JSP 2.1 support?

2005-08-23 Thread Jonathan Eric Miller
Does anyone know when JSP 2.1 support is expected? Will that be in Tomcat 6? Jon - To unsubscribe, e-mail: [EMAIL PROTECTED] For additional commands, e-mail: [EMAIL PROTECTED]

Possible to include JSP document (.jspx) fragments that aren't well formed?

2005-04-25 Thread Jonathan Eric Miller
Does anyone know if it's possible to include a .jspx fragment in another .jspx file? When I say .jspx fragment, I mean a file that is in XML format, but, may not be well formed. For example, I want to do something like the following. Currently, I'm receiving an error message like the following.

Re: Way to specify SingleSignOn session timeout?

2005-04-14 Thread Jonathan Eric Miller
After looking at the code, it looks like the SSO session doesn't go away until all other sessions for the user have expired. So, as far as I can tell, the SSO session doesn't have it's own session timeout as far as I can tell. Jon - Original Message - From: "

Re: Way to specify SingleSignOn session timeout?

2005-04-14 Thread Jonathan Eric Miller
After looking at the code, it looks like the SSO session doesn't go away until all other sessions for the user have expired. So, as far as I can tell, the SSO session doesn't have it's own session timeout as far as I can tell. Jon - Original Message - From: "

Re: JULI and logging

2005-04-14 Thread Jonathan Eric Miller
I haven't tried it yet, but, I noticed that catalina.sh/bat, looks for a jar file named tomcat-juli.jar and if it's present, it adds a "-Djava.util.logging.manager=org.apache.juli.ClassLoaderLogManager" to JAVA_OPTS. I think if you rename or remove that jar file, it will disable it (haven't tri

Re: Upgrading from tomcat 3.2.2 to 3.3.2 on Windows

2005-04-13 Thread Jonathan Eric Miller
Reading the changelog is a good place to start... Jon - Original Message - From: "Horvath, Ruth (Ruth) ** CTR **" <[EMAIL PROTECTED]> To: Sent: Wednesday, April 13, 2005 12:16 PM Subject: Upgrading from tomcat 3.2.2 to 3.3.2 on Windows Sorry if this has been discussed before, but I coul

Re: Way to specify SingleSignOn session timeout?

2005-04-13 Thread Jonathan Eric Miller
is is presumably for the global session. Jon - Original Message - From: "Peter Rossbach" <[EMAIL PROTECTED]> To: "Tomcat Users List" Sent: Tuesday, April 12, 2005 10:56 PM Subject: Re: Way to specify SingleSignOn session timeout? Look inside conf/web.xml

Way to specify SingleSignOn session timeout?

2005-04-12 Thread Jonathan Eric Miller
I'm using the SingleSignOn valve with Tomcat 5.5.9. Does anyone know what the default session timeout is set to? Is there a way to specify this timeout? I'm finding that sometimes my session will timeout within an application, but, it doesn't redisplay the login page. I want to try to set it up

Re: logging to seperate log file per war file

2005-04-12 Thread Jonathan Eric Miller
My guess (but, I'm not a Tomcat developer so what do I know! ;-)) is that you can't do it for System.out.println(). However, I did notice that System.setOut() allows you to redirect where standard out goes. However, I'm guessing that that would be for the entire JVM? As of Tomcat 5.5.9 they fix

Specifying logging.properties file via system property doesn't work?

2005-04-11 Thread Jonathan Eric Miller
Until Tomcat 5.5.9 I was specifying my java.util.logging.config.file using a system property set using CATALINA_OPTS like the following. CATALINA_OPTS='-Djava.util.logging.config.file=/opt/jakarta-tomcat-dev/conf/logging.properties -Dorg.apache.commons.logging.Log=org.apache.commons.logging.impl

Re: Redirecting not https to https

2004-11-19 Thread Jonathan Eric Miller
Also, you'll need something like the following in your web.xml. /* CONFIDENTIAL Jon - Original Message - From: "Shapira, Yoav" <[EMAIL PROTECTED]> To: "Tomcat Users List" <[EMAIL PROTECTED]>; "Xeth Waxman" <[EMAIL PROTECTED]> Sent: Friday, November 19, 2004 10:05 AM Subject: RE: Re

Re: Disadvantages to using unpackWARs="false"?

2004-11-18 Thread Jonathan Eric Miller
OK, thanks for the info. Like you mentioned, I was thinking that redeployment would be easier with it set to false. I just wanted to make sure that I wouldn't be incurring a performance hit and the expense of not having to mess around with an extra directory. Thanks. Jon - Original Message

Disadvantages to using unpackWARs="false"?

2004-11-18 Thread Jonathan Eric Miller
Does anyone know if there are disadvantages to setting unpackWARs="false"? What I'm wondering is if it then has to uncompress the .war file everytime a resource is accessed thus causing a performance hit? Jon - To unsubscribe, e

Re: Tomcat 5.5 nightly zip files?

