Which three security restrictions can be specified in the deployment descriptor according to the servlet API specification standards?