/system/sepolicy/prebuilts/api/29.0/public/ |
D | kernel.te | 1 # Life begins with the kernel. 2 type kernel, domain, mlstrustedsubject; 4 allow kernel self:global_capability_class_set sys_nice; 7 r_dir_file(kernel, rootfs) 8 allow kernel proc_cmdline:file r_file_perms; 11 allow kernel selinuxfs:dir r_dir_perms; 12 allow kernel selinuxfs:file r_file_perms; 15 allow kernel file_contexts_file:file r_file_perms; 18 allow kernel rootfs:file relabelfrom; 19 allow kernel init_exec:file relabelto; [all …]
|
/system/sepolicy/prebuilts/api/30.0/public/ |
D | kernel.te | 1 # Life begins with the kernel. 2 type kernel, domain, mlstrustedsubject; 4 allow kernel self:global_capability_class_set sys_nice; 7 r_dir_file(kernel, rootfs) 8 allow kernel proc_cmdline:file r_file_perms; 11 allow kernel selinuxfs:dir r_dir_perms; 12 allow kernel selinuxfs:file r_file_perms; 15 allow kernel file_contexts_file:file r_file_perms; 18 allow kernel rootfs:file relabelfrom; 19 allow kernel init_exec:file relabelto; [all …]
|
/system/sepolicy/public/ |
D | kernel.te | 1 # Life begins with the kernel. 2 type kernel, domain, mlstrustedsubject; 4 allow kernel self:global_capability_class_set sys_nice; 7 r_dir_file(kernel, rootfs) 8 allow kernel proc_cmdline:file r_file_perms; 11 allow kernel selinuxfs:dir r_dir_perms; 12 allow kernel selinuxfs:file r_file_perms; 15 allow kernel file_contexts_file:file r_file_perms; 18 allow kernel rootfs:file relabelfrom; 19 allow kernel init_exec:file relabelto; [all …]
|
/system/sepolicy/prebuilts/api/28.0/public/ |
D | kernel.te | 1 # Life begins with the kernel. 2 type kernel, domain, mlstrustedsubject; 4 allow kernel self:global_capability_class_set sys_nice; 7 r_dir_file(kernel, rootfs) 8 allow kernel proc_cmdline:file r_file_perms; 11 allow kernel selinuxfs:dir r_dir_perms; 12 allow kernel selinuxfs:file r_file_perms; 15 allow kernel file_contexts_file:file r_file_perms; 18 allow kernel rootfs:file relabelfrom; 19 allow kernel init_exec:file relabelto; [all …]
|
/system/sepolicy/prebuilts/api/27.0/public/ |
D | kernel.te | 1 # Life begins with the kernel. 2 type kernel, domain, mlstrustedsubject; 4 allow kernel self:capability sys_nice; 7 r_dir_file(kernel, rootfs) 8 r_dir_file(kernel, proc) 11 allow kernel selinuxfs:dir r_dir_perms; 12 allow kernel selinuxfs:file r_file_perms; 15 allow kernel file_contexts_file:file r_file_perms; 18 allow kernel rootfs:file relabelfrom; 19 allow kernel init_exec:file relabelto; [all …]
|
/system/sepolicy/prebuilts/api/26.0/public/ |
D | kernel.te | 1 # Life begins with the kernel. 2 type kernel, domain, mlstrustedsubject; 4 allow kernel self:capability sys_nice; 7 r_dir_file(kernel, rootfs) 8 r_dir_file(kernel, proc) 11 allow kernel selinuxfs:dir r_dir_perms; 12 allow kernel selinuxfs:file r_file_perms; 15 allow kernel file_contexts_file:file r_file_perms; 18 allow kernel rootfs:file relabelfrom; 19 allow kernel init_exec:file relabelto; [all …]
|
/system/libvintf/ |
D | KernelInfo.cpp | 84 // Check matrix kernel level in getMatchedKernelRequirements() 86 // Use legacy behavior when kernel FCM version is not specified. Blindly add all of them in getMatchedKernelRequirements() 104 // matrix level >= kernel level in getMatchedKernelRequirements() 111 ss << "No kernel entry found for kernel version " << mVersion.dropMinor() in getMatchedKernelRequirements() 112 << " at kernel FCM version " in getMatchedKernelRequirements() 114 << ". The following kernel requirements are checked:"; in getMatchedKernelRequirements() 117 << ", kernel FCM version: " << matrixKernel.getSourceMatrixLevel() in getMatchedKernelRequirements() 125 // At this point, kernelsForLevel contains kernel requirements for each level. in getMatchedKernelRequirements() 126 // For example, if the running kernel version is 4.14.y then kernelsForLevel contains in getMatchedKernelRequirements() 128 // (This excludes kernels < kernel FCM version, or device FCM version if kernel FCM version is in getMatchedKernelRequirements() [all …]
