>
> If you are in a session, the authenticated principal is actually cached (in a
> private variable inside the Session object).  If you are not in a session, Catalina
> has no choice but to authenticate you every time, because it has no way to know
> that the second request came from the same person or not.
>

I haven't put the session-handling code in my servlet yet, so there isn't one!
Thanks, Craig.

regards,
kd

Reply via email to