2004-11-17 Thread Jonathan Eric Miller
Thanks! Jon - Original Message - From: "Shapira, Yoav" <[EMAIL PROTECTED]> To: "Tomcat Users List" <[EMAIL PROTECTED]> Sent: Wednesday, November 17, 2004 12:07 PM Subject: RE: Tomcat 5.5 nightly zip files? Hi, Yeah. They're built from CVS HEAD (there's very little purpose to nightlies o

Re: Tomcat 5.5 nightly zip files?

2004-11-17 Thread Jonathan Eric Miller
mcat 5.5 nightly zip files? Hi, The Jakarta binaries download page even gives you the link at the bottom ;) http://cvs.apache.org/builds/jakarta-tomcat-5/nightly/. Nightlies are always at your own risk. Yoav Shapira http://www.yoavshapira.com -Original Message- From: Jonathan Eric Miller [mai

Tomcat 5.5 nightly zip files?

2004-11-17 Thread Jonathan Eric Miller
Anyone know if there are nightly zip files for Tomcat 5.5? Jon - To unsubscribe, e-mail: [EMAIL PROTECTED] For additional commands, e-mail: [EMAIL PROTECTED]

Re: Tomcat 5.5.4, Logging and the death of my friend localhost_log

2004-11-12 Thread Jonathan Eric Miller
Actually, I guess the default isn't that bad for UNIX/Linux anyway. In theory, if you are using J2SE 1.5 with the default log settings and you don't have Log4J installed, INFO level messages and above will get written to the console which gets redirected to catalina.out by catalina.sh. So, inst

Re: Tomcat 5.5.4, Logging and the death of my friend localhost_log

2004-11-11 Thread Jonathan Eric Miller
od at all i agree. And I know there is an exception occurring right now, but it's not being reported into the stdout. where is all the runtime exception stack tracing supposed to go Yoav? that won't be picked up by log4j which is a good point cheers! -Original Message- From

Re: Auto-deploy not working in Tomcat 5.5.4 when .war file has a META-INF/context.xml?

2004-11-11 Thread Jonathan Eric Miller
t; Sent: Thursday, November 11, 2004 1:17 PM Subject: Re: Auto-deploy not working in Tomcat 5.5.4 when .war file has a META-INF/context.xml? On Thu, 11 Nov 2004 11:09:58 -0600, Jonathan Eric Miller <[EMAIL PROTECTED]> wrote: I don't see it at least on the inital bug report page at http:/

Re: Auto-deploy not working in Tomcat 5.5.4 when .war file has a META-INF/context.xml?

2004-11-11 Thread Jonathan Eric Miller
I don't see it at least on the inital bug report page at http://nagoya.apache.org/bugzilla/enter_bug.cgi?product=Tomcat%205 Maybe I need to commit the page first and there's another page... I don't want to submit a report just yet, because I'm still in the process of trying to figure out how the

Re: Tomcat 5.5.4, Logging and the death of my friend localhost_log

2004-11-11 Thread Jonathan Eric Miller
So, exceptions aren't logged by default? Does the new log4j method give you full stack traces, or, is it just one line error messages? If I don't configure log4j, does that mean that exceptions can be occurring and I won't know about it? IMHO, a decent default logging configuration should be pr

Re: Auto-deploy not working in Tomcat 5.5.4 when .war file has a META-INF/context.xml?

2004-11-11 Thread Jonathan Eric Miller
Here's the message without the file attachments since the original message was blocked as spam. I don't see a way to post file attachments to the bug database either... Jon - Original Message - From: "Jonathan Eric Miller" <[EMAIL PROTECTED]> To: "Re

Auto-deploy not working in Tomcat 5.5.4 when .war file has a META-INF/context.xml?

2004-11-10 Thread Jonathan Eric Miller
I have an application which has a META-INF/context.xml file. I'm attempting to have the file auto-redeploy itself everytime I copy an updated the updated .war file to the webapps directory. This worked fine in Tomcat 5.0.25. In Tomcat 5.5.4, it will deploy itself the first time through, but, wh

Re: TC 5.5 - 4 issues (jasper, ROOT, jndi, logging)

2004-09-02 Thread Jonathan Eric Miller
I ran into the same issue with DBCP and JNDI. Jon - Original Message - From: "Allistair Crossley" <[EMAIL PROTECTED]> To: "Tomcat Users List" <[EMAIL PROTECTED]> Sent: Thursday, September 02, 2004 8:32 AM Subject: TC 5.5 - 4 issues (jasper, ROOT, jndi, logging) Hi Guys Decided to give TC

Re:

2004-09-01 Thread Jonathan Eric Miller
. In general, if you copy and paste configuration files across release versions, be careful. Yoav Shapira Millennium Research Informatics -Original Message- From: Jonathan Eric Miller [mailto:[EMAIL PROTECTED] Sent: Wednesday, September 01, 2004 2:37 PM To: Tomcat Users List Subject: R

