> -----Original Message-----
> From: Mark Thomas [mailto:ma...@apache.org] 
> Sent: Monday, February 21, 2011 17:26
> To: Tomcat Users List
> Subject: Re: Secure AJP over ssl
> 
> On 21/02/2011 22:19, Jason Pyeron wrote:
> >> -----Original Message-----
> >> From: Mark Thomas
> >> Sent: Monday, February 21, 2011 17:15
> >> To: Tomcat Users List
> >> Subject: Re: Secure AJP over ssl
> >>
> >> On 21/02/2011 21:31, Jason Pyeron wrote:
> >>> Does (or could) tomcat 5.5 support encrypted AJP?
> >>
> >> No.
> >>
> >>> Would I be best off using stunnel?
> >>
> >> Also, no.
> >>
> >> Use mod_proxy_http and proxy over https.
> > 
> > Then we would loose the is_secure handling of AJP, as well as the 
> > client certificates of the web application clients. That is the 
> > purpose of mod_proxy_ajp, among others.
> 
> No you wouldn't. That all works (with a little more 
> configuration) with mod_proxy_http.
> 

Where are the docs for certificate chaining with mod_proxy? I have not found
any.

--
-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-
-                                                               -
- Jason Pyeron                      PD Inc. http://www.pdinc.us -
- Principal Consultant              10 West 24th Street #100    -
- +1 (443) 269-1555 x333            Baltimore, Maryland 21218   -
-                                                               -
-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-
This message is copyright PD Inc, subject to license 20080407P00.



---------------------------------------------------------------------
To unsubscribe, e-mail: users-unsubscr...@tomcat.apache.org
For additional commands, e-mail: users-h...@tomcat.apache.org

Reply via email to