Home | History | Annotate | Download | only in src

Lines Matching refs:relabelto

199 	relabelto
226 relabelto
271 relabelto
318 relabelto
895 relabelto
972 relabelto
3260 mlsconstrain { socket tcp_socket udp_socket rawip_socket netlink_socket packet_socket key_socket unix_stream_socket unix_dgram_socket appletalk_socket netlink_route_socket netlink_firewall_socket netlink_tcpdiag_socket netlink_nflog_socket netlink_xfrm_socket netlink_selinux_socket netlink_audit_socket netlink_ip6fw_socket netlink_dnrt_socket netlink_kobject_uevent_socket tun_socket } { create relabelfrom relabelto }
3280 mlsconstrain { dir { { chr_file blk_file } { file lnk_file sock_file fifo_file } } } { create relabelfrom relabelto }
3432 # Allows this domain to use the relabelto permission
3675 # All domains which are allowed the "relabelto" permission
4245 { create write setattr relabelfrom relabelto append unlink link rename };
4249 { create write setattr relabelfrom relabelto append unlink link rename };
4253 { create write setattr relabelfrom relabelto append unlink link rename };
4262 { create write setattr relabelfrom relabelto append unlink link rename };
4267 { create write setattr relabelfrom relabelto append unlink link rename };
4269 { create write setattr relabelfrom relabelto append unlink link rename };
4271 { create write setattr relabelfrom relabelto append unlink link rename };
4274 { create write setattr relabelfrom relabelto append unlink link rename };
4277 { create write setattr relabelfrom relabelto append unlink link rename };
4280 { create write setattr relabelfrom relabelto append unlink link rename };
4283 { create write setattr relabelfrom relabelto append unlink link rename };
4286 { create setattr relabelfrom relabelto append unlink link rename };
4289 { create write setattr relabelfrom relabelto append unlink link rename };
4292 { create write setattr relabelfrom relabelto append unlink link rename };
4295 { create write setattr relabelfrom relabelto append unlink link rename };
4298 { create write setattr relabelfrom relabelto append unlink link rename };
4301 { create write setattr relabelfrom relabelto append unlink link rename };
4660 allow debuggerd tombstone_data_file:dir relabelto;
5067 # Note on relabelfrom: We allow any app relabelfrom, but without the relabelto
5069 # relabelto to relabel unlabeled files.
5073 neverallow { domain -relabeltodomain } *:{ dir { { chr_file blk_file } { file lnk_file sock_file fifo_file } } } relabelto;
5112 neverallow domain kmem_device:chr_file ~{ create relabelto unlink setattr };
5138 neverallow { domain -kernel -init -recovery -vold -zygote } { fs_type -sdcard_type }:filesystem { mount remount relabelfrom relabelto };
5402 allow dumpstate anr_data_file:dir { { { open getattr read search ioctl } { open search write add_name remove_name } } relabelto };
5976 allow init {fs_type dev_type file_type}:{ dir { { chr_file blk_file } { file lnk_file sock_file fifo_file } } } relabelto;
6130 allow installd data_file_type:dir { relabelfrom relabelto };
6238 allow kernel {fs_type dev_type file_type}:{ dir { { chr_file blk_file } { file lnk_file sock_file fifo_file } } } relabelto;
6560 allow media_app download_file:dir relabelto;
7598 allow recovery {fs_type dev_type -kmem_device file_type}:{ dir { { chr_file blk_file } { file lnk_file sock_file fifo_file } } } relabelto;
8828 allow system_server { apk_tmp_file apk_private_tmp_file }:file { relabelfrom relabelto };
8829 allow system_server { apk_data_file apk_private_data_file }:file { relabelfrom relabelto };
8833 allow system_server wallpaper_file:file relabelto;
8838 allow system_server anr_data_file:dir relabelto;
8894 allow system_server backup_data_file:dir { relabelto relabelfrom };
8896 allow system_server cache_backup_file:file { relabelto relabelfrom };
8898 allow system_server cache_backup_file:dir { relabelto relabelfrom { create reparent rmdir setattr { { open getattr read search ioctl } { open search write add_name remove_name } } { getattr link unlink rename } } };
9090 allow ueventd sysfs_type:file { relabelfrom relabelto };
9131 allow unconfineddomain {fs_type dev_type file_type}:{ dir lnk_file sock_file fifo_file } ~relabelto;
9132 allow unconfineddomain {fs_type -usermodehelper -proc_security}:{ chr_file file } ~{entrypoint execmod execute relabelto};
9133 allow unconfineddomain {dev_type -kmem_device}:{ chr_file file } ~{entrypoint execmod execute relabelto};
9134 allow unconfineddomain file_type:{ chr_file file } ~{entrypoint execmod execute relabelto};
9504 allow vold asec_public_file:dir { relabelto setattr };
9506 allow vold asec_public_file:file { relabelto setattr };