RE: Tomcat 7.0 & spring web applcaiton context - Fedora 17

2013-04-22 Thread Khurram Raza
-Original Message- From: Mark Eggers [mailto:its_toas...@yahoo.com] Sent: Monday, April 22, 2013 6:01 PM To: Tomcat Users List Subject: Re: Tomcat 7.0 & spring web applcaiton context - Fedora 17 On 4/22/2013 2:34 PM, Christopher Schultz wrote: > -BEGIN PGP SIGNED MESSAGE- > Hash

Re: Tomcat access log reveals hack attempt: "HEAD /manager/html HTTP/1.0" 404

2013-04-22 Thread Christopher Schultz
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 André, On 4/22/13 6:44 PM, André Warnier wrote: > Christopher Schultz wrote: >> -BEGIN PGP SIGNED MESSAGE- Hash: SHA256 >> >> Chris, >> >> On 4/20/13 6:08 PM, chris derham wrote: >>> I think that you have articulated your suggestion very w

Re: JSTL XML Basic Question

2013-04-22 Thread Konstantin Kolinko
2013/4/20 Jerry Malcolm <2ndgenfi...@gmail.com>: > I have been searching for several hours for a basic JSTL answer with no > luck. From what I can tell, JSTL is under the umbrella of Tomcat. > Hopefully someone can help me out. > You are welcome. > I simply want to use an existing already-parsed

Re: Tomcat access log reveals hack attempt: "HEAD /manager/html HTTP/1.0" 404

2013-04-22 Thread André Warnier
Christopher Schultz wrote: -BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Chris, On 4/20/13 6:08 PM, chris derham wrote: I think that you have articulated your suggestion very well. I think you have weighed the pros well and been open to debate. Personally I just don't think what you propose

Re: Tomcat 7.0 & spring web applcaiton context - Fedora 17

2013-04-22 Thread Mark Eggers
On 4/22/2013 2:34 PM, Christopher Schultz wrote: -BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Khurram, On 4/22/13 6:26 AM, Khurram Raza wrote: So are there any thoughts on this issue which I am not able to resolve yet? I'm not sure anyone really understands what is going on. You are usin

Re: JSTL XML Basic Question

2013-04-22 Thread Christopher Schultz
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Jerry, On 4/20/13 2:14 PM, Jerry Malcolm wrote: > I have been searching for several hours for a basic JSTL answer > with no luck. From what I can tell, JSTL is under the umbrella of > Tomcat. Nope, but I can understand the confusion. JSTL is a st

Re: two responses from one request - how is it possible ?

2013-04-22 Thread André Warnier
Jeffrey Janner wrote: ... In actuality, he should have stopped the first sentence at "Engine", and then continued with a new sentence (keeping in mind the simplified structure): "The Engine will then see if the first string after the hostname portion of the request URL matches any of the

Re: Tomcat 7.0 & spring web applcaiton context - Fedora 17

2013-04-22 Thread Christopher Schultz
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Khurram, On 4/22/13 6:26 AM, Khurram Raza wrote: > So are there any thoughts on this issue which I am not able to > resolve yet? I'm not sure anyone really understands what is going on. You are using a Servlet to configure (and apparently shut-dow

Re: two responses from one request - how is it possible ?

2013-04-22 Thread Christopher Schultz
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Jeffrey, On 4/22/13 4:18 PM, Jeffrey Janner wrote: > > >> -Original Message- From: André Warnier >> [mailto:a...@ice-sa.com] Sent: Sunday, April 21, 2013 7:03 PM To: >> Tomcat Users List Subject: Re: two responses from one request - >> how

Re: Tomcat access log reveals hack attempt: "HEAD /manager/html HTTP/1.0" 404

2013-04-22 Thread Christopher Schultz
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Chris, On 4/20/13 6:08 PM, chris derham wrote: > I think that you have articulated your suggestion very well. I > think you have weighed the pros well and been open to debate. > Personally I just don't think what you propose will have the effect > t

Re: Tomcat access log reveals hack attempt: "HEAD /manager/html HTTP/1.0" 404

2013-04-22 Thread André Warnier
Leo Donahue - RDSA IT wrote: -Original Message- From: Howard W. Smith, Jr. [mailto:smithh032...@gmail.com] Subject: Re: Tomcat access log reveals hack attempt: "HEAD /manager/html HTTP/1.0" 404 also, if an 'ANN' email was sent, where /expert tomcat/ users can derive/develop a list of t

RE: two responses from one request - how is it possible ?

2013-04-22 Thread Jeffrey Janner
> -Original Message- > From: André Warnier [mailto:a...@ice-sa.com] > Sent: Sunday, April 21, 2013 7:03 PM > To: Tomcat Users List > Subject: Re: two responses from one request - how is it possible ? > > Jakub 1983 wrote: > > http://www.mulesoft.com/tomcat-connector states: > > > > Using

RE: Tomcat access log reveals hack attempt: "HEAD /manager/html HTTP/1.0" 404

2013-04-22 Thread Leo Donahue - RDSA IT
>-Original Message- >From: Howard W. Smith, Jr. [mailto:smithh032...@gmail.com] >Subject: Re: Tomcat access log reveals hack attempt: "HEAD /manager/html >HTTP/1.0" 404 > > >also, if an 'ANN' email was sent, where /expert tomcat/ users can >derive/develop a list of the popular/frequent URL

Re: Tomcat access log reveals hack attempt: "HEAD /manager/html HTTP/1.0" 404

2013-04-22 Thread André Warnier
chris derham wrote: But honestly, I am also a bit at a loss now as to how to continue. There is of course no way for me to prove the validity of the scheme by installing it on 31 million (20%) of webservers on the Internet and looking at the resulting bot activity patterns to confirm my suspicio

Re: Tomcat access log reveals hack attempt: "HEAD /manager/html HTTP/1.0" 404

2013-04-22 Thread chris derham
> But honestly, I am also a bit at a loss now as to how to continue. There is > of course no way for me to prove the validity of the scheme by installing it > on 31 million (20%) of webservers on the Internet and looking at the > resulting bot activity patterns to confirm my suspicions. Try to en

RE: Tomcat 7.0 & spring web applcaiton context - Fedora 17

2013-04-22 Thread Khurram Raza
So are there any thoughts on this issue which I am not able to resolve yet? -Original Message- From: Khurram Raza Sent: Saturday, April 20, 2013 12:08 AM To: Tomcat Users List Subject: RE: Tomcat 7.0 & spring web applcaiton context - Fedora 17 Hi Mark, I recently noticed that I cannot

Re: Tomcat access log reveals hack attempt: "HEAD /manager/html HTTP/1.0" 404

2013-04-22 Thread André Warnier
chris derham wrote: Let me just summarise my arguments then : 1) These scans are a burden for all webservers, not just for the vulnerable ones. Whether we want to or not, we currently all have to invest resources into countering (or simply responding to) these scans. Obviously, just ignoring th

Re: two responses from one request - how is it possible ?

2013-04-22 Thread Mark Thomas
On 22/04/2013 01:03, André Warnier wrote: > Jakub 1983 wrote: >> http://www.mulesoft.com/tomcat-connector states: >> >> Using the current arrangement, both Connectors will pass all requests to >> the same Engine, which will in turn pass all these requests to both of >> its >> contained web applicat