hi Krist, indeed enabling ssl on front-end solved the problem. thx
--- On Mon, 21/4/08, Krist van Besien <[EMAIL PROTECTED]> wrote: > From: Krist van Besien <[EMAIL PROTECTED]> > Subject: Re: [EMAIL PROTECTED] apache does not preserve user session of tomcat > To: users@httpd.apache.org, [EMAIL PROTECTED] > Date: Monday, 21 April, 2008, 8:57 PM > On Mon, Apr 21, 2008 at 6:26 PM, Melanie Pfefer > <[EMAIL PROTECTED]> wrote: > > or should I install ssl on apache? this way, the > secure cookie will go to ssl channel also. Will it solve > the problem? > > Ofcourse you can configure your apache server to use ssl. > This will > probably solve your problem. But I thought that you needed > to convert > http to https for some reason. > > Normally one would run the tomcat server in http only, and > leave https > entirely to the apache server. This is a lot easier to > configure. > > Krist > > > -- > [EMAIL PROTECTED] > [EMAIL PROTECTED] > Bremgarten b. Bern, Switzerland > -- > A: It reverses the normal flow of conversation. > Q: What's wrong with top-posting? > A: Top-posting. > Q: What's the biggest scourge on plain text email > discussions? > > --------------------------------------------------------------------- > The official User-To-User support forum of the Apache HTTP > Server Project. > See <URL:http://httpd.apache.org/userslist.html> for > more info. > To unsubscribe, e-mail: [EMAIL PROTECTED] > " from the digest: > [EMAIL PROTECTED] > For additional commands, e-mail: > [EMAIL PROTECTED] __________________________________________________________ Sent from Yahoo! Mail. A Smarter Email http://uk.docs.yahoo.com/nowyoucan.html --------------------------------------------------------------------- The official User-To-User support forum of the Apache HTTP Server Project. See <URL:http://httpd.apache.org/userslist.html> for more info. To unsubscribe, e-mail: [EMAIL PROTECTED] " from the digest: [EMAIL PROTECTED] For additional commands, e-mail: [EMAIL PROTECTED]