-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Martin,

Martin Gainty wrote:
| ..I'll ask the dumb question..what is a drive-by login

Sorry for the colloquialism. By "drive-by" login, I mean that the user
was presented with a login page that was not served by Tomcat as a
result of a request for a protected resource (which is the only use case
specified by the servlet specification).

A good example is a login form on your company's home page that posts
directly to j_security_check in your web application. This is not
possible using any unmodified version of Tomcat.

Securityfilter, on the other hand, does allow this kind of login.

- -chris
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.9 (MingW32)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iEYEARECAAYFAkihlokACgkQ9CaO5/Lv0PCz3QCgsIY+QsnR5hiV8lHiZHaPWmlx
3ZcAoIaWsFLIjy0qLeFfWsYpA8Tcr3j5
=2ryn
-----END PGP SIGNATURE-----

---------------------------------------------------------------------
To start a new topic, e-mail: users@tomcat.apache.org
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]

Reply via email to