Magisk/native/jni
topjohnwu ec3705f2ed Redesign of MagiskSU's sepolicy model
Introduce new domain `magisk_client` and new file type `magisk_exec`.

Connection to magiskd's always-on socket is restricted to magisk_client
only. Whitelisted process domains can transit to magisk_client through
executing files labelled magisk_exec. The main magisk binary shall be
the only file labelled as magisk_exec throughout the whole system.
All processes thus are no longer allowed to connect to magiskd directly
without going through the proper magisk binary.

Connection failures are silenced from audit logs with dontaudit rules,
so crazy processes which traverse through all unix domain sockets to try
connection can no longer check logcat to know the actual reason behind
EACCES, leaking the denied process policy (which is u:r:magisk:s0).

This also allows us to remove many rules that open up holes in
untrusted_app domains that were used to make remote shell work properly.
Since all processes establishing the remote shell are now restricted to
the magisk_client domain, all these rules are moved to magisk_client.
This makes Magisk require fewer compromises in Android's security model.

Note: as of this commit, requesting new root access via Magisk Manager
will stop working as Magisk Manager can no longer communicate with
magiskd directly. This will be addressed in a future commit that
involves changes in both native and application side.
2020-06-03 23:29:42 -07:00
..
core Redesign of MagiskSU's sepolicy model 2020-06-03 23:29:42 -07:00
external Update selinux libs 2020-05-23 05:02:26 -07:00
include Better logging system 2020-06-01 04:15:37 -07:00
init Better logging system 2020-06-01 04:15:37 -07:00
magiskboot Better logging system 2020-06-01 04:15:37 -07:00
magiskhide Better logging system 2020-06-01 04:15:37 -07:00
magiskpolicy Redesign of MagiskSU's sepolicy model 2020-06-03 23:29:42 -07:00
resetprop Better logging system 2020-06-01 04:15:37 -07:00
su Redesign of MagiskSU's sepolicy model 2020-06-03 23:29:42 -07:00
systemproperties Update resetprop to partially use system impl 2020-05-07 23:54:00 -07:00
utils Redesign of MagiskSU's sepolicy model 2020-06-03 23:29:42 -07:00
.gitignore Add entrypoint to build test 2019-04-01 02:46:09 -04:00
Android.mk Rewrite sepolicy.c in C++ 2020-05-23 00:18:25 -07:00
Application.mk native: fix slower build on non-Windows platforms 2020-05-09 04:41:07 -07:00