Hello,

The following is not preventing me from accessing the associated servlet by 
plain HTTP. 

<user-data-constraint>
   <transport-guarantee>CONFIDENTIAL</transport-guarantee>
</user-data-constraint>

I was hopping that this would make only https available for this web applicaton 
(which by the way, is working). Am i interpreting the meaning of this flag 
wrongly or there's something else that needs to be activated to prevent a plain 
http view of the servlet ?

I'm using jboss-4.0.1sp1.

Many thanks in advance


View the original post : 
http://www.jboss.org/index.html?module=bb&op=viewtopic&p=3879907#3879907

Reply to the post : 
http://www.jboss.org/index.html?module=bb&op=posting&mode=reply&p=3879907


-------------------------------------------------------
This SF.Net email is sponsored by Yahoo.
Introducing Yahoo! Search Developer Network - Create apps using Yahoo!
Search APIs Find out how you can build Yahoo! directly into your own
Applications - visit http://developer.yahoo.net/?fr=offad-ysdn-ostg-q22005
_______________________________________________
JBoss-user mailing list
JBoss-user@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/jboss-user

Reply via email to