I am currently securing my webapp with web authentication via this code in
web.xml:

   <security-constraint>
      <web-resource-collection>
         <web-resource-name>
             Administration Interface
         </web-resource-name>
         <url-pattern>/*</url-pattern>
         <http-method>DELETE</http-method>
         <http-method>GET</http-method>
         <http-method>POST</http-method>
         <http-method>PUT</http-method>
      </web-resource-collection>
      <auth-constraint>
        <role-name>admin</role-name>
      </auth-constraint>
   </security-constraint>

   <login-config>
      <auth-method>BASIC</auth-method>
      <realm-name>Restricted Access: Administration</realm-name>
   </login-config>

   <security-role>
     <description>System Administrators</description>
     <role-name>admin</role-name>
   </security-role>

</web-app>

But I wish to be able to allow 1 ip to access this web-app without logging
in, because the monitoring application server cannot be set to automatically
log in using a username and password.
-- 
View this message in context: 
http://www.nabble.com/Setting-up-web-authentication-login-for-a-webapp%2C-but-with-an-exception-for-1-ip-address--tp22985772p22985772.html
Sent from the Tomcat - User mailing list archive at Nabble.com.


---------------------------------------------------------------------
To unsubscribe, e-mail: users-unsubscr...@tomcat.apache.org
For additional commands, e-mail: users-h...@tomcat.apache.org

Reply via email to