[jboss-cvs] JBossAS SVN: r76683 -	branches/JBPAPP_4_3_0_GA_CC/system/src/bin.
    jboss-cvs-commits at lists.jboss.org 
    jboss-cvs-commits at lists.jboss.org
       
    Tue Aug  5 14:42:14 EDT 2008
    
    
  
Author: pskopek at redhat.com
Date: 2008-08-05 14:42:14 -0400 (Tue, 05 Aug 2008)
New Revision: 76683
Modified:
   branches/JBPAPP_4_3_0_GA_CC/system/src/bin/security_cc.policy
Log:
Little bit tighten security policy regarding file access.
Modified: branches/JBPAPP_4_3_0_GA_CC/system/src/bin/security_cc.policy
===================================================================
--- branches/JBPAPP_4_3_0_GA_CC/system/src/bin/security_cc.policy	2008-08-05 18:03:15 UTC (rev 76682)
+++ branches/JBPAPP_4_3_0_GA_CC/system/src/bin/security_cc.policy	2008-08-05 18:42:14 UTC (rev 76683)
@@ -47,8 +47,10 @@
 
 grant codeBase "file:${jboss.server.home.dir}/-" {
    permission javax.management.MBeanTrustPermission "*";
-//   permission java.io.FilePermission "file:${jboss.server.home.dir}/-", "read,write,delete";
-   permission java.io.FilePermission "<<ALL FILES>>", "read,write,delete";
+   permission java.io.FilePermission "${jboss.server.home.dir}/-", "read,write,delete";
+   permission java.io.FilePermission "${java.io.tmpdir}", "read,write,delete";
+   
+   permission java.io.FilePermission "<<ALL FILES>>", "read";
    permission javax.management.MBeanPermission "*", "*";
 
    permission java.lang.RuntimePermission "setContextClassLoader";
    
    
More information about the jboss-cvs-commits
mailing list