On May 13, 2015 5:00 PM, <[email protected]> wrote:
>
> > netd.te defines a transition to shell domain on exec of file type
> > shell_exec.
> >
> > What's the purpose of that, whats it running as "shell"?
> >
> > Id like to place a neverallow around transitions to shell by new domains
> > to prevent it from being a catch all, and getting over privileged.
>
> nm seems to be a local patch on netd, but I do see:
>
> I do see it on runas, init, zygote, and adbd.

Which all seems normal after looking at seapp contexts and comments by nnk

Patch here

https://android-review.googlesource.com/#/c/150670/

>
>
> > _______________________________________________
> > Seandroid-list mailing list
> > [email protected]
> > To unsubscribe, send email to [email protected].
> > To get help, send an email containing "help" to
> > [email protected].
> >
>
> _______________________________________________
> Seandroid-list mailing list
> [email protected]
> To unsubscribe, send email to [email protected].
> To get help, send an email containing "help" to
[email protected].
_______________________________________________
Seandroid-list mailing list
[email protected]
To unsubscribe, send email to [email protected].
To get help, send an email containing "help" to 
[email protected].

Reply via email to