[jboss-cvs] JBossAS SVN: r76683 - branches/JBPAPP_4_3_0_GA_CC/system/src/bin.
jboss-cvs-commits at lists.jboss.org
jboss-cvs-commits at lists.jboss.org
Tue Aug 5 14:42:14 EDT 2008
Author: pskopek at redhat.com
Date: 2008-08-05 14:42:14 -0400 (Tue, 05 Aug 2008)
New Revision: 76683
Modified:
branches/JBPAPP_4_3_0_GA_CC/system/src/bin/security_cc.policy
Log:
Little bit tighten security policy regarding file access.
Modified: branches/JBPAPP_4_3_0_GA_CC/system/src/bin/security_cc.policy
===================================================================
--- branches/JBPAPP_4_3_0_GA_CC/system/src/bin/security_cc.policy 2008-08-05 18:03:15 UTC (rev 76682)
+++ branches/JBPAPP_4_3_0_GA_CC/system/src/bin/security_cc.policy 2008-08-05 18:42:14 UTC (rev 76683)
@@ -47,8 +47,10 @@
grant codeBase "file:${jboss.server.home.dir}/-" {
permission javax.management.MBeanTrustPermission "*";
-// permission java.io.FilePermission "file:${jboss.server.home.dir}/-", "read,write,delete";
- permission java.io.FilePermission "<<ALL FILES>>", "read,write,delete";
+ permission java.io.FilePermission "${jboss.server.home.dir}/-", "read,write,delete";
+ permission java.io.FilePermission "${java.io.tmpdir}", "read,write,delete";
+
+ permission java.io.FilePermission "<<ALL FILES>>", "read";
permission javax.management.MBeanPermission "*", "*";
permission java.lang.RuntimePermission "setContextClassLoader";
More information about the jboss-cvs-commits
mailing list