Re: CORS issue with Tomcat and Android Webview

2014-04-27 Thread Konstantin Kolinko
2014-04-27 0:50 GMT+04:00 Terence M. Bandoian tere...@tmbsw.com: On 4/26/2014 1:13 AM, Ankit Singhal wrote: On Sat, Apr 26, 2014 at 12:53 AM, Terence M. Bandoian Hi, Ankit- Where did you see accept-origin documented? I see an init-param named cors.allowed.origins on the Tomcat web site:

Client-cert, ciphers, and proxies

2014-04-27 Thread Gary Briggs
In short: What's the best way to configure ciphers, matching in tomcat and openssl, to get widest browser compatability without sacrificing security? In long: I'm running tomcat with client-certificate authentication behind a proxy made by F5 [LTM, Local Traffic Manager, is the specific product].