We have a Jboss/Tomcat server behind a firewall, with an Apache box in a DMZ. 

Our security group is concerned about an attacker gaining access to another box 
behind the firewall, and attaching directly to the ajp port from a comprimised 
box. 

Is there a way to limit access to the ajp port to only a specific IP address?  
(AJP/8009 only responds to requests from IP X)

View the original post : 
http://www.jboss.com/index.html?module=bb&op=viewtopic&p=3914107#3914107

Reply to the post : 
http://www.jboss.com/index.html?module=bb&op=posting&mode=reply&p=3914107


-------------------------------------------------------
This SF.net email is sponsored by: Splunk Inc. Do you grep through log files
for problems?  Stop!  Download the new AJAX search engine that makes
searching your log files as easy as surfing the  web.  DOWNLOAD SPLUNK!
http://ads.osdn.com/?ad_id=7637&alloc_id=16865&op=click
_______________________________________________
JBoss-user mailing list
JBoss-user@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/jboss-user

Reply via email to