Tomas Hulek wrote: > The default Tomcat installation is prone to session hijacking. I would > appreciate help how to fix it.
This is a more general http problem with a well known solution. Do everything over https. Mark --------------------------------------------------------------------- To start a new topic, e-mail: users@tomcat.apache.org To unsubscribe, e-mail: [EMAIL PROTECTED] For additional commands, e-mail: [EMAIL PROTECTED]