On 12/22/20 10:51 AM, Christopher Schultz wrote:

I would try to lock-down that IP range as much as you can, rather than either removing the Valve (which would allow connections from anywhere) or specifying something like ".*" in the "allow" attribute (which is a regular expression which will be applied to the remote-user's IP address, either IPv4 or IPv6 as the case may be).

Dear Mr. Schultz:

Thanks. Very much applicable to the EC2 instance (and I recall doing just that, although I'd have to look at what I did to recall exactly how), and to most customer boxes, but not necessarily so much for this particular customer: they've got everything locked down in the tightest VPN I've ever seen.

--
JHHL

---------------------------------------------------------------------
To unsubscribe, e-mail: users-unsubscr...@tomcat.apache.org
For additional commands, e-mail: users-h...@tomcat.apache.org

Reply via email to