Re: Security Vulnerability -Default files

2021-01-21 Thread Nitin Kadam
You may also be able to modify the installation settings of the application > using Add or Remove Programs in Windows Control Panel to remove the example > applications if you'd prefer that approach instead of #1 above, but that > might require reinstalling Tomcat again. > > Best

Re: Security Vulnerability -Default files

2021-01-21 Thread Nitin Kadam
wrote: > How do you run and support a server technology you know nothing about? > Someone must have built it, installed it, and support it. > > On 22/1/21, 1:25 am, "Nitin Kadam" wrote: > > Hi Team, > > The internal security team reported below

Security Vulnerability -Default files

2021-01-21 Thread Nitin Kadam
OWASP instructions to replace or modify the default error page." this is fiding from the Nessus tool, It would be great if someone helps with steps to resolve. APache tomcat version: 8.5.38 Operating system: Windows Server 2012 R2 -- Regards Nitin Kadam (9967688959)

How to Set Content Security Policy headers in Tomcat 8.5.x

2020-09-09 Thread Nitin Kadam
screenshot from securityheaders.com [image: image.png] -- Regards Nitin Kadam

Apache Tomcat AJP File Inclusion Vulnerability (unauthenticated check)

2020-03-06 Thread Nitin Kadam
Hello Team, We received vulnerability alert from Security team for "Apache Tomcat AJP File Inclusion Vulnerability (unauthenticated check)" and for remediation they suggested to updated tomcat with latest version. Can you please help to resolve same without upgrading the existing version i.e tom

Tomcat 8.5 disabling port 80 listening

2020-01-29 Thread Nitin Kadam
80. so can we disable (comment ) port 80 connector from server.xml which will only allow access to the portal with Https. >From : To : -- Regards Nitin Kadam

Re: Content Security policy for Tomcat 8.5

2019-10-04 Thread Nitin Kadam
AM Christopher Schultz < ch...@christopherschultz.net> wrote: > -BEGIN PGP SIGNED MESSAGE- > Hash: SHA256 > > Nitin, > > On 10/3/19 09:54, Nitin Kadam wrote: > > Hell All, > > > > Internal security team recommended to set *Content security policy* >

Content Security policy for Tomcat 8.5

2019-10-03 Thread Nitin Kadam
Hell All, Internal security team recommended to set *Content security policy* header for Web server as same is not complaint with security standard. can you please help me setting CSP filters for my Tomcat application hosted on windows server. -- Regards Nitin Kadam

Re: SSL Certificate Renewal

2019-06-18 Thread Nitin Kadam
com> wrote: > Nitin, > > On 13.6.2019. 07.37, Nitin Kadam wrote: > > I have apache tomcat server running with publicly signed SSL certificate > > configured in server.xml, the same certificate is expiring in next week, > I > > need steps to the to renew of same. > >

SSL Certificate Renewal

2019-06-12 Thread Nitin Kadam
. How to import the new. cert & intermediate certificate chain in .jks format 3. what about keystore & current key alias kindly guide me, as I will be performing same first time. -- Regards Nitin Kadam

Apache 2.4.39 update for Ubuntu 14.04

2019-05-13 Thread Nitin Kadam
: 2.4.33-1+ubuntu14.04.1+deb.sury.org <http://deb.sury.org>+1* * Candidate: 2.4.33-1+ubuntu14.04.1+deb.sury.org <http://deb.sury.org>+1* * Version table:* * *** 2.4.33-1+ubuntu14.04.1+deb.sury.org <http://deb.sury.org>+1 0* *100 /var/lib/dpkg/status* -- Regards Nitin Kadam

Re: [OT] Tomcat Apache 7.0.79 upgrade to Latest version

2019-03-07 Thread Nitin Kadam
Hello Mark, Thanks for your suggestion it's work like charm. On Thu, Mar 7, 2019, 6:13 PM Mark Thomas wrote: > On 07/03/2019 11:24, Nitin Kadam wrote: > > > > > Root Causejava.lang.TypeNotPresentException: > > Type javax.persistence.PersistenceUnit not present &

