Re: Tomcat access log reveals hack attempt: "HEAD /manager/html HTTP/1.0" 404

2013-04-20 Thread Howard W. Smith, Jr.
On Sat, Apr 20, 2013 at 7:22 AM, André Warnier wrote: > > 5) if the scheme works, and it does the effect of making this type of > server-scanning uneconomical, bot developers will look for other ways to > find vulnerable targets. > IMHO, I don't see why bots will get 'turned off' by having to wa

Re: Tomcat access log reveals hack attempt: "HEAD /manager/html HTTP/1.0" 404

2013-04-20 Thread chris derham
> Let me just summarise my arguments then : > 1) These scans are a burden for all webservers, not just for the vulnerable > ones. Whether we want to or not, we currently all have to invest resources > into countering (or simply responding to) these scans. Obviously, just > ignoring them doesn't s

JSTL XML Basic Question

2013-04-20 Thread Jerry Malcolm
I have been searching for several hours for a basic JSTL answer with no luck. From what I can tell, JSTL is under the umbrella of Tomcat. Hopefully someone can help me out. I simply want to use an existing already-parsed DOM (org.w3c.dom.Document variable) with JSTL XML tags. In other words, I w

Re: Tomcat access log reveals hack attempt: "HEAD /manager/html HTTP/1.0" 404

2013-04-20 Thread David Kerber
On 4/20/2013 7:29 AM, André Warnier wrote: ... Addendum : actually, as far as 4xx codes go, a bit more discrimination is needed. A 401 response (Auth required) for example, should not be slowed down, as it is part of a normal authentication cycle. There may be others like that. Well, Java SE

Re: Tomcat access log reveals hack attempt: "HEAD /manager/html HTTP/1.0" 404

2013-04-20 Thread André Warnier
André Warnier wrote: Mark H. Wood wrote: On Wed, Apr 17, 2013 at 01:24:04PM -0500, Caldarale, Charles R wrote: From: Leo Donahue - RDSA IT [mailto:leodona...@mail.maricopa.gov] Subject: RE: Tomcat access log reveals hack attempt: "HEAD /manager/html HTTP/1.0" 404 So you are saying it could be

Re: Tomcat access log reveals hack attempt: "HEAD /manager/html HTTP/1.0" 404

2013-04-20 Thread André Warnier
Mark H. Wood wrote: On Wed, Apr 17, 2013 at 01:45:22PM -0400, Christopher Schultz wrote: -BEGIN PGP SIGNED MESSAGE- Hash: SHA256 André, On 4/17/13 1:27 PM, André Warnier wrote: Leo Donahue - RDSA IT wrote: -Original Message- From: André Warnier [mailto:a...@ice-sa.com] Subjec

Re: Tomcat access log reveals hack attempt: "HEAD /manager/html HTTP/1.0" 404

2013-04-20 Thread André Warnier
Mark H. Wood wrote: On Wed, Apr 17, 2013 at 01:24:04PM -0500, Caldarale, Charles R wrote: From: Leo Donahue - RDSA IT [mailto:leodona...@mail.maricopa.gov] Subject: RE: Tomcat access log reveals hack attempt: "HEAD /manager/html HTTP/1.0" 404 So you are saying it could be possible to know in adv