-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Luis (and Mark),
Mark Thomas wrote: | Luis Pascual Forner wrote: |> Thanks Mark, |> |> It's mandatory to list the valid users in tomcat-users.xml? |> I don't know in advance the users. I admit any users that |> have a valid certificate. It's possible? | | Yes, but only at the connector level which probably isn't the degree of | control you want. | | http://securityfilter.sourceforge.net/ may help Sorry, but there's not yet support in sf for CLIENT-CERT authentication. :( You could accomplish this with a hand-rolled Filter, though. - -chris -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.9 (MingW32) Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org iEYEARECAAYFAkg8zbQACgkQ9CaO5/Lv0PAbHwCgkv+c6W8ksDaLO93howMhobb9 iIQAn0QRt1E7tiDpodOrtNCyouEU73dR =yZw6 -----END PGP SIGNATURE----- --------------------------------------------------------------------- To start a new topic, e-mail: users@tomcat.apache.org To unsubscribe, e-mail: [EMAIL PROTECTED] For additional commands, e-mail: [EMAIL PROTECTED]