Hi!

FB/Java plugin has permission system.

By default, one can create his routines but are limited for example to
not access the server filesystem.

Sys admin can grant Java permissions to users and roles.

But there is a problem with embedded connections.

If one uses the Jaybird server-side JDBC driver, he can connect to any
database without user names.

It would be possible to disallow embedded connections, but seems like a
bad solution.

One will need to use slower method to connect to others databases in the
same server.

How this embedded connections that don't verify user names will going to
be fixed at least for such cases?


Adriano


------------------------------------------------------------------------------
Mobile security can be enabling, not merely restricting. Employees who
bring their own devices (BYOD) to work are irked by the imposition of MDM
restrictions. Mobile Device Manager Plus allows you to control only the
apps on BYO-devices by containerizing them, leaving personal data untouched!
https://ad.doubleclick.net/ddm/clk/304595813;131938128;j
Firebird-Devel mailing list, web interface at 
https://lists.sourceforge.net/lists/listinfo/firebird-devel

Reply via email to