4 ms·
Client-side (browser-plugin) only: Java in the browser (applets, web start) runs in a plugin which is supposed to have a strong sandbox to prevent applications
by spartango 14y ago
Client-side (browser-plugin) only:
Java in the browser (applets, web start) runs in a plugin which is supposed to have a strong sandbox to prevent applications from doing things like touching files or controlling your window manager without your permission.
On the server (or invoked from the commandline/jar), the security policy is much looser and there's no sandboxing (outside of what the OS and interpreter prevent).
- jiggy2011 14y agoYes, although I would generally recommend running your server side Java software inside a chroot jail.
- foohbarbaz 14y agoThat's pretty silly. Why?