Re: [OT] Tomcat Apache 7.0.79 upgrade to Latest version

2019-03-07 Thread Nitin Kadam
lp out with. > > Good luck and again .. welcome to Tomcat, > > John > > > On 2/21/19, Nitin Kadam wrote: > > Hello , > > > > Thanks for the reply. > > Yes having the plan to remediate same on weekend, ALready informed them > > about Challenge

Re: Http insecure headers

2019-02-27 Thread Nitin Kadam
16:34, schrieb Nitin Kadam: > > > Hello Team, > > > > I have added below given filter and restarted tomcat service still it > shows Cache Control as private. > > Please help me on same. > > Pictures are stripped off the mailing list. so better send us text lo

Re: Http insecure headers

2019-02-27 Thread Nitin Kadam
Hello Team, I have added below given filter and restarted tomcat service still it shows Cache Control as private. Please help me on same. [image: image.png] On Wed, Feb 27, 2019 at 2:54 PM logo wrote: > Hi Nitin, > > Am 27.02.2019 10:11, schrieb Nitin Kadam: > > Sorry for

Re: Http insecure headers

2019-02-27 Thread Nitin Kadam
tin, > > Am 27.02.2019 08:52, schrieb Nitin Kadam: > > Hello, > > > > > > > > How can i change “Cache Control -private: to “Cache-Control: nostore” > > > > i searched and found that need to add express filters in web config but > > not > > sure

Re: Http insecure headers

2019-02-26 Thread Nitin Kadam
eat-sheet/ > > > Peter > > > Am 19.02.2019 um 19:13 schrieb Nitin Kadam : > > > > Hello Team > > > > Need help to enable below security headers in Apache tomcat 7.0.79 > > Operating system is windows 2012 R2 > > > > 1. Content security headers > > 2. HSTS header > > > > Regards > > Nitin > -- Regards Nitin Kadam (9967688959)

Re: [OT] Tomcat Apache 7.0.79 upgrade to Latest version

2019-02-21 Thread Nitin Kadam
omputing resources to your project? > > On 2/21/19, Nitin Kadam wrote: > > FOr backup - I will be taking Snapshot backup before doing the upgrade > but > > also going to take folder backup from C: programme Files /Apache Tomcat > > folder. > > > > I am

Re: [OT] Tomcat Apache 7.0.79 upgrade to Latest version

2019-02-21 Thread Nitin Kadam
#x27;ll be good for a few years on > >> that. > >> > >> Stretch has OpenJDK 8 packages. Current version is 1.8.0_181. > >> > >> Jessie looks like it only has OpenJDK 7 packages. I didn't check > >> the backports. > >> > >>

Re: Tomcat Apache 7.0.79 upgrade to Latest version

2019-02-20 Thread Nitin Kadam
tion is actually quite good. > > Olaf > > > > --------- > To unsubscribe, e-mail: users-unsubscr...@tomcat.apache.org > For additional commands, e-mail: users-h...@tomcat.apache.org > > -- Regards Nitin Kadam (9967688959)

Re: Tomcat Apache 7.0.79 upgrade to Latest version

2019-02-20 Thread Nitin Kadam
Thanks John for reply.. is there any documentation walkthrough for this upgrade available? i am new to Tomcat and doing this 1st time, It will be great help if anyone provide same. On Wed, Feb 20, 2019 at 6:49 PM Olaf Kock wrote: > > On 20.02.19 13:57, Nitin Kadam wrote: > >

Tomcat Apache 7.0.79 upgrade to Latest version

2019-02-20 Thread Nitin Kadam
vulnerability detected by Qualys scanner. -- Regards Nitin Kadam

Http insecure headers

2019-02-19 Thread Nitin Kadam
Hello Team Need help to enable below security headers in Apache tomcat 7.0.79 Operating system is windows 2012 R2 1. Content security headers 2. HSTS header Regards Nitin