![]() Server : Apache System : Linux server2.corals.io 4.18.0-348.2.1.el8_5.x86_64 #1 SMP Mon Nov 15 09:17:08 EST 2021 x86_64 User : corals ( 1002) PHP Version : 7.4.33 Disable Function : exec,passthru,shell_exec,system Directory : /proc/self/root/usr/share/elasticsearch/modules/x-pack-security/ |
grant { permission java.lang.RuntimePermission "setFactory"; // needed for SAML permission java.util.PropertyPermission "org.apache.xml.security.ignoreLineBreaks", "read,write"; // needed during initialization of OpenSAML library where xml security algorithms are registered // see https://github.com/apache/santuario-java/blob/e79f1fe4192de73a975bc7246aee58ed0703343d/src/main/java/org/apache/xml/security/utils/JavaUtils.java#L205-L220 // and https://git.shibboleth.net/view/?p=java-opensaml.git;a=blob;f=opensaml-xmlsec-impl/src/main/java/org/opensaml/xmlsec/signature/impl/SignatureMarshaller.java;hb=db0eaa64210f0e32d359cd6c57bedd57902bf811#l52 // which uses it in the opensaml-xmlsec-impl permission java.security.SecurityPermission "org.apache.xml.security.register"; // needed for multiple server implementations used in tests permission java.net.SocketPermission "*", "accept,connect"; // needed for Kerberos login permission javax.security.auth.AuthPermission "modifyPrincipals"; permission javax.security.auth.AuthPermission "modifyPrivateCredentials"; permission javax.security.auth.PrivateCredentialPermission "javax.security.auth.kerberos.KerberosKey * \"*\"", "read"; permission javax.security.auth.PrivateCredentialPermission "javax.security.auth.kerberos.KeyTab * \"*\"", "read"; permission javax.security.auth.PrivateCredentialPermission "javax.security.auth.kerberos.KerberosTicket * \"*\"", "read"; permission javax.security.auth.AuthPermission "doAs"; permission javax.security.auth.kerberos.ServicePermission "*","initiate,accept"; permission java.util.PropertyPermission "javax.security.auth.useSubjectCredsOnly","write"; permission java.util.PropertyPermission "java.security.krb5.conf","write"; permission java.util.PropertyPermission "sun.security.krb5.debug","write"; permission java.util.PropertyPermission "java.security.debug","write"; permission java.util.PropertyPermission "sun.security.spnego.debug","write"; // needed for kerberos file permission tests to access user information permission java.lang.RuntimePermission "accessUserInformation"; permission java.lang.RuntimePermission "getFileStoreAttributes"; };