' in 'where clause'
which should come from the attempt to get the roles for this user.
Greetings
Andreas Mohrig
-Original Message-
From: Justin Wesbrooks [mailto:[EMAIL PROTECTED]
Sent: Thursday, November 20, 2003 3:59 PM
To: Tomcat Users List
Subject: Re: JDBC Realm
By the way,
I know my
only inside your context, the
driver in your WEB-INF/lib directory should be enough. As a last resort you
could implement some application managed security, although this is quite a
nuisance (as I can tell).
Greetings
Andreas Mohrig
-Original Message-
From: Andrew Murphy [mailto:[EMAIL
Andrew,
thank you. Jon Anderson pointed it out, too. Not knowing such things comes
from being blessed (and cursed) with a tomcat installation totally under my
control and without any restrictions.
Greetings
Andreas Mohrig
-Original Message-
From: Andrew Murphy [mailto:[EMAIL PROTECTED
to
java when starting tomcat could be an option, too (but I have not tried
this). The command-line argument seems to be
-Dlog4j.configuration=PATH_TO_YOUR_FILE
Greetings
Andreas Mohrig
-Original Message-
From: Bender, Christopher [mailto:[EMAIL PROTECTED]
Sent: Tuesday, November 18, 2003 3
than one).
Greetings
Andreas Mohrig
-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]
Sent: Tuesday, November 18, 2003 5:00 PM
To: [EMAIL PROTECTED]
Subject: Automatically instantiate Servlet
Hi,
usually Tomcat Servlets are instanciated after a webapplication
-server
get any chance to expose some services/ports to the whole wide world
(provided you disable routing on your webserver).
Of course you would need a switch on the internal network, but that could
even be a gigabit-switch to remove at least one bottleneck.
Greetings
Andreas Mohrig
has been implemented without session persistence in mind. I'm
afraid I will have to change to application based authentication after all.
Thank you for your help and time, anyway.
Greetings
Andreas Mohrig
-Ursprungliche Nachricht-
Von: Christopher Schultz [mailto:[EMAIL PROTECTED
Simon,
I suspect that some environment variable is incorrectly set (or not set at
all). Try to add the 'pause' at the end of the batch-file as Patrick
suggested. This should reveal whats wrong.
Greetings
Andreas Mohrig
-Ursprungliche Nachricht-
Von: Simon Allen [mailto:[EMAIL
. Click on
Properties then on the Memory tab. For the Initial environment
field,
enter in something like 4096.
After you click apply, Windows will create shortcuts in the directory
with
which you can use to start and stop the container.
Greetings
Andreas Mohrig
-Ursprungliche
. This is generally a very bad idea for security reasons (anyone can fake
what he sends to you if he knows what he's doing). But luckily this is not
the case.
Greetings
Andreas Mohrig
-Original Message-
From: Vincent Chen [mailto:[EMAIL PROTECTED]
Sent: Thursday, November 13, 2003 11:37 AM
To: [EMAIL
(or override) a hook
checking for user credentials. Then one can define restrictions/constraints
directly with the struts actions. If the whole application consists only of
struts actions, this seems to be a stable and quite convenient solution.
Greetings
Andreas Mohrig
-Original Message
Chris,
I just had a discussion with Harry Mantheakis concerning the same point. Of
course it is always good (and often necessary) to secure the sessionid (with
SSL). In the time of mega-proxies with more than one IP address comparing
IP addresses won't be of much use.
Andreas Mohrig
authentication both because of the
work this would cause and because of the security issues involved. Any
feedback would be greatly appreciated.
Greetings,
Andreas Mohrig
remain?
Greetings
Andreas Mohrig
-Ursprungliche Nachricht-
Von: Harry Mantheakis [mailto:[EMAIL PROTECTED]
Gesendet: Mittwoch, 12. November 2003 16:37
An: Tomcat Users List
Betreff: Re: Sessions - SSL
Hello
No, not at all.
I found that if I redirect a client from SSL to non-SSL I lose
how that could be accomplished?
Greetings
Andreas Mohrig
-Ursprungliche Nachricht-
Von: Christopher Schultz [mailto:[EMAIL PROTECTED]
Gesendet: Mittwoch, 12. November 2003 16:48
An: Tomcat Users List
Betreff: Re: Container based authentication and session persistence with
Tomca t 4.1.29
, too. Did you
ever try PersistentManager with Tomcat 4.1 and container based
authentication? Did your setup behave differently?
