Package org.mozilla.javascript
Class PolicySecurityController
- java.lang.Object
- 
- org.mozilla.javascript.SecurityController
- 
- org.mozilla.javascript.PolicySecurityController
 
 
- 
 public class PolicySecurityController extends SecurityController A security controller relying on JavaPolicyin effect. When you use this security controller, your securityDomain objects must be instances ofCodeSourcerepresenting the location from where you load your scripts. Any Java policy "grant" statements matching the URL and certificate in code sources will apply to the scripts. If you specify any certificates within yourCodeSourceobjects, it is your responsibility to verify (or not) that the script source files are signed in whatever implementation-specific way you're using.
- 
- 
Nested Class SummaryNested Classes Modifier and Type Class Description static classPolicySecurityController.SecureCaller
 - 
Constructor SummaryConstructors Constructor Description PolicySecurityController()
 - 
Method SummaryAll Methods Instance Methods Concrete Methods Modifier and Type Method Description java.lang.ObjectcallWithDomain(java.lang.Object securityDomain, Context cx, Callable callable, Scriptable scope, Scriptable thisObj, java.lang.Object[] args)CallCallable.call(Context cx, Scriptable scope, Scriptable thisObj, Object[] args)of callable under restricted security domain where an action is allowed only if it is allowed according to the Java stack on the moment of the execWithDomain call and securityDomain.GeneratedClassLoadercreateClassLoader(java.lang.ClassLoader parent, java.lang.Object securityDomain)Get class loader-like object that can be used to define classes with the given security context.java.lang.ObjectgetDynamicSecurityDomain(java.lang.Object securityDomain)Get dynamic security domain that allows an action only if it is allowed by the current Java stack and securityDomain.java.lang.Class<?>getStaticSecurityDomainClassInternal()- 
Methods inherited from class org.mozilla.javascript.SecurityControllercreateLoader, execWithDomain, getStaticSecurityDomainClass, hasGlobal, initGlobal
 
- 
 
- 
- 
- 
Method Detail- 
getStaticSecurityDomainClassInternalpublic java.lang.Class<?> getStaticSecurityDomainClassInternal() - Overrides:
- getStaticSecurityDomainClassInternalin class- SecurityController
 
 - 
createClassLoaderpublic GeneratedClassLoader createClassLoader(java.lang.ClassLoader parent, java.lang.Object securityDomain) Description copied from class:SecurityControllerGet class loader-like object that can be used to define classes with the given security context.- Specified by:
- createClassLoaderin class- SecurityController
- Parameters:
- parent- parent class loader to delegate search for classes not defined by the class loader itself
- securityDomain- some object specifying the security context of the code that is defined by the returned class loader.
 
 - 
getDynamicSecurityDomainpublic java.lang.Object getDynamicSecurityDomain(java.lang.Object securityDomain) Description copied from class:SecurityControllerGet dynamic security domain that allows an action only if it is allowed by the current Java stack and securityDomain. If securityDomain is null, return domain representing permissions allowed by the current stack.- Specified by:
- getDynamicSecurityDomainin class- SecurityController
 
 - 
callWithDomainpublic java.lang.Object callWithDomain(java.lang.Object securityDomain, Context cx, Callable callable, Scriptable scope, Scriptable thisObj, java.lang.Object[] args)Description copied from class:SecurityControllerCallCallable.call(Context cx, Scriptable scope, Scriptable thisObj, Object[] args)of callable under restricted security domain where an action is allowed only if it is allowed according to the Java stack on the moment of the execWithDomain call and securityDomain. Any call toSecurityController.getDynamicSecurityDomain(Object)during execution ofcallable.call(cx, scope, thisObj, args)should return a domain incorporate restrictions imposed by securityDomain and Java stack on the moment of callWithDomain invocation.The method should always be overridden, it is not declared abstract for compatibility reasons. - Overrides:
- callWithDomainin class- SecurityController
 
 
- 
 
-