Re: container-managed security and struts

2005-10-12 Thread Max Cooper
My memory of all this stuff is a bit foggy, and some of this is just plain speculative, so this post is sort of general (and maybe even wrong in some spots ;-) -- but I hope it might have some value in guiding you toward a solution... Some browsers (somewhat correctly, though somewhat annoyingly)

Re: container-managed security and struts

2005-10-12 Thread Adam Hardy
Dave Newton on 12/10/05 23:22, wrote: Adam Hardy wrote: I tried this 18 months ago and if my memory serves me well, in tomcat 5, if I switch the request back out of SSL with a redirect or similar, I can no longer see the SSL session (and am effectively not logged in anymore). Is there an ea

Re: container-managed security and struts

2005-10-12 Thread Dave Newton
Adam Hardy wrote: I tried this 18 months ago and if my memory serves me well, in tomcat 5, if I switch the request back out of SSL with a redirect or similar, I can no longer see the SSL session (and am effectively not logged in anymore). Is there an easy way around this? A javascript encryp