Greetings
Andreas Mohrig
- IT-Entwicklung -
cadooz AG- Gutschein- und Pramiensysteme
Osterbekstr. 90b
22083 Hamburg
Email: [EMAIL PROTECTED]
Tel
(and
'accidentally' save yourselve the trouble of having to solve your current
problem).
Greetings
Andreas Mohrig
-Ursprungliche Nachricht-
Von: Harry Mantheakis [mailto:[EMAIL PROTECTED]
Gesendet: Mittwoch, 12. November 2003 18:12
An: Tomcat Users List
Betreff: Re: Sessions - SSL
Hello
, where my browser
produced an old page with http out of the cache although it should show
something different and did the request before with https.
Greetings (Off now, too ;-)
Andreas Mohrig
-Ursprungliche Nachricht-
Von: Harry Mantheakis [mailto:[EMAIL PROTECTED]
Gesendet: Mittwoch, 12
of trouble.
regards
Andreas Mohrig
-Original Message-
From: Milt Epstein [mailto:[EMAIL PROTECTED]]
Sent: Thursday, September 26, 2002 5:50 AM
To: Tomcat Users List
Subject: Re: emails to list get language filter replies
On Wed, 25 Sep 2002, Brad Plies wrote:
Hehe, notice the segment
If you
I got the filter-response, too. Maybe it is some e-mail-server near to the
list server after all?
greetings
Andreas Mohrig
-Original Message-
From: Andreas Mohrig [mailto:[EMAIL PROTECTED]]
Sent: Thursday, September 26, 2002 9:54 AM
To: 'Tomcat Users List'
Subject: RE: emails to list
content. But the trouble is originating in the invoker servlet.
Andreas Mohrig
-Original Message-
From: Adam Greene [mailto:[EMAIL PROTECTED]]
Sent: Thursday, September 26, 2002 2:47 PM
To: Tomcat Users List
Subject: Questions about [SECURITY] Apache Tomcat 4.x JSP source
disclosure
to define the role as well (further
down in your web.xml):
security-role
role-namesecure/role-name
/security-role
Hope that helps.
Andreas Mohrig
-Original Message-
From: ed banfa [mailto:[EMAIL PROTECTED]]
Sent: Monday, September 23, 2002 9:39 AM
To: [EMAIL PROTECTED]
Subject
url-pattern/MyServletURL/url-pattern
/servlet-mapping
Try it and tell us if it works for you too.
greetings
Andreas Mohrig
-Original Message-
From: John-Paul Delaney [mailto:[EMAIL PROTECTED]]
Sent: Friday, September 20, 2002 9:43 PM
To: Tomcat Users List
Subject: RE: Dumb Question
I'd say that changing the port number in server.xml should definitely do the
trick. Could you post your changed server.xml? We could take a look.
greetings
Andreas Mohrig
Web: www.cadooz.de
-Original Message-
From: Bing Li [mailto:[EMAIL PROTECTED]]
Sent: Thursday, September 12, 2002
debug=0
This is a wild guess, but maybe this is giving you trouble?
I'm sorry I can't delve deeper into this.
greetings
Andreas Mohrig
-Original Message-
From: Bing Li [mailto:[EMAIL PROTECTED]]
Sent: Thursday, September 12, 2002 9:57 AM
To: Tomcat Users List
Subject: RE: How to Change Port
something you know exists for sure, e.g.
something of the examples webapp. In Tomcat 4.0
http://localhost:8080/examples/jsp/num/numguess.jsp
exists and should work.
And if the error remains, post your jsp file.
greetings
Andreas Mohrig
-Original Message-
From: Alexander Schmidt [mailto
Maybe I was wrong and it's not a problem with your jsp file, since Miguel
Angel Mulero Martinez had the same problem (running tomcat in win2000 as a
service). On which platform do you have your tomcat installed?
Andreas Mohrig
-Original Message-
From: Alexander Schmidt [mailto:[EMAIL
).
greetings
Andreas Mohrig
-Original Message-
From: Felipe Schnack [mailto:[EMAIL PROTECTED]]
Sent: Thursday, September 12, 2002 4:42 PM
To: Tomcat Users List
Subject: registering variables
How can I create an variable within an taglib? I would like to be able
to create an variable accesible
opinion as a programmer). But I'm willing to learn and to broaden my
perspective, so if you have a case where it is absolutely necessary (or even
practically/elegant or otherwise useful) to do what you want to do, please
let me know about it.
