Hi,

I am trying to understand the security of applications build from the
opensource code. Before I post my question, is this something that is
entertained? If so, please read ahead.

I used build/target/product/security/mkkey.sh to generate my key.
I set LOCAL_CERTIFICATE with my key value.
In my out folder, I see package.apk, package.apk.unaligned, and
package.apk.unsigned. [This I see for all applications.]
And, I can install my application.

But, it does look like the "signing" process did not work as expected
because I am still able to access the a service of this application
from other dummy application.

Any pointers?

Thanks,
Ravi

--~--~---------~--~----~------------~-------~--~----~
You received this message because you are subscribed to the Google Groups 
"android-framework" group.
To post to this group, send email to [email protected]
To unsubscribe from this group, send email to 
[email protected]
For more options, visit this group at 
http://groups.google.com/group/android-framework?hl=en
-~----------~----~----~----~------~----~------~--~---

Reply via email to