1 // permissions required by each component |
1 // permissions required by each component |
2 grant codeBase "jrt:/java.corba" { |
2 |
|
3 grant codeBase "jrt:/java.activation" { |
3 permission java.security.AllPermission; |
4 permission java.security.AllPermission; |
4 }; |
5 }; |
5 |
6 |
6 grant codeBase "jrt:/jdk.zipfs" { |
7 grant codeBase "jrt:/java.corba" { |
7 permission java.io.FilePermission "<<ALL FILES>>", "read,write,delete"; |
|
8 permission java.lang.RuntimePermission "fileSystemProvider"; |
|
9 permission java.util.PropertyPermission "*", "read"; |
|
10 }; |
|
11 |
|
12 grant codeBase "jrt:/jdk.localedata" { |
|
13 permission java.lang.RuntimePermission "accessClassInPackage.sun.text.*"; |
|
14 permission java.lang.RuntimePermission "accessClassInPackage.sun.util.*"; |
|
15 permission java.util.PropertyPermission "*", "read"; |
|
16 }; |
|
17 |
|
18 grant codeBase "jrt:/jdk.naming.dns" { |
|
19 permission java.security.AllPermission; |
|
20 }; |
|
21 |
|
22 grant codeBase "jrt:/jdk.dynalink" { |
|
23 permission java.security.AllPermission; |
|
24 }; |
|
25 |
|
26 grant codeBase "jrt:/jdk.scripting.nashorn" { |
|
27 permission java.security.AllPermission; |
|
28 }; |
|
29 |
|
30 grant codeBase "jrt:/jdk.scripting.nashorn.shell" { |
|
31 permission java.security.AllPermission; |
|
32 }; |
|
33 |
|
34 grant codeBase "jrt:/jdk.internal.le" { |
|
35 permission java.security.AllPermission; |
8 permission java.security.AllPermission; |
36 }; |
9 }; |
37 |
10 |
38 grant codeBase "jrt:/jdk.crypto.ucrypto" { |
11 grant codeBase "jrt:/jdk.crypto.ucrypto" { |
39 permission java.lang.RuntimePermission "accessClassInPackage.sun.security.*"; |
12 permission java.lang.RuntimePermission "accessClassInPackage.sun.security.*"; |
70 permission java.security.SecurityPermission "authProvider.*"; |
43 permission java.security.SecurityPermission "authProvider.*"; |
71 // Needed for reading PKCS11 config file and NSS library check |
44 // Needed for reading PKCS11 config file and NSS library check |
72 permission java.io.FilePermission "<<ALL FILES>>", "read"; |
45 permission java.io.FilePermission "<<ALL FILES>>", "read"; |
73 }; |
46 }; |
74 |
47 |
75 grant codeBase "jrt:/java.xml.ws" { |
48 grant codeBase "jrt:/jdk.dynalink" { |
76 permission java.lang.RuntimePermission "accessClassInPackage.com.sun.xml.internal.*"; |
49 permission java.security.AllPermission; |
77 permission java.lang.RuntimePermission "accessClassInPackage.com.sun.istack.internal"; |
50 }; |
78 permission java.lang.RuntimePermission "accessClassInPackage.com.sun.istack.internal.*"; |
51 |
79 permission java.lang.RuntimePermission "accessClassInPackage.com.sun.org.apache.xerces.internal.*"; |
52 grant codeBase "jrt:/jdk.internal.le" { |
80 permission java.lang.RuntimePermission "accessDeclaredMembers"; |
53 permission java.security.AllPermission; |
81 permission java.lang.reflect.ReflectPermission "suppressAccessChecks"; |
54 }; |
|
55 |
|
56 grant codeBase "jrt:/jdk.jsobject" { |
|
57 permission java.security.AllPermission; |
|
58 }; |
|
59 |
|
60 grant codeBase "jrt:/jdk.localedata" { |
|
61 permission java.lang.RuntimePermission "accessClassInPackage.sun.text.*"; |
|
62 permission java.lang.RuntimePermission "accessClassInPackage.sun.util.*"; |
82 permission java.util.PropertyPermission "*", "read"; |
63 permission java.util.PropertyPermission "*", "read"; |
|
64 }; |
|
65 |
|
66 grant codeBase "jrt:/jdk.naming.dns" { |
|
67 permission java.security.AllPermission; |
|
68 }; |
|
69 |
|
70 grant codeBase "jrt:/jdk.scripting.nashorn" { |
|
71 permission java.security.AllPermission; |
|
72 }; |
|
73 |
|
74 grant codeBase "jrt:/jdk.scripting.nashorn.shell" { |
|
75 permission java.security.AllPermission; |
83 }; |
76 }; |
84 |
77 |
85 grant codeBase "jrt:/java.xml.bind" { |
78 grant codeBase "jrt:/java.xml.bind" { |
86 permission java.lang.RuntimePermission "accessClassInPackage.com.sun.xml.internal.*"; |
79 permission java.lang.RuntimePermission "accessClassInPackage.com.sun.xml.internal.*"; |
87 permission java.lang.RuntimePermission "accessClassInPackage.com.sun.istack.internal"; |
80 permission java.lang.RuntimePermission "accessClassInPackage.com.sun.istack.internal"; |
89 permission java.lang.RuntimePermission "accessDeclaredMembers"; |
82 permission java.lang.RuntimePermission "accessDeclaredMembers"; |
90 permission java.lang.reflect.ReflectPermission "suppressAccessChecks"; |
83 permission java.lang.reflect.ReflectPermission "suppressAccessChecks"; |
91 permission java.util.PropertyPermission "*", "read"; |
84 permission java.util.PropertyPermission "*", "read"; |
92 }; |
85 }; |
93 |
86 |
94 grant codeBase "jrt:/java.activation" { |
87 grant codeBase "jrt:/java.xml.ws" { |
95 permission java.security.AllPermission; |
88 permission java.lang.RuntimePermission "accessClassInPackage.com.sun.xml.internal.*"; |
|
89 permission java.lang.RuntimePermission "accessClassInPackage.com.sun.istack.internal"; |
|
90 permission java.lang.RuntimePermission "accessClassInPackage.com.sun.istack.internal.*"; |
|
91 permission java.lang.RuntimePermission "accessClassInPackage.com.sun.org.apache.xerces.internal.*"; |
|
92 permission java.lang.RuntimePermission "accessDeclaredMembers"; |
|
93 permission java.lang.reflect.ReflectPermission "suppressAccessChecks"; |
|
94 permission java.util.PropertyPermission "*", "read"; |
|
95 }; |
|
96 |
|
97 grant codeBase "jrt:/jdk.zipfs" { |
|
98 permission java.io.FilePermission "<<ALL FILES>>", "read,write,delete"; |
|
99 permission java.lang.RuntimePermission "fileSystemProvider"; |
|
100 permission java.util.PropertyPermission "*", "read"; |
96 }; |
101 }; |
97 |
102 |
98 // default permissions granted to all domains |
103 // default permissions granted to all domains |
99 |
104 |
100 grant { |
105 grant { |