Andreas Mohrig
-Original Message-
From: Felipe
a problem of jdk's prior to 1.4 as well which simply did not show
(at least from within applets running inside IE) because IE used it's own
ssl/https-implementation when used with jdk1.3 (and earlier) and jdk1.4's if
used with that version.
greetings
Andreas Mohrig
-Original Message-
From: Bill
Andreas Mohrig
-Original Message-
From: Wolfgang Stein [mailto:[EMAIL PROTECTED]]
Sent: Tuesday, September 10, 2002 12:15 PM
To: [EMAIL PROTECTED]
Subject: Tomcat 3.2.4 slow with Jdk1.4 and SSL
Migrating from Jdk1.3 to Jdk1.4 we encountered a significant
performance decrease on SSL
This would by bye bye to portability, but you can call commands using
Runtime.getRuntime().exec(command);
Executes the specified command and arguments in a separate process.
(From the java documentation, look for the Runtime object.)
Andreas Mohrig
-Original Message-
From
that?
Andreas Mohrig
-Original Message-
From: Steve R. Burrus [mailto:[EMAIL PROTECTED]]
Sent: Thursday, August 29, 2002 12:09 AM
To: [EMAIL PROTECTED]
Subject: Re: STILL need help w. Tomcat installation!!
Hello Micael, I appreciate the useful [-sic]advice which you offered to
me re. setting
.
Andreas Mohrig
-Original Message-
From: Anthony Geoghegan [mailto:[EMAIL PROTECTED]]
Sent: Thursday, August 29, 2002 12:18 PM
To: Tomcat Users List
Subject: Re: MVC and caching
Is that a client caching issue?
If so a variety of http header settings can be used to clear a client-side
be different.
greetings
Andreas Mohrig
-Original Message-
From: Andreas Mohrig [mailto:[EMAIL PROTECTED]]
Sent: Thursday, August 29, 2002 12:50 PM
To: 'Tomcat Users List'
Subject: RE: MVC and caching
Either the browser or some proxy is caching your page. Try to tell them to
not do
You have to use Port 443 for the SSL-enabled service, since this is were the
client-browsers will send their https requests. Port 80 is for plain
content (not encrypted) transported over http.
Andreas Mohrig
-Original Message-
From: Giorgio Ponza [mailto:[EMAIL PROTECTED]]
Sent
Is using mod_jk a possibility? Because there is a way to connect multiple
tomcat instances to apache using modd_jk. I always thought this was one of
the differences between mod_jk and the warp connector, but don't take my
word for it. Did you check the warp connector's documentation?
Andreas
as it does it#s job reliably.
Andreas Mohrig
-Original Message-
From: Jochen Schweflinghaus [mailto:[EMAIL PROTECTED]]
Sent: Wednesday, August 28, 2002 9:40 AM
To: [EMAIL PROTECTED]
Subject: Experience with connectors to connect tomcat to apache ?
Hi Group,
since it seems that there is noone
I'm using Tomcat/4.0.4 with Apache 1.3.26 (mod_jk) on SuSE Linux 7.3
(without JBoss or struts).
Do you really get responses with the same session-id, but different results
of getRemoteUser()?
Andreas Mohrig
-Original Message-
From: jfc [mailto:[EMAIL PROTECTED]]
Sent: Wednesday, August
, and if they
don't do that, the directives never work for these requests. I don't
understand why tomcat is generating this configuration, though.
greetings
Andreas Mohrig
-Original Message-
From: Scott Adamson [mailto:[EMAIL PROTECTED]]
Sent: Thursday, August 22, 2002 6:52 AM
To: Tomcat
Go ahead, I will take a look, but I'm afraid I can't promise to spend very
much time with it. Perhaps it is better to mail it to me directly (if it is
large). And the sources would be usefull too.
greetings
Andreas Mohrig
-Original Message-
From: jfc [mailto:[EMAIL PROTECTED]]
Sent
http://httpd.apache.org/docs-2.0/ssl/
Andreas Mohrig
-Original Message-
From: Kenny G. Dubuisson, Jr. [mailto:[EMAIL PROTECTED]]
Sent: Thursday, August 22, 2002 3:49 PM
To: [EMAIL PROTECTED]
Subject: Adding HTTPS to Tomcat/Apache/mod_jk install on NT
Hello again all listers. I
keystore to get rid of this problem.
greetings
Andreas Mohrig
-Original Message-
From: QUERTEMONT Christophe [mailto:[EMAIL PROTECTED]]
Sent: Wednesday, August 21, 2002 11:37 AM
To: Tomcat
Subject: Tomcat + SSL + IO Taglib
Hello,
I'am connecting to Tomcat using SSL, but without client
authentification, since your
server does seem to communicate only with itself at this point.
