Dear SEAndroid developers.

I found following unconfined domains in the aosp mater source.

init_shell.te:6:unconfined_domain(init_shell)
init.te:4:unconfined_domain(init)
kernel.te:7:unconfined_domain(kernel)
recovery.te:4:unconfined_domain(recovery)
su.te:16:  unconfined_domain(su) -> su is unconfined only in
userdebug_or_eng

I think that all domain should not be unconfined domain to be more secure.
Is there specific reason to remain those domains as the "unconfined" ?

Thank you
Best regards
_______________________________________________
Seandroid-list mailing list
[email protected]
To unsubscribe, send email to [email protected].
To get help, send an email containing "help" to 
[email protected].

Reply via email to