make/java.security.override

Mon, 11 Feb 2013 21:26:06 +0530

author
sundar
date
Mon, 11 Feb 2013 21:26:06 +0530
changeset 82
abea4ba28901
child 133
5759f600fcf7
permissions
-rw-r--r--

8007915: Nashorn IR, codegen, parser packages and Context instance should be inaccessible to user code
Reviewed-by: lagergren, jlaskey, attila

sundar@82 1 # We would like to avoid references from anywhere outside nashorn
sundar@82 2 # to codegen, IR and parser packages, in particular script generated classes.
sundar@82 3 # We ensure that by overriding "package.access" security property.
sundar@82 4
sundar@82 5 # The following "package.access" value was copied from default java.security
sundar@82 6 # of jre/lib/security and appended with nashorn IR, Codegen and Parser packages.
sundar@82 7
sundar@82 8 #
sundar@82 9 # List of comma-separated packages that start with or equal this string
sundar@82 10 # will cause a security exception to be thrown when
sundar@82 11 # passed to checkPackageAccess unless the
sundar@82 12 # corresponding RuntimePermission ("accessClassInPackage."+package) has
sundar@82 13 # been granted.
sundar@82 14 package.access=sun.,com.sun.xml.internal.ws.,com.sun.xml.internal.bind.,com.sun.imageio.,com.sun.org.apache.xerces.internal.utils.,com.sun.org.apache.xalan.internal.utils.,com.sun.org.glassfish.external.,com.sun.org.glassfish.gmbal.,jdk.internal.,jdk.nashorn.internal.ir., jdk.nashorn.internal.codegen., jdk.nashorn.internal.parser.

mercurial