|
D | CompatibilityMatrix.cpp | 48 bool CompatibilityMatrix::addKernel(MatrixKernel&& kernel, std::string* error) { in addKernel() argument 51 *error = "Cannot add <kernel> to a " + to_string(mType) + " compatibility matrix."; in addKernel() 56 if (kernel.getSourceMatrixLevel() == Level::UNSPECIFIED) { in addKernel() 57 kernel.setSourceMatrixLevel(level()); in addKernel() 62 if (it->getSourceMatrixLevel() != kernel.getSourceMatrixLevel()) { in addKernel() 65 if (it->minLts() == kernel.minLts()) { in addKernel() 68 if (it->minLts().dropMinor() == kernel.minLts().dropMinor()) { in addKernel() 70 *error = "Kernel version mismatch; for level " + in addKernel() 71 to_string(kernel.getSourceMatrixLevel()) + ", cannot add " + in addKernel() 72 to_string(kernel.minLts()) + " because " + to_string(it->minLts()) + in addKernel() [all …]
|
/system/connectivity/wificond/net/kernel-header-latest/ |
D | README.txt | 3 This folder contains any wifi kernel header updates to the kernels running on 4 the latest devices, but not present in external/kernel-headers. 5 external/kernel-headers has the headers from the stable kernel tree which is generally 9 cp <kernel-dir>/private/msm-google/include/uapi/linux/nl80211.h 10 <android-source-dir>/system/connectivity/wificond/net/kernel-header-latest/nl80211.h 12 Last update from kernel branch: `p-dev-msm-bluecross-4.9`
|
/system/sepolicy/prebuilts/api/28.0/private/ |
D | genfs_contexts | 33 genfscon proc /sys/kernel/core_pattern u:object_r:usermodehelper:s0 34 genfscon proc /sys/kernel/core_pipe_limit u:object_r:usermodehelper:s0 35 genfscon proc /sys/kernel/domainname u:object_r:proc_hostname:s0 36 genfscon proc /sys/kernel/dmesg_restrict u:object_r:proc_security:s0 37 genfscon proc /sys/kernel/hostname u:object_r:proc_hostname:s0 38 genfscon proc /sys/kernel/hotplug u:object_r:usermodehelper:s0 39 genfscon proc /sys/kernel/hung_task_timeout_secs u:object_r:proc_hung_task:s0 40 genfscon proc /sys/kernel/kptr_restrict u:object_r:proc_security:s0 41 genfscon proc /sys/kernel/modprobe u:object_r:usermodehelper:s0 42 genfscon proc /sys/kernel/modules_disabled u:object_r:proc_security:s0 [all …]
|
/system/netd/ |
D | TEST_MAPPING | 11 "keywords": ["netd-device-kernel-4.9", "netd-device-kernel-4.14"]}, 13 "keywords": ["netd-device-kernel-4.9", "netd-device-kernel-4.14"]}, 15 "keywords": ["netd-device-kernel-4.9", "netd-device-kernel-4.14"]}
|
/system/sepolicy/prebuilts/api/30.0/private/ |
D | fsverity_init.te | 9 # Kernel only prints the keys that can be accessed and only kernel keyring is needed here. 12 allow fsverity_init kernel:key { view search write setattr }; 18 # When kernel requests an algorithm, the crypto API first looks for an 19 # already registered algorithm with that name. If it fails, the kernel creates 21 dontaudit fsverity_init kernel:system module_request;
|
D | kernel.te | 1 typeattribute kernel coredomain; 3 domain_auto_trans(kernel, init_exec, init) 5 # Allow the kernel to read otapreopt_chroot's file descriptors and files under 7 allow kernel otapreopt_chroot:fd use; 8 allow kernel postinstall_file:file read;
