It seems CAS has longstanding behavior to redirect requests for non-existing 
content to /cas/login vs. issue a 404.

Curious, is there a security/design/... reason for doing so?

The basis of the question is an observation by one of our security team that it 
throws off scanning software we use.

Thanks.
Tom.
-- 
You are currently subscribed to [email protected] as: 
[email protected]
To unsubscribe, change settings or access archives, see 
http://www.ja-sig.org/wiki/display/JSG/cas-user

Reply via email to