Bug report for Tomcat Native [2016/03/06]

2016-03-05 Thread bugzilla
+---+ | Bugzilla Bug ID | | +-+ | | Status: UNC=Unconfirmed NEW=New ASS=Assigned

Bug report for Tomcat 7 [2016/03/06]

2016-03-05 Thread bugzilla
+---+ | Bugzilla Bug ID | | +-+ | | Status: UNC=Unconfirmed NEW=New ASS=Assigned

Bug report for Tomcat 9 [2016/03/06]

2016-03-05 Thread bugzilla
+---+ | Bugzilla Bug ID | | +-+ | | Status: UNC=Unconfirmed NEW=New ASS=Assigned

Bug report for Taglibs [2016/03/06]

2016-03-05 Thread bugzilla
+---+ | Bugzilla Bug ID | | +-+ | | Status: UNC=Unconfirmed NEW=New ASS=Assigned

Bug report for Tomcat 8 [2016/03/06]

2016-03-05 Thread bugzilla
+---+ | Bugzilla Bug ID | | +-+ | | Status: UNC=Unconfirmed NEW=New ASS=Assigned

Bug report for Tomcat Modules [2016/03/06]

2016-03-05 Thread bugzilla
+---+ | Bugzilla Bug ID | | +-+ | | Status: UNC=Unconfirmed NEW=New ASS=Assigned

Bug report for Tomcat 6 [2016/03/06]

2016-03-05 Thread bugzilla
+---+ | Bugzilla Bug ID | | +-+ | | Status: UNC=Unconfirmed NEW=New ASS=Assigned

Bug report for Tomcat Connectors [2016/03/06]

2016-03-05 Thread bugzilla
+---+ | Bugzilla Bug ID | | +-+ | | Status: UNC=Unconfirmed NEW=New ASS=Assigned

[GUMP@vmgump]: Project tomcat-tc7.0.x-test-apr (in module tomcat-7.0.x) failed

2016-03-05 Thread Bill Barker
-20160305.jar -Dtomcat-dbcp-src.jar=/srv/gump/public/workspace/tomcat-7.0.x/tomcat-deps/tomcat-dbcp-src.jar -Dtomcat-dbcp.home=/srv/gump/public/workspace/tomcat-7.0.x/tomcat-deps -Dtest.excludePerformance=true -Dhamcrest.jar=/srv/gump/packages/hamcrest/hamcrest-core-1.3.jar -Dcommons-dbcp.home=/srv

[GUMP@vmgump]: Project tomcat-trunk-test-apr (in module tomcat-trunk) failed

2016-03-05 Thread Bill Barker
/commons-daemon-20160305-native-src.tar.gz -Dexamples.sources.skip=true -Dbase.path=/srv/gump/public/workspace/tomcat-trunk/tomcat-build-libs -Djdt.jar=/srv/gump/packages/eclipse/plugins/R-4.5-201506032000/ecj-4.5.jar -Dtest.apr.loc=/srv/gump/public/workspace/tomcat-native-trunk/dest-20160305/lib

svn commit: r1733765 - in /tomcat/tc7.0.x/trunk: ./ java/org/apache/catalina/realm/JNDIRealm.java

2016-03-05 Thread fschumacher
Author: fschumacher Date: Sat Mar 5 20:55:35 2016 New Revision: 1733765 URL: http://svn.apache.org/viewvc?rev=1733765=rev Log: Remove parentheses, since return is not a function. Merge r1733764 from /tomcat/tc8.0.x/trunk (merged r1733763 from /tomcat/trunk) Modified: tomcat/tc7.0.x/trunk/

svn commit: r1733764 - in /tomcat/tc8.0.x/trunk: ./ java/org/apache/catalina/realm/JNDIRealm.java

2016-03-05 Thread fschumacher
Author: fschumacher Date: Sat Mar 5 20:52:15 2016 New Revision: 1733764 URL: http://svn.apache.org/viewvc?rev=1733764=rev Log: Remove parentheses, since return is not a function. Merge r1733763 from /tomcat/trunk Modified: tomcat/tc8.0.x/trunk/ (props changed)

svn commit: r1733763 - /tomcat/trunk/java/org/apache/catalina/realm/JNDIRealm.java

2016-03-05 Thread fschumacher
Author: fschumacher Date: Sat Mar 5 20:50:52 2016 New Revision: 1733763 URL: http://svn.apache.org/viewvc?rev=1733763=rev Log: Remove parentheses, since return is not a function. Modified: tomcat/trunk/java/org/apache/catalina/realm/JNDIRealm.java Modified:

svn commit: r1733762 - in /tomcat/tc8.0.x/trunk: ./ java/org/apache/catalina/realm/JNDIRealm.java

