RE: Issue with SSL connector in tomcat 10.0.23

2022-09-05 Thread Saicharan.Burle
Thanks Thomas, Now that we don't see the error but seeing one warning message for below: WARNING [main] org.apache.tomcat.util.digester.SetPropertiesRule.begin Match [Server/Service/Connector] failed to set property [clientAuth] to [false] I don't find any equivalent attribute for clientAuth in

Issue with SSL connector in tomcat 10.0.23

2022-09-05 Thread Saicharan.Burle
Hi Team, We are facing issues with the Tomcat 10.0.23 version while starting as it's not accepting few of the SSL parameters. PFB error message 05-Sep-2022 04:51:01.144 SEVERE [main] org.apache.catalina.util.LifecycleBase.handleSubClassException Failed to initialize component [Connector[HTTP/1

RE: QID 38863 - Cryptographically Weak Key Exchange Size

2022-07-21 Thread Saicharan.Burle
Hi Chriss Yeah kind of theoretical question. Recently a new Qualys QID vulnerability was released, QID: 38863 - Cryptographically Weak Key Exchange Size, which deals with weak cipher key exchange key values. So just checking if there is a way to specify a key size for the exchange? Thanks, Sai

QID 38863 - Cryptographically Weak Key Exchange Size

2022-07-18 Thread Saicharan.Burle
Hi All, A new vulnerability has surfaced regarding TLS and Key Exchange agreement (more specifically the key size.) "The SSL/TLS server supports key exchanges that are cryptographically weaker than recommended. Key exchanges should provide at least 224 bits of security, which translates to a m

RE: Need to retain session in server (Tomcat Apache) once user log in to till log off.

2022-03-02 Thread Saicharan.Burle
Can you brief in detail, Can you send the sample configuration? Thanks, Saicharan Burle -Original Message- From: sundeep kumar Sent: Wednesday, March 2, 2022 6:16 PM To: Tomcat Users List Subject: Re: Need to retain session in server (Tomcat Apache) once user log in to till log off.

Need to retain session in server (Tomcat Apache) once user log in to till log off.

2022-03-02 Thread Saicharan.Burle
Hi Team, Can you assist on how to retain session in server (Tomcat Apache) once user log in to till log off? we have two node instances half part of log is coming in one instance and other logs are coming in another instance for same user. Regards, Saicharan Burle CTO | Middleware Product Eng