Re: How do I make my servlet the welcome page

2004-09-01 Thread Jonathan Eric Miller
The problem that I found with doing it this way is that I had a security-constraint on my application and it wasn't being enforced when I tried to do that. So, I created an index page that redirects to the application. Jon - Original Message - From: "QM" <[EMAIL PROTECTED]> To: "Tomcat

Re: symbolic links in webapps

2004-09-01 Thread Jonathan Eric Miller
If I remember correctly, symlinks are disabled by default. I think you can turn them on using an attribute value for an element in server.xml. Jon - Original Message - From: "Philippe Mathieu" <[EMAIL PROTECTED]> To: "Tomcat User List" <[EMAIL PROTECTED]> Sent: Wednesday, September 01, 2

Re:

2004-09-01 Thread Jonathan Eric Miller
configured for the "" path? Yoav Shapira Millennium Research Informatics -Original Message- From: Jonathan Eric Miller [mailto:[EMAIL PROTECTED] Sent: Wednesday, September 01, 2004 2:20 PM To: Tomcat User List Subject: In Tomcat 4.0 and 5.0, I had the following in my server.x

Re: How to configure logs in Tomcat 5.5?

2004-09-01 Thread Jonathan Eric Miller
l. Note that for people who don't care much about logging, System.out/System.err still behave as before, and the ServletContext#log method works without any special configuration. Yoav Shapira Millennium Research Informatics -Original Message- From: Jonathan Eric Miller [mailto:[EMAIL PROT

tomcat-user@jakarta.apache.org

2004-09-01 Thread Jonathan Eric Miller
In Tomcat 4.0 and 5.0, I had the following in my server.xml file. However, if I try to use this in Tomcat 5.5, I receive the following error in catalina.out. Does anyone know if I need to change something to get it to work with Tomcat 5.5, or, is this a bug? Also, is ROOT a special case? I don'

How to configure logs in Tomcat 5.5?

2004-09-01 Thread Jonathan Eric Miller
I noticed in the change log that some changes have been made to the way things are logged in Tomcat 5.5. I was using something like the following in my server.xml previously. However, this no longer works. I'm wondering how to configure the new "commons-logging?" The default server.xml doesn't

Re: Why don't updated unpacked WAR files get reloaded automatically?

2004-05-27 Thread Jonathan Eric Miller
t; your changes. We'd rather be extra careful and require the user to > explicitly redeploy the app via the manager (or whatever mechanism > he/she wants to use). > > Yoav Shapira > Millennium Research Informatics > > > >-Original Message- > >From: Jonat

Why don't updated unpacked WAR files get reloaded automatically?

2004-05-27 Thread Jonathan Eric Miller
I noticed that if you have "unpackWARs" set to false and you update a WAR file, it doesn't reload it. According to the Tomcat documentation at the following link, it only does it for unpacked WAR files. Why? http://jakarta.apache.org/tomcat/tomcat-5.0-doc/config/host.html#Automatic%20Application%

question/problem

2004-05-26 Thread Jonathan Eric Miller
I am trying to configure my application so that everything has to be encrypted. I was able to do that by using the security constraint at the bottom of this message. I've had this working for awhile without a problem. However, now, I want to add an additional restriction. I want to make it so that

Re: Session Timeout and "Direct Reference to login page"

2004-05-24 Thread Jonathan Eric Miller
;[EMAIL PROTECTED]> To: "Tomcat Users List" <[EMAIL PROTECTED]> Sent: Friday, May 21, 2004 7:15 AM Subject: Re: Session Timeout and "Direct Reference to login page" > Jonathan Eric Miller wrote: > > > Yeah, that seems like it would work. I'm wondering if I

SingleSignOn session timeout question

2004-05-20 Thread Jonathan Eric Miller
I'm using "org.apache.catalina.authenticator.SingleSignOn" for single sign on with container-based security. I have a question about session time outs. When the session for a given application times out, if a user attempts to access the application after the session has timed out, the user should

Re: Session Timeout and "Direct Reference to login page"

2004-05-20 Thread Jonathan Eric Miller
e first suggestion? > > 1.) When your user logs in, throw an object in their session. > 2.) In each servlet/jsp (or, better, in a filter), test for the existence of > that object and forward back to the login if it is null. > > Seems pretty straight forward to me. > > > &

Re: Session Timeout and "Direct Reference to login page"

2004-05-20 Thread Jonathan Eric Miller
Original Message - From: "Veniamin Fichin" <[EMAIL PROTECTED]> To: "Tomcat Users List" <[EMAIL PROTECTED]> Sent: Thursday, May 20, 2004 2:59 AM Subject: Re: Session Timeout and "Direct Reference to login page" > Jonathan Eric Miller wrote: > >

Re: Session Timeout and "Direct Reference to login page"

2004-05-19 Thread Jonathan Eric Miller
Renato, Did you ever receive a response to this? I'm having the same problem. My current problem is slightly more complicated though. I have my application protected using container based security, but, I also have single-sign on enabled. So, the user doesn't get redirected back to the login page

