Re: Trouble passing through backslash in URL path

2025-01-24 Thread Maxim Solodovnik
Chris, from mobile (sorry for typos ;) On Sat, Jan 25, 2025, 05:35 Christopher Schultz < ch...@christopherschultz.net> wrote: > Maxim, > > On 1/23/25 9:31 PM, Maxim Solodovnik wrote: > > from mobile (sorry for typos ;) > > > > > > On Thu, Jan 23, 2025, 23:00 James Matlik wrote: > > > >> It wor

Re: Trouble passing through backslash in URL path

2025-01-24 Thread Christopher Schultz
Maxim, On 1/23/25 9:31 PM, Maxim Solodovnik wrote: from mobile (sorry for typos ;) On Thu, Jan 23, 2025, 23:00 James Matlik wrote: It works! I've been able to test with a customer name of: ÀËÌÑàëíñøü / \ Ѐӿ 中さ 😀 customer This covers - Latin-1 Supplement characters are 1 byte: ÀËÌÑàëíñøü

Re: Openssl Connector configuration for Dynamic Client Authorization does not work.

2025-01-24 Thread Christopher Schultz
Jon, On 1/23/25 1:17 PM, Mcalexander, Jon J. wrote: From: Christopher Schultz Sent: Wednesday, January 22, 2025 11:19 AM To: users@tomcat.apache.org Subject: Re: Openssl Connector configuration for Dynamic Client Authorization does not work. > There is also Vault for Tomcat[2], which I have n

Re: Sporadic NPEs from CoyoteOutputStream and their surprising effect

2025-01-24 Thread Michael
On Thu, Jan 23, 2025 at 5:30 PM Mark Thomas wrote: > > In the case of the unit test, it was a client disconnect during async > processing that triggered the issue. That sounds a lot like the situation we have seen. > It would be worth testing with a 10.1.x build if you can. You can either > bui

Re: Tomcat 10 usage and necessity of --add-opens

2025-01-24 Thread Mark Thomas
On 24/01/2025 09:45, anand raj wrote: Hi all, is memory leak detection not optional ? Memory leak prevention and detection is optional but enabled by default. Also does adding --add-opens pose any security risk or concern ? That would be for you to judge given your environment. Mark On

Re: Trouble passing through backslash in URL path

2025-01-24 Thread Mark Thomas
On 23/01/2025 15:57, James Matlik wrote: It works! I've been able to test with a customer name of: ÀËÌÑàëíñøü / \ Ѐӿ 中さ 😀 customer This covers - Latin-1 Supplement characters are 1 byte: ÀËÌÑàëíñøü - The / and \ slash characters are ASCII, but are encoded due to special meaning in a URL -

Re: Tomcat 10 usage and necessity of --add-opens

2025-01-24 Thread anand raj
Hi all, is memory leak detection not optional ? Also does adding --add-opens pose any security risk or concern ? On Thu, 23 Jan, 2025, 8:25 pm Mark Thomas, wrote: > On 23/01/2025 14:42, anand raj wrote: > > Hi all, > > > > In Tomcat 10 there is --add-opens added default and does this mean Tomcat