https://bz.apache.org/bugzilla/show_bug.cgi?id=56917

Konstantin Kolinko <knst.koli...@gmail.com> changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
             Status|RESOLVED                    |REOPENED
         Resolution|FIXED                       |---

--- Comment #12 from Konstantin Kolinko <knst.koli...@gmail.com> ---
1. I think this feature must be configurable.

a. Regardless of browsers, this may affect configuration of reverse proxies.

I guess that ProxyPassReverse may fail to rewrite some of redirects.

http://httpd.apache.org/docs/2.4/mod/mod_proxy.html#proxypassreverse

b. There may be some old / dumb clients.

I am REOPENING this.


2. I agree that this is a nice feature and I think that enabling this feature
by default is better from security point of view.

-- 
You are receiving this mail because:
You are the assignee for the bug.

---------------------------------------------------------------------
To unsubscribe, e-mail: dev-unsubscr...@tomcat.apache.org
For additional commands, e-mail: dev-h...@tomcat.apache.org

Reply via email to