activemq-issues mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From "ASF subversion and git services (JIRA)" <>
Subject [jira] [Commented] (AMQ-6077) Better configuration of restricted classes for clients
Date Mon, 14 Dec 2015 19:13:46 GMT


ASF subversion and git services commented on AMQ-6077:

Commit 5e02e305ea39314589329643c164be62d5b35592 in activemq's branch refs/heads/activemq-5.13.x
from [~dejanb]
[;h=5e02e30 ] - define object message trusted packages on
connection factory

(cherry picked from commit 94446e53dc348b9109dff46e92484ed9e6cc1d72)

> Better configuration of restricted classes for clients
> ------------------------------------------------------
>                 Key: AMQ-6077
>                 URL:
>             Project: ActiveMQ
>          Issue Type: Improvement
>    Affects Versions: 5.13.0
>            Reporter: Dejan Bosanac
>            Assignee: Dejan Bosanac
>             Fix For: 5.13.1
> [AMQ-6013] introduces the checks on the classes that are allowed to be serialized through
ObjectMessages. The original implementation was designed to protect the broker, so system
property configuration was the easiest solution.
> This change affect the clients that uses ObjectMessages.getObject() method. We need to
provide a better way of configuring this for clients. My initial idea is that we should provide
a configuration on ActiveMQConnectionFactory and ActiveMQComponent classes.

This message was sent by Atlassian JIRA

View raw message