summaryrefslogtreecommitdiff
path: root/libs/rs/rsg_ScriptJavaClass.cpp
diff options
context:
space:
mode:
authorChris Palmer <palmer@google.com>2010-09-24 15:08:51 -0700
committerChris Palmer <palmer@google.com>2010-09-27 14:12:35 -0700
commit143e61097e3aa2f6fd2951c707f35c35d3be25e3 (patch)
treeabcff5520d385b354614cd9bcf9e0ee17b6b5a1f /libs/rs/rsg_ScriptJavaClass.cpp
parent83ea6389097570e8526a0b612051bb591186f165 (diff)
DO NOT MERGE Clarify the explanation of Android's security design.
Assert plainly that Dalvik is not a boundary. Certificates are for distinction, not "fake trustworthiness through verifying cheap identities". Clarify that UID + GID are what the kernel bases its protection on, not PID. This is a fuzzy distinction on Android since (apart from sharedUserId and magical system processes) there is a 1:1 mapping from process <-> UID. But it's important to clarify what we mean. Clarify up front about the staticness (staticity?) of permissions. It's explained lower down, but experience shows people don't read that far down. Get the rationale (bad UX --> bad security) right up top. Change-Id: I403310668d7ba42e44239055cb480c086ef76cbc
Diffstat (limited to 'libs/rs/rsg_ScriptJavaClass.cpp')
0 files changed, 0 insertions, 0 deletions