2016-03-05 Thread fschumacher
Author: fschumacher Date: Sat Mar 5 20:46:07 2016 New Revision: 1733762 URL: http://svn.apache.org/viewvc?rev=1733762=rev Log: Correct typo Merge r1733749 from /tomcat/trunk Modified: tomcat/tc8.0.x/trunk/ (props changed)

svn commit: r1733760 [1/2] - in /tomcat/tc8.0.x/trunk: ./ java/org/apache/catalina/mbeans/ java/org/apache/catalina/realm/ java/org/apache/catalina/security/

2016-03-05 Thread fschumacher
Author: fschumacher Date: Sat Mar 5 20:43:54 2016 New Revision: 1733760 URL: http://svn.apache.org/viewvc?rev=1733760=rev Log: Javadoc fixes. Merge r1724232 from /tomcat/trunk Modified: tomcat/tc8.0.x/trunk/ (props changed)

svn commit: r1733760 [2/2] - in /tomcat/tc8.0.x/trunk: ./ java/org/apache/catalina/mbeans/ java/org/apache/catalina/realm/ java/org/apache/catalina/security/

2016-03-05 Thread fschumacher
Modified: tomcat/tc8.0.x/trunk/java/org/apache/catalina/realm/MemoryRealm.java URL: http://svn.apache.org/viewvc/tomcat/tc8.0.x/trunk/java/org/apache/catalina/realm/MemoryRealm.java?rev=1733760=1733759=1733760=diff == ---

[GUMP@vmgump]: Project tomcat-trunk-test-nio2 (in module tomcat-trunk) failed

2016-03-05 Thread Bill Barker
/dist/bin/commons-daemon-20160305-native-src.tar.gz -Dexamples.sources.skip=true -Dbase.path=/srv/gump/public/workspace/tomcat-trunk/tomcat-build-libs -Djdt.jar=/srv/gump/packages/eclipse/plugins/R-4.5-201506032000/ecj-4.5.jar -Dtest.relaxTiming=true -Dcommons-daemon.jar=/srv/gump/public/workspace

Re: [VOTE] Release Apache Tomcat Native 1.2.5

2016-03-05 Thread Rainer Jung
Am 05.03.2016 um 19:54 schrieb Rainer Jung: Am 05.03.2016 um 19:18 schrieb Mark Thomas: On 05/03/2016 09:23, Rainer Jung wrote: Am 02.03.2016 um 14:43 schrieb Mark Thomas: Version 1.2.4 includes the following changes: - Report runtime rather than compile time version for OpenSSL - Fixes to

[Bug 59125] New: Client disconnect causes java.lang.IllegalStateException when using WriteListener

2016-03-05 Thread bugzilla
https://bz.apache.org/bugzilla/show_bug.cgi?id=59125 Bug ID: 59125 Summary: Client disconnect causes java.lang.IllegalStateException when using WriteListener Product: Tomcat 8 Version: 8.0.30 Hardware:

Re: [VOTE] Release Apache Tomcat Native 1.2.5

2016-03-05 Thread Rainer Jung
Am 05.03.2016 um 19:18 schrieb Mark Thomas: On 05/03/2016 09:23, Rainer Jung wrote: Am 02.03.2016 um 14:43 schrieb Mark Thomas: Version 1.2.4 includes the following changes: - Report runtime rather than compile time version for OpenSSL - Fixes to allow continued building with master The

[GUMP@vmgump]: Project tomcat-trunk-test-nio (in module tomcat-trunk) failed

2016-03-05 Thread Bill Barker
/commons-daemon-20160305-native-src.tar.gz -Dexamples.sources.skip=true -Dbase.path=/srv/gump/public/workspace/tomcat-trunk/tomcat-build-libs -Djdt.jar=/srv/gump/packages/eclipse/plugins/R-4.5-201506032000/ecj-4.5.jar -Dtest.relaxTiming=true -Dcommons-daemon.jar=/srv/gump/public/workspace/apache

Re: Tomcat Configuration Hardening

2016-03-05 Thread Mark Thomas
On 05/03/2016 17:08, Christopher Schultz wrote: >> First of all we could add the remote address valve and limit access to >> localhost by default. That will limit some remote attacks but possibly >> not all depending on reverse proxy configurations > > I was thinking about this as well. It would

[Bug 59115] Part#getSubmittedFileName doesn't work corretly with double quotes in filenames.

