From: "Chuck Chopp" <[EMAIL PROTECTED]> > I would expect that there would be some sort of explicit exclusion affecting > "WEB-INF" and that this should appear somewhere in the Tomcat configuration > files. So far, I've been unable to find any references to "WEB-INF" that > involves anything security related. This was the result of examining all > files found doing a brute-force search of files in the file system.
Have you asked on tomcat-user? If you think Tomcat is misbehaving, they may have more insight into what it could be. -- Wendy Smoak --------------------------------------------------------------------- To unsubscribe, e-mail: [EMAIL PROTECTED] For additional commands, e-mail: [EMAIL PROTECTED]