Ciao!
Please read my comment inline..

On Fri, May 27, 2011 at 12:12 AM, Christopher Schultz <
ch...@christopherschultz.net> wrote:

> -----BEGIN PGP SIGNED MESSAGE-----
> Hash: SHA1
>
> Filippo,
>
> On 5/26/2011 10:50 AM, Filippo Machi wrote:
> > One of our legacy (non java) server was used to put a blank (' ')
> character
> > as value of a cookie.
>
> The value itself is blank, or the value /contains/ a blank?
>

the value contains a blank


>
> Please give us an example of a "Cooke:" header from your client and
> maybe we can suggest a solution (a few come to mind, but I'm unwilling
> to describe them until I see an example).
>

here it's an example, I used firebug to grab the cookie header contained in
the request:

AA=01*49qmsEhufMY7I6g/OnGT2tN3ThrCZH6vJ342kTDsssuRgEhlqwftbRTaikwi9I3HIx5yoK1ng4tY
5JuIUe3x9o0Jptimu3uvVgeQAKc5htM=;
__utma=125866390.1346069185.1295258223.1306326749.1306484681.40;
__utmz=125866390.1306326795.39.29.utmcsr=....


as you can see there are different cookies, the first one (AA) it's the
guilty. It has a blank here

...4tY 5Ju...

thanks
Fil


>
> - -chris
> -----BEGIN PGP SIGNATURE-----
> Version: GnuPG v1.4.10 (MingW32)
> Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org/
>
> iEYEARECAAYFAk3e0EcACgkQ9CaO5/Lv0PD6ZgCfZYbQ0mgHBVH7lCiGEiiQ5jwd
> YWsAmwUmoJuGlbNvIRouWyWXLbSPsq6o
> =U5r9
> -----END PGP SIGNATURE-----
>
> ---------------------------------------------------------------------
> To unsubscribe, e-mail: users-unsubscr...@tomcat.apache.org
> For additional commands, e-mail: users-h...@tomcat.apache.org
>
>

Reply via email to