grant codebase "file:${org.apache.river.jsk.home}${/}lib${/}phoenix.jar" { permission java.security.AllPermission "", ""; }; grant codebase "file:${org.apache.river.jsk.home}${/}lib${/}jsk-platform.jar" { permission java.security.AllPermission "", ""; }; grant codebase "file:${org.apache.river.jsk.home}${/}lib${/}jsk-lib.jar" { permission java.security.AllPermission "", ""; }; grant codebase "file:${org.apache.river.qa.harness.harnessJar} { permission org.apache.river.phoenix.SystemPermission "java.rmi.activation.ActivationSystem.*"; }; grant codebase "file:${org.apache.river.qa.harness.testJar} { permission org.apache.river.phoenix.SystemPermission "java.rmi.activation.ActivationSystem.*"; }; //not sure the following is necessary, but just in case grant codebase "file:${org.apache.river.qa.home}${/}lib${/}qa1-jini-latest.jar" { permission org.apache.river.phoenix.SystemPermission "java.rmi.activation.ActivationSystem.*"; }; grant principal javax.security.auth.x500.X500Principal "CN=Fiddler" { permission org.apache.river.phoenix.SystemPermission "net.jini.security.proxytrust.ProxyTrust.getProxyVerifier"; permission org.apache.river.phoenix.SystemPermission "java.rmi.activation.ActivationSystem.*"; }; grant principal javax.security.auth.x500.X500Principal "CN=Mahalo" { permission org.apache.river.phoenix.SystemPermission "net.jini.security.proxytrust.ProxyTrust.getProxyVerifier"; permission org.apache.river.phoenix.SystemPermission "java.rmi.activation.ActivationSystem.*"; }; grant principal javax.security.auth.x500.X500Principal "CN=Mercury" { permission org.apache.river.phoenix.SystemPermission "net.jini.security.proxytrust.ProxyTrust.getProxyVerifier"; permission org.apache.river.phoenix.SystemPermission "java.rmi.activation.ActivationSystem.*"; }; grant principal javax.security.auth.x500.X500Principal "CN=Outrigger" { permission org.apache.river.phoenix.SystemPermission "net.jini.security.proxytrust.ProxyTrust.getProxyVerifier"; permission org.apache.river.phoenix.SystemPermission "java.rmi.activation.ActivationSystem.*"; }; grant principal javax.security.auth.x500.X500Principal "CN=Reggie" { permission org.apache.river.phoenix.SystemPermission "net.jini.security.proxytrust.ProxyTrust.getProxyVerifier"; permission org.apache.river.phoenix.SystemPermission "java.rmi.activation.ActivationSystem.*"; }; grant principal javax.security.auth.x500.X500Principal "CN=Norm" { permission org.apache.river.phoenix.SystemPermission "net.jini.security.proxytrust.ProxyTrust.getProxyVerifier"; permission org.apache.river.phoenix.SystemPermission "java.rmi.activation.ActivationSystem.*"; }; grant principal javax.security.auth.x500.X500Principal "CN=Tester" { permission org.apache.river.phoenix.ExecOptionPermission "*"; permission org.apache.river.phoenix.SystemPermission "net.jini.security.proxytrust.ProxyTrust.getProxyVerifier"; permission org.apache.river.phoenix.SystemPermission "java.rmi.activation.ActivationSystem.*"; // for a start test permission org.apache.river.phoenix.ExecPermission "/bin/javax"; }; grant principal javax.security.auth.x500.X500Principal "CN=Phoenix" { permission org.apache.river.phoenix.SystemPermission "net.jini.security.proxytrust.ProxyTrust.getProxyVerifier"; permission org.apache.river.phoenix.SystemPermission "java.rmi.activation.ActivationSystem.*"; permission org.apache.river.phoenix.MonitorPermission "net.jini.security.proxytrust.ProxyTrust.getProxyVerifier"; permission org.apache.river.phoenix.MonitorPermission "java.rmi.activation.ActivationMonitor.*"; }; //Kerberos Principals grant principal javax.security.auth.kerberos.KerberosPrincipal "${fiddler}" { permission org.apache.river.phoenix.SystemPermission "net.jini.security.proxytrust.ProxyTrust.getProxyVerifier"; permission org.apache.river.phoenix.SystemPermission "java.rmi.activation.ActivationSystem.*"; }; grant principal javax.security.auth.kerberos.KerberosPrincipal "${mahalo}" { permission org.apache.river.phoenix.SystemPermission "net.jini.security.proxytrust.ProxyTrust.getProxyVerifier"; permission org.apache.river.phoenix.SystemPermission "java.rmi.activation.ActivationSystem.*"; }; grant principal javax.security.auth.kerberos.KerberosPrincipal "${mercury}" { permission org.apache.river.phoenix.SystemPermission "net.jini.security.proxytrust.ProxyTrust.getProxyVerifier"; permission org.apache.river.phoenix.SystemPermission "java.rmi.activation.ActivationSystem.*"; }; grant principal javax.security.auth.kerberos.KerberosPrincipal "${outrigger}" { permission org.apache.river.phoenix.SystemPermission "net.jini.security.proxytrust.ProxyTrust.getProxyVerifier"; permission org.apache.river.phoenix.SystemPermission "java.rmi.activation.ActivationSystem.*"; }; grant principal javax.security.auth.kerberos.KerberosPrincipal "${reggie}" { permission org.apache.river.phoenix.SystemPermission "net.jini.security.proxytrust.ProxyTrust.getProxyVerifier"; permission org.apache.river.phoenix.SystemPermission "java.rmi.activation.ActivationSystem.*"; }; grant principal javax.security.auth.kerberos.KerberosPrincipal "${norm}" { permission org.apache.river.phoenix.SystemPermission "net.jini.security.proxytrust.ProxyTrust.getProxyVerifier"; permission org.apache.river.phoenix.SystemPermission "java.rmi.activation.ActivationSystem.*"; }; grant principal javax.security.auth.kerberos.KerberosPrincipal "${test}" { permission org.apache.river.phoenix.ExecOptionPermission "*"; permission org.apache.river.phoenix.SystemPermission "net.jini.security.proxytrust.ProxyTrust.getProxyVerifier"; permission org.apache.river.phoenix.SystemPermission "java.rmi.activation.ActivationSystem.*"; // for a start test permission org.apache.river.phoenix.ExecPermission "/bin/javax"; }; grant principal javax.security.auth.kerberos.KerberosPrincipal "${phoenix}" { permission org.apache.river.phoenix.SystemPermission "net.jini.security.proxytrust.ProxyTrust.getProxyVerifier"; permission org.apache.river.phoenix.SystemPermission "java.rmi.activation.ActivationSystem.*"; permission org.apache.river.phoenix.MonitorPermission "net.jini.security.proxytrust.ProxyTrust.getProxyVerifier"; permission org.apache.river.phoenix.MonitorPermission "java.rmi.activation.ActivationMonitor.*"; };