On May 13, 2015 5:00 PM, <[email protected]> wrote: > > > netd.te defines a transition to shell domain on exec of file type > > shell_exec. > > > > What's the purpose of that, whats it running as "shell"? > > > > Id like to place a neverallow around transitions to shell by new domains > > to prevent it from being a catch all, and getting over privileged. > > nm seems to be a local patch on netd, but I do see: > > I do see it on runas, init, zygote, and adbd.
Which all seems normal after looking at seapp contexts and comments by nnk Patch here https://android-review.googlesource.com/#/c/150670/ > > > > _______________________________________________ > > Seandroid-list mailing list > > [email protected] > > To unsubscribe, send email to [email protected]. > > To get help, send an email containing "help" to > > [email protected]. > > > > _______________________________________________ > Seandroid-list mailing list > [email protected] > To unsubscribe, send email to [email protected]. > To get help, send an email containing "help" to [email protected].
_______________________________________________ Seandroid-list mailing list [email protected] To unsubscribe, send email to [email protected]. To get help, send an email containing "help" to [email protected].