Re: Session Timeout and "Direct Reference to login page"

2004-05-19 Thread Jonathan Eric Miller
It's too bad there isn't a element that you can put in web.xml kind of like the element... Jon - Original Message - From: "Jonathan Eric Miller" <[EMAIL PROTECTED]> To: "Tomcat Users List" <[EMAIL PROTECTED]>; <[EMAIL PROTECTED]> S

Re: Session Timeout and "Direct Reference to login page"

2004-05-19 Thread Jonathan Eric Miller
t;[EMAIL PROTECTED]> To: "Tomcat Users List" <[EMAIL PROTECTED]> Sent: Wednesday, May 19, 2004 3:16 PM Subject: Re: Session Timeout and "Direct Reference to login page" > On Wed, May 19, 2004 at 02:58:05PM -0500, Jonathan Eric Miller wrote: > : All I want to do is dete

Re: Configure Apache for running Perl(cgi)

2004-03-18 Thread Jonathan Eric Miller
The reason I'm using it is because I have an application that is a CGI that generates Web server statistics. This is the only application that I'm using CGI for. To run Apache HTTP server would make things unnecessarily complex. Enabling CGI in Tomcat is trivial. i.e. Uncommenting a few lines in a

Re: Configure Apache for running Perl(cgi)

2004-03-18 Thread Jonathan Eric Miller
He said Apache Tomcat in his message. Tomcat supports running CGIs natively in standalone mode without having to use Apache HTTP server. One thing to watch out for is that Tomcat 5.0.16 had a bug in the CGIServlet. This is fixed in 5.0.18, so, be sure to use the latest version of Tomcat 5 if you a

Possible to implement Pubcookie authentication using Tomcat Realm?

2004-02-24 Thread Jonathan Eric Miller
I recently found out about a way to create a single sign-on setup for authentication for Web applications called Pubcookie. The following link has a diagram that shows how it works. If a user hasn't yet authenticated, they are redirected to a separate server that displays a login page. Then, once t

Problem getting JavaBean value

2004-01-21 Thread Jonathan Eric Miller
I'm using jakarta-taglibs-standard-1.1.0-B1 with JSP 2.0 and Tomcat 5.0.16. I have a bean that has the following accessor method. public String getCNetId() { return cNetId; } I'm attempting to get the value in a JSP using the following, but, I'm getting the following error, javax.servlet.Ser

Re: URL path naming question, recommended naming conventions?

2004-01-05 Thread Jonathan Eric Miller
I'm using Tomcat in standalone mode and hence setting the permissions using Tomcat in the web.xml file. Jon - Original Message - From: "Howard Watson" <[EMAIL PROTECTED]> To: <[EMAIL PROTECTED]> Sent: Wednesday, December 31, 2003 3:36 PM Subject: Re: URL path naming question, recommended

Re: URL path naming question, recommended naming conventions?

2003-12-31 Thread Jonathan Eric Miller
OK, thanks. I got it to work using the servlet as the welcome file, but, now I have the problem that I don't know how to protect the servlet when it's accessed as the welcome file. I tried using a / for a security constraint, but, that causes images and a CSS file that I'm using on my login page to

URL path naming question, recommended naming conventions?

2003-12-31 Thread Jonathan Eric Miller
I'm developing an application that uses servlets and JSP. Currently, it is using a Model View Controller type setup where everything is going through a single servlet (I'm not using Struts) which forwards to JSPs that are located in WEB-INF. The path to my application is, https://myserver/myapp/s

Re: CGI not working on Tomcat 5.0.16?

2003-12-16 Thread Jonathan Eric Miller
into problems. Ken -Original Message- From: Jonathan Eric Miller [mailto:[EMAIL PROTECTED] Sent: Tuesday, December 16, 2003 1:04 PM To: Tomcat Users List Subject: Re: CGI not working on Tomcat 5.0.16? Tomcat supports CGI natively. I'm using Tomcat in standalone mode. Jon - Or

Re: CGI not working on Tomcat 5.0.16?

2003-12-16 Thread Jonathan Eric Miller
RE: CGI not working on Tomcat 5.0.16? Just a question, CGI isn“t a Apache server matter? > -- > De: Jonathan Eric Miller[SMTP:[EMAIL PROTECTED] > Responder: Tomcat Users List > Enviada: segunda-feira, 15 de dezembro de 2003 20:52 > Para: Tomcat Users List > Assunto: Re: CGI

Re: CGI not working on Tomcat 5.0.16?

2003-12-15 Thread Jonathan Eric Miller
Subject: RE: CGI not working on Tomcat 5.0.16? > I've noticed that on tomcat 5 the working directory that it execs the > cgi script in is different then it was on tomcat 4. I haven't solved my > problem yet, but I have isolated that to be my problem. > > -gabe > >

CGI not working on Tomcat 5.0.16?

