> -----Original Message----- > From: Mark Thomas [mailto:ma...@apache.org] > Sent: Monday, February 21, 2011 17:26 > To: Tomcat Users List > Subject: Re: Secure AJP over ssl > > On 21/02/2011 22:19, Jason Pyeron wrote: > >> -----Original Message----- > >> From: Mark Thomas > >> Sent: Monday, February 21, 2011 17:15 > >> To: Tomcat Users List > >> Subject: Re: Secure AJP over ssl > >> > >> On 21/02/2011 21:31, Jason Pyeron wrote: > >>> Does (or could) tomcat 5.5 support encrypted AJP? > >> > >> No. > >> > >>> Would I be best off using stunnel? > >> > >> Also, no. > >> > >> Use mod_proxy_http and proxy over https. > > > > Then we would loose the is_secure handling of AJP, as well as the > > client certificates of the web application clients. That is the > > purpose of mod_proxy_ajp, among others. > > No you wouldn't. That all works (with a little more > configuration) with mod_proxy_http. >
Where are the docs for certificate chaining with mod_proxy? I have not found any. -- -=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=- - - - Jason Pyeron PD Inc. http://www.pdinc.us - - Principal Consultant 10 West 24th Street #100 - - +1 (443) 269-1555 x333 Baltimore, Maryland 21218 - - - -=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=- This message is copyright PD Inc, subject to license 20080407P00. --------------------------------------------------------------------- To unsubscribe, e-mail: users-unsubscr...@tomcat.apache.org For additional commands, e-mail: users-h...@tomcat.apache.org