I have one application running in tomcat 4.1.18 and apache.
if i have writte in the browser (explorer):
http://www.domain.com/WEB-INF/web.xml
the system shows me the file.
This is one great security problem.
How can i deny this?
i the appache conf file i have:
<Directory "WEB-INF">
Options -Indexes
AllowOverride None
Order deny,allow
Deny from all
</Directory>

Please help me


---------------------------------------------------------------------
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]

Reply via email to