From: "Chuck Chopp" <[EMAIL PROTECTED]>
> I would expect that there would be some sort of explicit exclusion
affecting
> "WEB-INF" and that this should appear somewhere in the Tomcat
configuration
> files.  So far, I've  been unable to find any references to "WEB-INF" that
> involves anything security related.  This was the result of examining all
> files found doing a brute-force search of files in the file system.

Have you asked on tomcat-user?  If you think Tomcat is misbehaving, they may
have more insight into what it could be.

-- 
Wendy Smoak


---------------------------------------------------------------------
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]

Reply via email to