|
D | genfs_contexts | 43 genfscon proc /sys/kernel/core_pattern u:object_r:usermodehelper:s0 44 genfscon proc /sys/kernel/core_pipe_limit u:object_r:usermodehelper:s0 45 genfscon proc /sys/kernel/domainname u:object_r:proc_hostname:s0 46 genfscon proc /sys/kernel/dmesg_restrict u:object_r:proc_security:s0 47 genfscon proc /sys/kernel/hostname u:object_r:proc_hostname:s0 48 genfscon proc /sys/kernel/hotplug u:object_r:usermodehelper:s0 49 genfscon proc /sys/kernel/hung_task_ u:object_r:proc_hung_task:s0 50 genfscon proc /sys/kernel/kptr_restrict u:object_r:proc_security:s0 51 genfscon proc /sys/kernel/modprobe u:object_r:usermodehelper:s0 52 genfscon proc /sys/kernel/modules_disabled u:object_r:proc_security:s0 [all …]
|
/system/sepolicy/private/ |
D | fsverity_init.te | 9 # Kernel only prints the keys that can be accessed and only kernel keyring is needed here. 12 allow fsverity_init kernel:key { view search write setattr }; 18 # When kernel requests an algorithm, the crypto API first looks for an 19 # already registered algorithm with that name. If it fails, the kernel creates 21 dontaudit fsverity_init kernel:system module_request;
|
D | kernel.te | 1 typeattribute kernel coredomain; 3 domain_auto_trans(kernel, init_exec, init) 5 # Allow the kernel to read otapreopt_chroot's file descriptors and files under 7 allow kernel otapreopt_chroot:fd use; 8 allow kernel postinstall_file:file read;
|
D | genfs_contexts | 43 genfscon proc /sys/kernel/core_pattern u:object_r:usermodehelper:s0 44 genfscon proc /sys/kernel/core_pipe_limit u:object_r:usermodehelper:s0 45 genfscon proc /sys/kernel/domainname u:object_r:proc_hostname:s0 46 genfscon proc /sys/kernel/dmesg_restrict u:object_r:proc_security:s0 47 genfscon proc /sys/kernel/hostname u:object_r:proc_hostname:s0 48 genfscon proc /sys/kernel/hotplug u:object_r:usermodehelper:s0 49 genfscon proc /sys/kernel/hung_task_ u:object_r:proc_hung_task:s0 50 genfscon proc /sys/kernel/kptr_restrict u:object_r:proc_security:s0 51 genfscon proc /sys/kernel/modprobe u:object_r:usermodehelper:s0 52 genfscon proc /sys/kernel/modules_disabled u:object_r:proc_security:s0 [all …]
|
/system/sepolicy/prebuilts/api/29.0/private/ |
D | fsverity_init.te | 13 # Kernel only prints the keys that can be accessed and only kernel keyring is needed here. 16 allow fsverity_init kernel:key { view search write setattr }; 22 # When kernel requests an algorithm, the crypto API first looks for an 23 # already registered algorithm with that name. If it fails, the kernel creates 25 dontaudit fsverity_init kernel:system module_request;
|
D | kernel.te | 1 typeattribute kernel coredomain; 3 domain_auto_trans(kernel, init_exec, init) 5 # Allow the kernel to read otapreopt_chroot's file descriptors and files under 7 allow kernel otapreopt_chroot:fd use; 8 allow kernel postinstall_file:file read;
|
D | genfs_contexts | 41 genfscon proc /sys/kernel/core_pattern u:object_r:usermodehelper:s0 42 genfscon proc /sys/kernel/core_pipe_limit u:object_r:usermodehelper:s0 43 genfscon proc /sys/kernel/domainname u:object_r:proc_hostname:s0 44 genfscon proc /sys/kernel/dmesg_restrict u:object_r:proc_security:s0 45 genfscon proc /sys/kernel/hostname u:object_r:proc_hostname:s0 46 genfscon proc /sys/kernel/hotplug u:object_r:usermodehelper:s0 47 genfscon proc /sys/kernel/hung_task_ u:object_r:proc_hung_task:s0 48 genfscon proc /sys/kernel/kptr_restrict u:object_r:proc_security:s0 49 genfscon proc /sys/kernel/modprobe u:object_r:usermodehelper:s0 50 genfscon proc /sys/kernel/modules_disabled u:object_r:proc_security:s0 [all …]
