replicant-vendor_replicant/sepolicy
Keith Mok fcfc13ac6f sepolicy: Add domain for mkfs binaries
The init binary must transition to another domain when calling out to
executables. Create the mkfs domain for mkfs.f2fs such that init can
transition to it when formatting userdata/cache partitions if the
"formattable" flag is set.

Change-Id: I1046782386d171a59b1a3c5441ed265dc0824977
2015-12-16 10:40:28 -08:00
..
qcom sepolicy: Allow adb pull of executables without root 2015-11-29 05:28:14 -08:00
adbd.te sepolicy: Fix permissions for service.adb.tcp.port 2014-12-01 20:36:13 +00:00
app.te sepolicy: Apps need to read themed resources 2015-01-14 15:55:41 +00:00
auditd.te selinux: Add rules for the audit daemon 2014-11-09 17:20:54 +00:00
bootanim.te sepolicy: Apps need to read themed resources 2015-01-14 15:55:41 +00:00
domain.te sepolicy: Remove some denials 2015-11-16 19:46:00 -08:00
drmserver.te sepolicy: Let drmserver scan themes 2015-01-25 11:02:24 -08:00
file.te cm: sepolicy: Create standard policy for LiveDisplay 2015-09-15 15:31:19 -07:00
file_contexts sepolicy: Add domain for mkfs binaries 2015-12-16 10:40:28 -08:00
genfs_contexts sepolicy: treat fuseblk as sdcard_external 2013-11-13 09:37:42 +07:00
healthd.te selinux: Fix healthd's access to /dev nodes 2014-11-27 22:57:21 +00:00
hostapd.te vendor: add policies for netd 2014-11-29 23:33:52 -08:00
installd.te sepolicy: allow installd to query ASEC size 2013-11-13 22:35:17 +07:00
livedisplay.te cm: sepolicy: Create standard policy for LiveDisplay 2015-09-15 15:31:19 -07:00
mac_permissions.xml sepolicy: Allow CMUpdater/uncrypt access to recovery_cache_file 2015-02-21 17:21:47 -05:00
mediaserver.te sepolicy: Apps need to read themed resources 2015-01-14 15:55:41 +00:00
mkfs.te sepolicy: Add domain for mkfs binaries 2015-12-16 10:40:28 -08:00
netd.te vendor: add policies for netd 2014-11-29 23:33:52 -08:00
property.te sepolicy: allow userinit to set its property 2015-02-09 21:03:35 +00:00
property_contexts sepolicy: allow userinit to set its property 2015-02-09 21:03:35 +00:00
recovery.te sepolicy: Allow recovery to create links in the rootfs 2015-11-26 02:19:44 -08:00
seapp_contexts sepolicy: Allow CMUpdater/uncrypt access to recovery_cache_file 2015-02-21 17:21:47 -05:00
sepolicy.mk sepolicy: remove BOARD_SEPOLICY_UNION 2015-10-07 12:49:00 -07:00
service.te perf: Moving PerformanceManager to CMSDK 2015-11-03 18:55:49 -08:00
service_contexts perf: Moving PerformanceManager to CMSDK 2015-11-03 18:55:49 -08:00
shell.te Allow SystemServer to set service.adb.tcp.* properties 2014-11-29 09:01:56 -08:00
su.te sepolicy: fix denial for sudaemon 2015-11-22 09:57:08 -08:00
sysinit.te sepolicy: Permissions for userinit 2015-03-17 12:12:59 +00:00
system.te cm: Remove duplicate SEPolicy items 2015-10-31 02:08:33 -07:00
system_app.te sepolicy: Allow system app to set boot anim property 2015-09-21 18:16:18 -07:00
system_server.te cm: SELinux policy for persistent properties API 2015-09-09 11:53:23 -07:00
ueventd.te cm: sepolicy: Allow ueventd to load WiFi and audio irmware 2014-04-05 14:56:09 -07:00
uncrypt.te sepolicy: Allow CMUpdater/uncrypt access to recovery_cache_file 2015-02-21 17:21:47 -05:00
userinit.te sepolicy: Permissions for userinit 2015-03-17 12:12:59 +00:00
vold.te sepolicy: Allow vold to create tmpfs files for asec containers 2015-02-19 10:55:07 -05:00
zygote.te cm: Fix a few denials 2015-09-19 22:49:20 -07:00