replicant-vendor_replicant/sepolicy
Pat Erley da1a9004f8 sepolicy: Allow recovery to mount on tmpfs
/storage is a tmpfs volume, and is where updater stores its zip
when downloading updates.  Devices with emmc partitions that are
used as 'sdcard' volumes will end up with paths like:

  /storage/UUID/...../update.zip

where UUID is the mount point for the partition and update.zip is
the downloaded update.  With this change, minivold can create the
UUID folder and mount onto it, fixing the application of updates.

Change-Id: I4fa84fd590f5ff0f91e38c49cef0c179728fdf43
2016-04-22 13:09:37 -07:00
..
qcom sepolicy: Add perfprofd with set_prop macro 2016-01-12 17:21:32 -08:00
app.te Grant platform apps access to /mnt/media_rw with sdcard_posix label 2016-01-24 14:39:42 -08:00
auditd.te
bootanim.te
domain.te sepolicy: Remove some denials 2015-11-16 19:46:00 -08:00
drmserver.te
file_contexts sepolicy: label exfat and ntfs mkfs executables 2015-12-29 21:51:32 +01:00
file.te cm: sepolicy: Create standard policy for LiveDisplay 2015-09-15 15:31:19 -07:00
fsck_untrusted.te cm: sepolicy: fix denials for external storage 2016-01-01 17:30:27 +01:00
genfs_contexts cm: sepolicy: fix denials for external storage 2016-01-01 17:30:27 +01:00
healthd.te
hostapd.te
init.te sepolicy: Add permission for formatting user/cache partition 2015-12-16 10:41:51 -08:00
installd.te
livedisplay.te cm: sepolicy: Create standard policy for LiveDisplay 2015-09-15 15:31:19 -07:00
mac_permissions.xml sepolicy: Allow CMUpdater/uncrypt access to recovery_cache_file 2015-02-21 17:21:47 -05:00
mediaserver.te
mkfs.te sepolicy: Add domain for mkfs binaries 2015-12-16 10:40:28 -08:00
netd.te
platform_app.te cm: sepolicy: allow platform apps to execute render scripts 2016-04-05 13:46:19 -07:00
property_contexts SELinux: Use custom ADB over network property 2015-12-16 11:01:50 -08:00
property.te
recovery.te sepolicy: Allow recovery to mount on tmpfs 2016-04-22 13:09:37 -07:00
seapp_contexts sepolicy: Allow CMUpdater/uncrypt access to recovery_cache_file 2015-02-21 17:21:47 -05:00
sepolicy.mk sepolicy: remove BOARD_SEPOLICY_UNION 2015-10-07 12:49:00 -07:00
service_contexts cm: Moving LiveDisplay to CMSDK 2016-04-13 01:37:20 -07:00
service.te cm: Moving LiveDisplay to CMSDK 2016-04-13 01:37:20 -07:00
su.te cm: sepolicy: allow kernel to read storage 2016-02-20 14:26:41 -08:00
sysinit.te sepolicy: Permissions for userinit 2015-03-17 12:12:59 +00:00
system_app.te sepolicy: Allow system app to set boot anim property 2015-09-21 18:16:18 -07:00
system_server.te sepolicy: Allow system server and uncrypt access pipe 2016-02-09 13:24:46 -08:00
system.te cm: Remove duplicate SEPolicy items 2015-10-31 02:08:33 -07:00
ueventd.te
uncrypt.te sepolicy: Allow system server and uncrypt access pipe 2016-02-09 13:24:46 -08:00
userinit.te sepolicy: Permissions for userinit 2015-03-17 12:12:59 +00:00
vold.te sepolicy: Allow minivold execute_no_trans 2016-01-02 02:07:18 -08:00
zygote.te cm: Fix a few denials 2015-09-19 22:49:20 -07:00