RE: FW: tomcat creating new ssl session id for same session

2019-11-28 Thread Rekha.MS
Highly Restricted - Confidential Hi Chris, Some more details added below. Please let me know id any more details needed. Thanks, Rekha MS -Original Message- From: Christopher Schultz Sent: Thursday, November 28, 2019 7:19 PM To: users@tomcat.apache.org Subject: Re: FW: tomcat

Re: Tomcat 7.x.x, 8.x.x, 8.5.x and 9.x.x: Session serialization w/o authentication related information

2019-11-28 Thread Christopher Schultz
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Carsten, > in all recent Tomcat versions the standard session implementation > declares authentication related fields as 'transient', so both the > session's authType as well as it's authenticated Principal is not > saved and restored across

Re: Error after upgrading to Tomcat 9.0.29

2019-11-28 Thread Mark Thomas
On 28/11/2019 13:56, Juri Berlanda wrote: > Hi Mark, > > I have 2 good news: > > 1. The issue I've seen is fixed with your 9.0.30-dev build > 2. My PC did not catch fire while running your 9.0.30-dev build :) > > So I guess I'll just wait for the final 9.0.30 release and stay on > 9.0.27 until

Re: Error after upgrading to Tomcat 9.0.29

2019-11-28 Thread Juri Berlanda
Hi Mark, I have 2 good news: 1. The issue I've seen is fixed with your 9.0.30-dev build 2. My PC did not catch fire while running your 9.0.30-dev build :) So I guess I'll just wait for the final 9.0.30 release and stay on 9.0.27 until then. Thanks a lot for the quick help and solution.

Re: FW: tomcat creating new ssl session id for same session

2019-11-28 Thread Christopher Schultz
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Rekha, On 11/28/19 01:33, rekha...@dell.com wrote: > Thanks for your prompt reply. Please find my response inline. It seems you forgot to include any useful responses. > -Original Message- From: Christopher Schultz > Sent: Wednesday,

Re: Tomcat 7.x.x, 8.x.x, 8.5.x and 9.x.x: Session serialization w/o authentication related information

2019-11-28 Thread Mark Thomas
On 28/11/2019 08:03, Klein, Carsten wrote: > Hi there, > > in all recent Tomcat versions the standard session implementation > declares authentication related fields as 'transient', so both the > session's authType as well as it's authenticated Principal is not saved > and restored across

Re: Apache Tomcat 8.5.49 - StackOverflowError when getting static resources

2019-11-28 Thread Mark Thomas
On 28/11/2019 07:59, jan.a...@seznam.cz wrote: > Hello Mark, > > no problem, thanks that I could test it also with 8.5 version.  > > With your build Apache Tomcat/8.5.50-dev issue also disapeared. Thanks for the confirmation. Mark

Tomcat 7.x.x, 8.x.x, 8.5.x and 9.x.x: Session serialization w/o authentication related information

2019-11-28 Thread Klein, Carsten
Hi there, in all recent Tomcat versions the standard session implementation declares authentication related fields as 'transient', so both the session's authType as well as it's authenticated Principal is not saved and restored across restarts. On those fields there is a comment that