2003-12-15 Thread Jonathan Eric Miller
I've been having problems getting CGI to work with Tomcat 5.0.16. I have it working with Tomcat 4.1. Has anyone else been able to get it to work? I'm receiving the following error in my localhost_log*.txt log even though the file listed is there. Has anyone else had this problem? 2003-12-12 16:46

Re: cgi script not launching in Tomcat 5.0

2003-12-12 Thread Jonathan Eric Miller
I'm having the same exact problem. I think it might be a bug in Tomcat 5 as I have it working no problem in Tomcat 4. For some reason the file name has two sets of "'s. Not sure if that might have something to do with it... Jon - Original Message - From: "Li, William" <[EMAIL PROTECTED]>

Re: Default servlet mapping not working in Tomcat 5.0.16?

2003-12-12 Thread Jonathan Eric Miller
.16? > The welcome file list actually has to point to a servlet mapping. > Here is mine. It works. > > >2296 >2297 >2298 HrpServlet >2299 /HRP >2300 >2301 >2302 >2303 >2304 HRP > 2305 >

Re: Default servlet mapping not working in Tomcat 5.0.16?

2003-12-12 Thread Jonathan Eric Miller
eb.xml. > > 2. Make sure you handle static content (this is what the default servlet > > handles, among other duties). > > > > As for directory listings, read the FAQ. > > > > Yoav Shapira > > Millennium ChemInformatics > > > > >-Original Message

Default servlet mapping not working in Tomcat 5.0.16?

2003-12-12 Thread Jonathan Eric Miller
I'm using Tomcat 5.0.16 and I'm trying to make it so that if a user enters a path like, http://myserver/myapp it runs a default servlet for that path. According the the Servlet 2.4 spec, you can do this by mapping "/" to a servlet. However, for me, it's just printing out a directory listing of the

Re: Slow HTTP upload speed with IE and Tomcat on Solaris (works fine on Linux and Windows)

2003-10-17 Thread Jonathan Eric Miller
7 MBs where as Mozilla was only 3 MBs. Jon - Original Message - From: "Jonathan Eric Miller" <[EMAIL PROTECTED]> To: "Tomcat User List" <[EMAIL PROTECTED]> Sent: Wednesday, October 15, 2003 3:52 PM Subject: Slow HTTP upload speed with IE and Tomcat on Sol

Slow HTTP upload speed with IE and Tomcat on Solaris (works fine on Linux and Windows)

2003-10-15 Thread Jonathan Eric Miller
I'm having a strange problem with regard to HTTP upload speed when using Internet Explorer on Windows with Tomcat on Solaris. If I upload a 10 MB file over a 100 Mbs Ethernet connection, it takes 2 minutes 25 seconds if I use IE (~80 Kbs). If I use Mozilla, it takes 3 seconds (~3 Mbs). If I try the

Re: Tomcat with LDAP

2003-04-02 Thread Jonathan Eric Miller
JNDIRealm is broken and unusable. Jon - Original Message - From: "Karamat Adil IHMD" <[EMAIL PROTECTED]> To: "'Tomcat Users List'" <[EMAIL PROTECTED]> Sent: Wednesday, April 02, 2003 2:08 PM Subject: Tomcat with LDAP > Hello everyone, >Can any one give me an example of a LDIF file t

Re: tomcat 4.1.18, apache 2.0.43, mod_jk 2.0.43

2003-03-21 Thread Jonathan Eric Miller
I'm running in standalone mode and I'm receiving the same error, so, I don't think the problem is with regard to what version of Apache you're running or mod_jk. Jon - Original Message - From: "Ivan F. Martinez" <[EMAIL PROTECTED]> To: "Tomcat Users List" <[EMAIL PROTECTED]> Sent: Friday,

Re: Problems with tomcat 4.0.1 and 4.1.18

2003-03-21 Thread Jonathan Eric Miller
I think I may be having the same problem as well. I'm running Tomcat in standalone mode and I have it configured only for HTTPS. The error message that I'm receiving is. INFO: All threads are busy, waiting. Please increase maxThreads or check the servlet status75 75 This is the second time I've s

Re: Anyone running 4.1.12 with SDK 1.4.1 on Solaris 7?

2002-10-28 Thread Jonathan Eric Miller
Did you set your CATALINA_HOME environment variable to point to the directory you have Tomcat installed in? Jon - Original Message - From: "Shapira, Yoav" <[EMAIL PROTECTED]> To: "Tomcat Users List" <[EMAIL PROTECTED]> Sent: Monday, October 28, 2002 11:12 AM Subject: RE: Anyone running 4.

Re: Authentification LDAP multiple entries

2002-10-14 Thread Jonathan Eric Miller
Don't use cn, use uid. Jon - Original Message - From: "hans albers" <[EMAIL PROTECTED]> To: <[EMAIL PROTECTED]> Sent: Monday, October 14, 2002 4:09 AM Subject: Authentification LDAP multiple entries > Authentification with JNDI-Realm works fine, > but what to do if there are multiple e

Possible to disable session persistence?

