S�ren Hilmer wrote:

> Josh Pennell wrote:
> >
> > A note on java security:
> >
> > Well if your dealing with non-1.2 java security ie. applets and
> > browsers, you can use the netscape capabalities api and IE's cab and
> > sign technology to break out of the sandbox.  I've used them and they
> > both work fairly well.
>
> No, this will not work with Netscape because the Netscape capabilities
> api requires that the calls are placed in the object requesting to break
> out of the sandbox, and as this is one of the javax.comm objects, and
> you do not have the source for that, you are out of luck.

The capability APIs require that the appropriate capability call is made in the same
thread which requires the capability. If you can ensure that each thread which
requires capability makes the appropriate call, before it needs the capability, and
this call occurs at the same or a higher level on the call stack frame, then it will
work. I have not tried this with OCF - I am speaking generally.

CJB


Visit the OpenCard Framework's WWW site at http://www.opencard.org/ for
access to documentation, code, presentations, and OCF announcements.
-----------------------------------------------------------------------------
To unsubscribe from the OCF Mailing list, send a mail to
"[EMAIL PROTECTED]" with the word "unsubscribe" in the BODY of the
message.

Reply via email to