|
/system/sepolicy/prebuilts/api/26.0/private/ |
D | genfs_contexts | 20 genfscon proc /sys/kernel/core_pattern u:object_r:usermodehelper:s0 21 genfscon proc /sys/kernel/dmesg_restrict u:object_r:proc_security:s0 22 genfscon proc /sys/kernel/hotplug u:object_r:usermodehelper:s0 23 genfscon proc /sys/kernel/kptr_restrict u:object_r:proc_security:s0 24 genfscon proc /sys/kernel/modprobe u:object_r:usermodehelper:s0 25 genfscon proc /sys/kernel/modules_disabled u:object_r:proc_security:s0 26 genfscon proc /sys/kernel/perf_event_max_sample_rate u:object_r:proc_perf:s0 27 genfscon proc /sys/kernel/poweroff_cmd u:object_r:usermodehelper:s0 28 genfscon proc /sys/kernel/randomize_va_space u:object_r:proc_security:s0 29 genfscon proc /sys/kernel/usermodehelper u:object_r:usermodehelper:s0
|
D | file_contexts | 21 # For kernel modules 461 /sys/kernel/uevent_helper -- u:object_r:usermodehelper:s0 469 /sys/kernel/debug/mmc0(/.*)? u:object_r:debugfs_mmc:s0 474 /sys/kernel(/debug)?/tracing/buffer_size_kb u:object_r:trac… 475 /sys/kernel(/debug)?/tracing/events/binder/binder_locked/enable u:object_r:trac… 476 /sys/kernel(/debug)?/tracing/events/binder/binder_lock/enable u:object_r:trac… 477 /sys/kernel(/debug)?/tracing/events/binder/binder_transaction/enable u:object_r:trac… 478 /sys/kernel(/debug)?/tracing/events/binder/binder_transaction_received/enable u:object_r:trac… 479 /sys/kernel(/debug)?/tracing/events/binder/binder_unlock/enable u:object_r:trac… 480 /sys/kernel(/debug)?/tracing/events/cpufreq_interactive/enable u:object_r:trac… [all …]
|
/system/libvintf/test/ |
D | AssembleVintfTest.cpp | 98 " <kernel version=\"3.18.0\">\n" in TEST_F() 103 " </kernel>\n" in TEST_F() 104 " <kernel version=\"3.18.0\">\n" in TEST_F() 115 " </kernel>\n" in TEST_F() 116 " <kernel version=\"4.4.0\">\n" in TEST_F() 121 " </kernel>\n" in TEST_F() 122 " <kernel version=\"4.4.0\">\n" in TEST_F() 133 " </kernel>\n" in TEST_F() 135 " <kernel-sepolicy-version>30</kernel-sepolicy-version>\n" in TEST_F() 151 " </kernel>\n" in TEST_F() [all …]
|
/system/core/fastboot/ |
D | bootimg_utils.cpp | 50 static boot_img_hdr_v3* mkbootimg_v3(const std::vector<char>& kernel, in mkbootimg_v3() argument 55 int64_t kernel_actual = (kernel.size() + page_mask) & (~page_mask); in mkbootimg_v3() 64 hdr->kernel_size = kernel.size(); in mkbootimg_v3() 70 memcpy(hdr->magic + V3_PAGE_SIZE, kernel.data(), kernel.size()); in mkbootimg_v3() 76 boot_img_hdr_v2* mkbootimg(const std::vector<char>& kernel, const std::vector<char>& ramdisk, in mkbootimg() argument 83 return reinterpret_cast<boot_img_hdr_v2*>(mkbootimg_v3(kernel, ramdisk, src, out)); in mkbootimg() 88 int64_t kernel_actual = (kernel.size() + page_mask) & (~page_mask); in mkbootimg() 102 hdr->kernel_size = kernel.size(); in mkbootimg() 119 memcpy(hdr->magic + hdr->page_size, kernel.data(), kernel.size()); in mkbootimg()
|
/system/libvintf/include/vintf/ |
D | MatrixKernel.h | 39 // A <kernel> entry to a compatibility matrix represents a fragment of kernel 51 // Return an iterable on all kernel configs. Use it as follows: 52 // for (const KernelConfig &config : kernel.configs()) {...} 55 // Return an iterable on all kernel config conditions. Use it as follows: 56 // for (const KernelConfig &config : kernel.conditions()) {...} 73 // The "level" field of compatibility matrix that this <kernel> tag is
|