2002-10-10 Thread Jonathan Eric Miller
Does anyone know if it is possible to turn off session persistence? I don't have an immediate need to do so, but, I was thinking that it might be a nice option to have while testing an application if you want to make sure all the state is getting cleared out. You could do that by just opening a ne

Re: JNDIRealm and 4.1.10 with iPlanet

2002-09-23 Thread Jonathan Eric Miller
Did you protect the resource that you're trying to access with a security-constraint in your web.xml? Jon - Original Message - From: "Douglas L Stewart" <[EMAIL PROTECTED]> To: <[EMAIL PROTECTED]> Sent: Monday, September 23, 2002 11:31 AM Subject: JNDIRealm and 4.1.10 with iPlanet > I'

javax.servlet.request.cipher_suite and javax.servlet.request.key_size attributes not being set on HTTPS connection?

2002-09-19 Thread Jonathan Eric Miller
It used to be the case that javax.servlet.request.cipher_suite and javax.servlet.request.key_size attributes would be set by Tomcat to something similar to the following for HTTPS connections. I just noticed that this no longer seems to be the case? javax.servlet.request.cipher_suite: SSL_RSA_WIT

Re: mod_webapp and Virtual Hosts

2002-07-09 Thread Jonathan Eric Miller
FYI, something is screwed up with your email application. You have no To field in the headers. Jon - Original Message - From: <[EMAIL PROTECTED]> Sent: Tuesday, July 09, 2002 11:29 AM Subject: mod_webapp and Virtual Hosts > Following the installation instructions, I have successfully c

Re: Tomcat 4.0.3 on Solaris

2002-06-15 Thread Jonathan Eric Miller
If I remember correctly, JAXP is optional if you are using JDK 1.4. I remember having the same problem, but, then I realized that it was optional. I was able to get Tomcat to build without it. Jon - Original Message - From: "Heap, John" <[EMAIL PROTECTED]> To: <[EMAIL PROTECTED]> Sent: F

Re: JNDIRealm authentication

2002-06-12 Thread Jonathan Eric Miller
The value that you have connectionName set to looks invalid. It looks like you have it set to the name of a container rather than to the dn of the admin account that is used to bind to the directory for querying for user passwords and role information. Jon - Original Message - From: "Jos

Re: JNDIRealm authentication

2002-06-12 Thread Jonathan Eric Miller
e introduced if you're using Apache HTTP Server on the front end. Jon - Original Message ----- From: "Jonathan Eric Miller" <[EMAIL PROTECTED]> To: "Tomcat Users List" <[EMAIL PROTECTED]> Sent: Wednesday, June 12, 2002 2:20 PM Subject: Re: JNDIRealm authent

Re: JNDIRealm authentication

2002-06-12 Thread Jonathan Eric Miller
Josh, You also need to put something similar to the following in your web.xml file. i.e. the stuff you put in server.xml, just tells Tomcat where to authenticate. The stuff in web.xml, tells Tomcat what resources are protected and what roles are required in order to access a particular resource.

Re: Question regarding Active Directory/LDAP

2002-06-12 Thread Jonathan Eric Miller
If you want to see what the structure of AD is, run LDIFDE. LDIFDE comes with Windows 2000 Server and will dump the contents of AD to a LDIF file. Jon - Original Message - From: "Chris Shen" <[EMAIL PROTECTED]> To: "Tomcat Users List" <[EMAIL PROTECTED]> Sent: Thursday, June 06, 2002 4:3

Re: LDAP Authentication with Tomcat 4.1.3

2002-06-12 Thread Jonathan Eric Miller
Have a look at these links. There is some new functionality in Tomcat 4.1 that isn't mentioned in the main end-user document yet that is in the second link. Namely, how to get it to bind as a user to do the authentication rather than querying for a password and comparing it. http://jakarta.apache

Re: Re[3]: Roles in JNDIRealms

2002-06-11 Thread Jonathan Eric Miller
ssociated to. > Which objectclass must be these group entries? > groupOfUniqueNames objectclass? group class? Are both > valid? > > > Thanks, > > Cristina > > > --- Jonathan Eric Miller <[EMAIL PROTECTED]> > wrote: > > Jacob, > > > > I&#

Re: JDBC BASIC authentication and SSL

2002-06-11 Thread Jonathan Eric Miller
When you say that you configured SSL to work, do you mean you enabled HTTPS? You may also want to enable SSL for the JDBC connection assuming the database server is on a different host. The problem there is that many databases don't support SSL. It depends on which DBMS your using. If you want the

Re: AW: SSL Certificates from a CA...