Hope it works
Andreas Mohrig
-Original Message-
From: Andreas Mohrig [mailto:[EMAIL PROTECTED]]
Sent: Wednesday, August 21, 2002 11:47 AM
To: 'Tomcat Users List'
Subject: RE: Tomcat + SSL + IO Taglib
keystore, I could provide you with some notes,
but don't expect this will be easy.
greetings
Andreas Mohrig
-Original Message-
From: QUERTEMONT Christophe [mailto:[EMAIL PROTECTED]]
Sent: Wednesday, August 21, 2002 12:02 PM
To: 'Tomcat Users List'
Subject: RE: Tomcat + SSL + IO Taglib
Thanks
, but of course a login will only be demanded if
it has such a constraint.
If you experience different behaviour, I will surely be interested to learn
about it.
Andreas Mohrig
-Original Message-
From: jfc [mailto:[EMAIL PROTECTED]]
Sent: Wednesday, August 21, 2002 1:26 PM
To: [EMAIL
/usr/local/apache2/htdocs/. If you don't want that, change the *.jsp into *
(in JkMount /examples/*.jsp ajp13 etc.). If that is not acceptable when
it comes to performance, try it with the alias again, but then you should
also protect the tomcat-special-directories.
Andreas Mohrig
-Original
this
particular dll. If you initialize this object with an form of
application-initialization-servlet during startup, you could use it as a
semaphore (synchronization object / monitor) as well.
I'm not aware of any standard mechanism helping with such problems.
Hope that helps.
Andreas Mohrig
browser, e.g.:
http://www.yourserver.com/yourcontext/someresource.jsp;jsessionid=C21CC5E4A5
890818B3E56426925E86F9
This would let the other user share the same session as long as it has not
timed out.
best regards
Andreas Mohrig
-Original Message-
From: Roland Carlsson [mailto:[EMAIL
will make it
top.
greetings
Andreas Mohrig
-Original Message-
From: Harry Knörrer [mailto:[EMAIL PROTECTED]]
Sent: Wednesday, August 14, 2002 11:49 AM
To: 'Tomcat Users List'
Subject: AW: forward to TOP-Frame
And javascript isn't allowed
-Ursprüngliche Nachricht-
Von: Harry
of your Webserver (i.e. Tomcat or maybe Apache).
greetings
Andreas Mohrig
cadooz AG
Osterbekstr. 90b
22083 Hamburg
Email: [EMAIL PROTECTED]
Tel.: +49.40.271 482-13
Fax.: +49.40.271 482-11
Web: www.cadooz.de
-Ursprüngliche Nachricht-
Von: Adam W. Montville [mailto:[EMAIL PROTECTED
the
sometimes unnecessary context-prefix myself.
Andreas Mohrig
-Ursprüngliche Nachricht-
Von: Taral Shah [mailto:[EMAIL PROTECTED]]
Gesendet: Dienstag, 13. August 2002 13:33
An: Tomcat Users List
Betreff: Mapping directory
Is it possible to map path in topmcat.
I mean If i have request coming
such a
configuration using ssh.
greetings
Andreas Mohrig
-Original Message-
From: Turner, John [mailto:[EMAIL PROTECTED]]
Sent: Tuesday, August 13, 2002 5:49 PM
To: 'Tomcat Users List'
Subject: RE: SSL Connection Tomcat and Apache
Thanks for your post with the configuration in it...SSL
a lot of tomcat-machines, which would not be reachable by any other
machines if you set up the apache-machine correctly.
Please let me (let us all) know if you manage to successfully set up such a
configuration using ssh.
greetings
Andreas Mohrig
-Original Message-
From: Turner, John
: Correct my if I'm wrong, since I have not tested it with a
packet-sniffer (or something like that).
greetings
Andreas Mohrig
-Original Message-
From: Wills, Mike N. (TC) [mailto:[EMAIL PROTECTED]]
Sent: Tuesday, August 13, 2002 6:54 PM
To: 'Tomcat Users List'
Subject: RE: SSL Connection
in this
direction. Try to choose one of the realms and deactivate the other.
greetings
Andreas Mohrig
-Ursprüngliche Nachricht-
Von: Polly Poon [mailto:[EMAIL PROTECTED]]
Gesendet: Montag, 12. August 2002 15:57
An: Tomcat Users List
Betreff: One more thing -- JDBC Realm Error --Form- Looking both
56 matches
Mail list logo