Skip to content

Commit

Permalink
Restrict File Permissions in user.dir. See #133
Browse files Browse the repository at this point in the history
  • Loading branch information
katauber committed Sep 27, 2023
1 parent 2bfd4dc commit 330eff0
Showing 1 changed file with 10 additions and 2 deletions.
12 changes: 10 additions & 2 deletions resources/.java.policy_move_to_home_dir
Original file line number Diff line number Diff line change
Expand Up @@ -48,9 +48,17 @@ grant {

// permissions for metafacture playground

permission java.io.FilePermission "${user.dir}/-", "write, read, delete";
permission java.io.FilePermission "schemata/metamorph.xsd", "read";
permission java.io.FilePermission "morph-functions.properties", "read";
permission java.io.FilePermission "morph-collectors.properties", "read";
permission java.io.FilePermission "morph-maps.properties", "read";

permission java.io.FilePermission "${user.dir}/project.clj", "read";
permission java.io.FilePermission "${user.dir}/resources/-", "read";
permission java.io.FilePermission "${user.dir}/tmp", "write, read, delete";
permission java.io.FilePermission "${user.dir}/tmp/-", "write, read, delete";
permission java.io.FilePermission "${java.io.tmpdir}/-", "write, read, delete";
permission java.io.FilePermission "${user.home}/-", "read";
permission java.io.FilePermission "${user.home}/.m2/-", "read";

// Please adapt these paths to all parent paths of your user home directory
// Some Fix Code searches a .project file to determine an encoding
Expand Down

0 comments on commit 330eff0

Please sign in to comment.