2002-06-11 Thread Jonathan Eric Miller
Here's a link to the Tomcat SSL How To document. http://jakarta.apache.org/tomcat/tomcat-4.1-doc/ssl-howto.html This is a link to the keytool documentation in the JDK. http://java.sun.com/j2se/1.4/docs/tooldocs/tools.html Note, it's also now possible to use a PKCS12 keystore. This would be use

Re: Re[2]: Roles in JNDIRealms

2002-06-10 Thread Jonathan Eric Miller
t; > > > Monday, June 10, 2002, 3:18:15 PM, you wrote: > > > > R> Jonathan, > > R> This is sort of off subject, but does your Active > > R> Directory setup work for Authentication?? It > > seems to > > R> me that it wouldn't since there is

Re: Roles in JNDIRealms

2002-06-10 Thread Jonathan Eric Miller
If you are using Tomcat 4.1.3, there are two modes that you can use for checking roles. If you set roleSearch, it will look for search for group objects that contain a list of users for each group. If you set userRoleName, it will get the group information out of the user's entry instead. i.e. you

Tomcat 4.0 nightly build binary downloads broken?

2002-06-07 Thread Jonathan Eric Miller
I found that it looks like the nightly binary builds are broken. As you can see, for some reason the many of the file sizes are only 45 bytes. Also, the .zip file builds are missing. http://jakarta.apache.org/builds/jakarta-tomcat-4.0/nightly/ of /builds/jakarta-tomcat-4.0/nightly Name

GlobalNamingResources element required in Tomcat 4.1.2?

2002-06-04 Thread Jonathan Eric Miller
I noticed that you will receive the following error if you do not have a GlobalNamingResources element in your server.xml file for Tomcat 4.1.2. IMHO, this tag shouldn't be required because sometimes you might not having anything to put in that section. i.e. I want to use JNDIRealm, not the UserDa

Re: [Coyote] Coyote 1.0 Release Candidate 2 available

2002-05-23 Thread Jonathan Eric Miller
Remy, Can you tell me if org.apache.coyote.tomcat4.CoyoteServerSocketFactory when used for SSL supports the keystoreType attribute? As far as I can tell, it doesn't. I'm hoping to be able to use it with a PKCS12 keystore rather than the default JKS keystore. This works fine using the old HTTP con

Re: JNDI/LDAP/JSP Example?

2002-05-20 Thread Jonathan Eric Miller
I have some Java servlet example applications that do this that I can send you if you want. I don't know JSP, so, I don't know if you can easily translate it to JSP or not. I would assume that you can do all the same things using JSP that you can in servlets, just using different syntax? Jon ---

org.apache.coyote.tomcat4.CoyoteServerSocketFactory doesn't support keystoreType attribute?

2002-05-16 Thread Jonathan Eric Miller
This question is probably for Remy. Does the CoyoteServerSocketFactory class that you use with CoyoteConnector to use SSL not support the keystoreType attribute? I tried it out using the following, and it doesn't work. I receive a "Catalina.start: LifecycleException: Protocol handler initializat

Re: CoyoteConnector with SSL no longer works, was Re: [ANNOUNCEMENT] Tomcat 4.0.4 Beta 3 released

2002-05-15 Thread Jonathan Eric Miller
Thanks, but, unless I'm overlooking something the factory is still listed as org.apache.catalina.net.SSLServerSocketFactory (for use with HttpConnector). There is no example for SSL with Coyote in the provided server.xml. Jon - Original Message - From: "Remy Maucherat" <[EMAIL PROTECTED]

CoyoteConnector with SSL no longer works, was Re: [ANNOUNCEMENT] Tomcat 4.0.4 Beta 3 released

2002-05-14 Thread Jonathan Eric Miller
I just noticed that the CoyoteConnector no longer seems to work. I'm using the config listed below for my server.xml. This worked fine with Tomcat 4.0.4b2-01 and Coyote 1.0b5. Now, it just hangs. Jon - Original Message - From: "Remy Ma

Re: [ANNOUCEMENT] Apache Tomcat 4.1.0 Alpha

2002-05-06 Thread Jonathan Eric Miller
quot; <[EMAIL PROTECTED]>; "Jonathan Eric Miller" <[EMAIL PROTECTED]> Sent: Monday, May 06, 2002 1:16 PM Subject: Re: [ANNOUCEMENT] Apache Tomcat 4.1.0 Alpha > Hi Jon, > > I have not used it, so I can't say how well it works but the 4.1 server.xml > and examp

Re: [ANNOUCEMENT] Apache Tomcat 4.1.0 Alpha

2002-05-06 Thread Jonathan Eric Miller
Does anyone know if this release contains the new JNDI Realm code that allows you to authenticate users using LDAP binds instead of querying the directory for the password and comparing? Jon - Original Message - From: "Remy Maucherat" <[EMAIL PROTECTED]> To: "Tomcat Developers List" <[EM

Re: How to enforce SSL???

