Re: ajp12, ajp13, mod_webapp, and http protocols

2001-05-05 Thread kevin seguin
i'm not the expert on these things, but i'll try to answer your questions as best i can. i'm sure if i say something that is blatantly wrong, i will be corrected ;) the information here is pretty much what i've figured out for myself using tomcat over the last year or so... I am using

Re: ajp12, ajp13, mod_webapp, and http protocols

2001-05-05 Thread Wolle
Hello, in the documentation of the ajp13 Protocol is something written, that ajp13 provides the isSecure Methode on Servlets for SSL, but I have tested it with ajp12, and the isSecure Methode works,too. Greetings, Wolle kevin seguin wrote: i'm not the expert on these things, but i'll try to

Re: Tomcat 3.2.2 beta 4 (insecure default settings)

2001-05-05 Thread Andrey Kartashov
On Fri, May 04, 2001 at 07:58:17PM -0400, Andrey Kartashov wrote: [skpd] Let's be prudent here. The standard configuration must avoid security hole. Many users will have tomcat in front and we must avoid someone outside shutdown their TC boxes. Let me clarify this:) I don't ask you

Re: ajp12, ajp13, mod_webapp, and http protocols

2001-05-05 Thread cmanolache
On Sat, 5 May 2001, kevin seguin wrote: i believe the original reason why mod_jserv and ajp were introduced was for connecting the apache web server to the old JServ servlet container. when tomcat showed up, mod_jserv was used for it too. i think mod_jk, which added support for more web