
I am using 5.0.19 & I have the following definition in my web.xml file

*      <welcome-file>/jsp/test.jsp</welcome-file>*
     <web-resource-name>Secured Core Context</web-resource-name>
*      <url-pattern>/jsp/*</url-pattern>*

Now if i access my application as http://localhost:8080/<appName>, the welcome-file is served directly, without going through the security constraints. But if i invoke as. http://localhost:8080/<appName>/jsp/test.jsp, then the login.jsp page is brought up.

The same setup works fine in tomcat 4.1.24

Am i missing something in the configuration or is it a tomcat 5 bug. If it is a bug are there any workarounds

Shanmugam Pl

