Basic HTML version of Foils prepared May 19 99

Foil 142 Same Origin Policy

From Remarks on Internet and Java Security Basic Information Track Computational Science Course CPS616 -- Spring Semester 1999. by Geoffrey Fox, Mehmet Sen


When loading a document from one origin, a script loaded from a different origin cannot get or set certain predefined properties of certain browser and HTML objects in a window or frame.
Origin is defined as protocol://host, where host may include optional parts of URL including :port, part of an URL.
Any applets in the document are also subject to origin checks when calling JavaScript.
The same origin policy is the default policy since Netscape 2.
Properties subject to origin check



© Northeast Parallel Architectures Center, Syracuse University, npac@npac.syr.edu

If you have any comments about this server, send e-mail to webmaster@npac.syr.edu.

Page produced by wwwfoil on Wed May 19 1999