2002-04-26 Thread Jonathan Eric Miller
I think if you add something similar to the following to the web.xml file for your application, it will make it automatically redirect from HTTP to HTTPS. Tomcat /* CONFIDENTIAL As far as requiring a particular encryption strength, the only way I kno

Re: JNDI Realm with Tomcat 4.0.1 and Netscape LDAP

2002-04-22 Thread Jonathan Eric Miller
I don't know if you noticed, but, the password has to be stored as a hex string rather than a base64 encoded string in the directory in order for it to work. I think there is a patch that is supposed to fix this that I think is supposed to be included when Tomcat 4.1 comes out. Also, there's suppo

Re: JNDI realm against win2000 DC (REPOST SORRY)

2002-04-22 Thread Jonathan Eric Miller
As far as I know, you won't be able to do this until Tomcat 4.1 is released. In the current version of Tomcat, it binds as an administrator and then queries for the user's password and compares it to that which was provided by the user. This comparison takes place on the client-side. i.e. in Tomca

Re: [ANNOUNCEMENT] Tomcat 4.0.4 Beta 2 released

2002-03-27 Thread Jonathan Eric Miller
It is possible to use the Coyote connector for SSL connections as well? Jon - Original Message - From: "Remy Maucherat" <[EMAIL PROTECTED]> To: <[EMAIL PROTECTED]>; <[EMAIL PROTECTED]>; <[EMAIL PROTECTED]> Sent: Tuesday, March 26, 2002 1:34 PM Subject: [ANNOUNCEMENT] Tomcat 4.0.4 Beta 2

Re: Tomcat 4.0.4-b2 available?

2002-03-26 Thread Jonathan Eric Miller
Thanks! Jon - Original Message - From: "Remy Maucherat" <[EMAIL PROTECTED]> To: "Tomcat Users List" <[EMAIL PROTECTED]> Sent: Tuesday, March 26, 2002 1:00 AM Subject: Re: Tomcat 4.0.4-b2 available? > > I noticed that the following directory now exists on the Jakarta Web site. > > > > h

Tomcat 4.0.4-b2 available?

2002-03-25 Thread Jonathan Eric Miller
I noticed that the following directory now exists on the Jakarta Web site. http://jakarta.apache.org/builds/jakarta-tomcat-4.0/release/v4.0.4-b2/bin/ Does this mean that 4.0.4-b2 is out? Or, is that a nightly build? Also, anyone know if this release will contain the JNDIRealm enhancements? I th

Re: JNDIRealm with bind as user functionality

2002-03-19 Thread Jonathan Eric Miller
AIL PROTECTED]> To: "Tomcat Users List" <[EMAIL PROTECTED]>; "Jonathan Eric Miller" <[EMAIL PROTECTED]> Sent: Friday, March 15, 2002 5:14 PM Subject: Re: JNDIRealm with bind as user functionality > > > On Fri, 15 Mar 2002, Jonathan Eric Miller wrote: >

JNDIRealm with bind as user functionality

2002-03-15 Thread Jonathan Eric Miller
Does anyone know if JNDIRealm is going to be fixed up anytime soon so that the bind as user functionality is in there? I know someone had a patch for this. I'm wondering if that patch is going to be integrated into the main distribution. Jon -- To unsubscribe: For

Re: Warp Connector still broken in 4.0.3 on Win platforms...

2002-03-04 Thread Jonathan Eric Miller
According to the announcement, 4.0.3 is really just 4.0.2 with a security patch applied. So, I'm pretty sure any other post 4.0.2 fixes won't be in there. Jon - Original Message - From: "Andrzej Jan Taramina" <[EMAIL PROTECTED]> To: "tomcat Users List" <[EMAIL PROTECTED]> Sent: Sunday, M

Re: Re: Using JNDIRealm with password digesting and Netscape Directory Structure

2002-02-22 Thread Jonathan Eric Miller
cture > > hi > > Has the bind style authentication been implemented?? has anyone tried it?? > > How does it work? I mean when I authenticate using bind style why is the password ignored? I will seach on the web but would appreciate if someone gives me a pointer. > > Thanks&

Bug in the Bug Database?

2002-02-22 Thread Jonathan Eric Miller
There seems to be a bug in the Bug Database as it appears to be down right now. http://nagoya.apache.org/bugzilla/ Jon -- To unsubscribe: For additional commands: Troubles with the list:

Re: Jakarta Tomcat Error Message Information Disclosure Vulnerability?

2002-02-20 Thread Jonathan Eric Miller
re give it away how things are > organized/setup. > > -Original Message- > From: Jonathan Eric Miller [mailto:[EMAIL PROTECTED]] > Sent: Wednesday, February 20, 2002 4:34 PM > To: Tomcat User List > Subject: Jakarta Tomcat Error Message Information Disclosure > Vulnerability? >

Jakarta Tomcat Error Message Information Disclosure Vulnerability?

2002-02-20 Thread Jonathan Eric Miller
Does anyone know if this vulnerability still exists? It says that 4.0.1 suffers from this vulnerability, but, I don't see anything out of the ordinary when I try it on mine. http://online.securityfocus.com/cgi-bin/vulns-item.pl?section=info&id=3199 Jon -- To unsubscribe:

  1   2   3   >