RFR: (XS) 8162916:Test sun/security/krb5/auto/UnboundSSL.java fails

Seán Coffey sean.coffey at oracle.com
Wed Aug 17 16:53:47 UTC 2016


A recently added test case lacks sufficient permissions to read a conf 
file when running with security manager.

bug report : https://bugs.openjdk.java.net/browse/JDK-8162916

proposed patch :
  diff --git a/test/sun/security/krb5/auto/unbound.ssl.policy 
b/test/sun/security/krb5/auto/unbound.ssl.policy
--- a/test/sun/security/krb5/auto/unbound.ssl.policy
+++ b/test/sun/security/krb5/auto/unbound.ssl.policy
@@ -1,7 +1,13 @@
+// Standard extensions get all permissions by default
+
+grant codeBase "file:${{java.ext.dirs}}/*" {
+        permission java.security.AllPermission;
+};
+
  grant {
      permission java.util.PropertyPermission "*", "read,write";
      permission java.net.SocketPermission "*:*", 
"listen,resolve,accept,connect";
-    permission java.io.FilePermission "*", "read,write,delete";
+    permission java.io.FilePermission "<<ALL FILES>>", "read,write,delete";
      permission java.lang.RuntimePermission "accessDeclaredMembers";
      permission java.lang.reflect.ReflectPermission "suppressAccessChecks";
      permission java.lang.RuntimePermission "accessClassInPackage.*";

-- 
Regards,
Sean.




More information about the security-dev mailing list