picked from commit e4704d95e5bba24c4f9fad0dc3966eb03caa4c04)
2014-11-29 08:05:40 +00:00
Tom Marshall
39a4244c77 cm: sepolicy: Add contexts for cm recovery
* Allow setup of secure adb (setup_adbd)

 * minivold in recovery

Change-Id: Id1243154f4016b59e54890404cadea46a2aad212
2014-11-27 23:05:26 +00:00
Ricardo Cerqueira
d22efb80e1 selinux: Fix healthd's access to /dev nodes
Our healthd's support for power-on alarms adds some steps that imply
reading files its user doesn't own. Let it.

Change-Id: I3d4735aaab8fbec7acc460f812bc21f1dfa516ab
2014-11-27 22:57:21 +00:00
Howard Su
58f88184d5 vendor/cm: We are at CM-12 now.
Change-Id: If92ade1a3992c5e9d828f23a5bccd80df8d27dfc
2014-11-27 18:40:45 +00:00
Ricardo Cerqueira
fa63e50707 selinux: Add a rule to label the extended keyhandler dex files
These should be treated as regular dex cache files, but they're
expanded outside of the normal cache dir

Change-Id: Id046e1b90116b35d2e7817ed4717fcef78135f08
2014-11-27 18:26:39 +00:00
Ricardo Cerqueira
09159ac7ce Add selinux policies for superuser
Change-Id: I878eaa9d25feaedf46e89083f91d6a21f4aff37a
2014-11-27 01:45:53 +00:00
myfluxi
12daaee8a5 vendor: Update SELinux policy for sysinit
Change-Id: I41d4c25d9d6246cd2ca0a8ff3b5a4e114e3bc4d4
2014-11-24 15:37:52 +01:00
Dave Daynard
b920c072ef Re-enable default APNS
This partially reverts commit f2458128d0.

Change-Id: I3a99a0e51eb1a4319fc8127f727b754eb22cce6e
2014-11-24 08:01:23 +00:00