2016-03-05 Thread bugzilla
https://bz.apache.org/bugzilla/show_bug.cgi?id=59115 Mark Thomas changed: What|Removed |Added Resolution|--- |FIXED

svn commit: r1733753 - in /tomcat/tc7.0.x/trunk: ./ java/org/apache/catalina/core/ApplicationPart.java java/org/apache/tomcat/util/http/parser/HttpParser.java

2016-03-05 Thread markt
Author: markt Date: Sat Mar 5 18:29:06 2016 New Revision: 1733753 URL: http://svn.apache.org/viewvc?rev=1733753=rev Log: Update filename processing after review of RFC 6266 Modified: tomcat/tc7.0.x/trunk/ (props changed)

buildbot success in on tomcat-trunk

2016-03-05 Thread buildbot
The Buildbot has detected a restored build on builder tomcat-trunk while building . Full details are available at: https://ci.apache.org/builders/tomcat-trunk/builds/1141 Buildbot URL: https://ci.apache.org/ Buildslave for this Build: silvanus_ubuntu Build Reason: The AnyBranchScheduler

svn commit: r1733752 - in /tomcat/tc8.0.x/trunk: ./ java/org/apache/catalina/core/ApplicationPart.java java/org/apache/tomcat/util/http/parser/HttpParser.java

2016-03-05 Thread markt
Author: markt Date: Sat Mar 5 18:28:27 2016 New Revision: 1733752 URL: http://svn.apache.org/viewvc?rev=1733752=rev Log: Update filename processing after review of RFC 6266 Modified: tomcat/tc8.0.x/trunk/ (props changed)

svn commit: r1733751 - in /tomcat/trunk/java/org/apache: catalina/core/ApplicationPart.java tomcat/util/http/parser/HttpParser.java

2016-03-05 Thread markt
Author: markt Date: Sat Mar 5 18:27:53 2016 New Revision: 1733751 URL: http://svn.apache.org/viewvc?rev=1733751=rev Log: Update filename processing after review of RFC 6266 Modified: tomcat/trunk/java/org/apache/catalina/core/ApplicationPart.java

Re: [VOTE] Release Apache Tomcat Native 1.2.5

2016-03-05 Thread Mark Thomas
On 05/03/2016 09:23, Rainer Jung wrote: > Am 02.03.2016 um 14:43 schrieb Mark Thomas: >> Version 1.2.4 includes the following changes: >> >> - Report runtime rather than compile time version for OpenSSL >> - Fixes to allow continued building with master >> >> The proposed release artefacts can be

svn commit: r1733749 - /tomcat/trunk/java/org/apache/catalina/realm/JNDIRealm.java

2016-03-05 Thread fschumacher
Author: fschumacher Date: Sat Mar 5 18:15:27 2016 New Revision: 1733749 URL: http://svn.apache.org/viewvc?rev=1733749=rev Log: Correct typo Modified: tomcat/trunk/java/org/apache/catalina/realm/JNDIRealm.java Modified: tomcat/trunk/java/org/apache/catalina/realm/JNDIRealm.java URL:

[Bug 59123] The JNDIRealm does not close the NamingEnumeration

2016-03-05 Thread bugzilla
https://bz.apache.org/bugzilla/show_bug.cgi?id=59123 --- Comment #1 from Felix Schumacher --- Created attachment 33625 --> https://bz.apache.org/bugzilla/attachment.cgi?id=33625=edit Explicitly close NamingEnumerations after usage -- You are receiving this

[Bug 59017] Support precompressed brotli files in addition to gzip files if matching accept-encoding header

2016-03-05 Thread bugzilla
https://bz.apache.org/bugzilla/show_bug.cgi?id=59017 --- Comment #3 from Mikko Tiihonen --- I updated the pull request a week ago based on feedback from markt-asf. Changes: - possibility to configure the list of precompressed file types for default servlet - parsing

[GUMP@vmgump]: Project tomcat-tc8.0.x-test-apr (in module tomcat-8.0.x) failed

2016-03-05 Thread Bill Barker
/daemon/dist/bin/commons-daemon-20160305-native-src.tar.gz -Dexamples.sources.skip=true -Dbase.path=/srv/gump/public/workspace/tomcat-8.0.x/tomcat-build-libs -Djdt.jar=/srv/gump/packages/eclipse/plugins/R-4.5-201506032000/ecj-4.5.jar -Dtest.apr.loc=/srv/gump/public/workspace/tomcat-native/dest

Re: Tomcat Configuration Hardening

2016-03-05 Thread Christopher Schultz
Mark, On 3/3/16 3:35 PM, Mark Thomas wrote: > On 03/03/2016 15:36, Christopher Schultz wrote: >> Dylan, >> >> This might be a better discussion for the users' list, but I'll keep it >> on dev for the time being. >> >> On 2/28/16 2:28 PM, Dylan Ayrey wrote: >>> I'm a security analyst at a company

[Bug 59115] Part#getSubmittedFileName doesn't work corretly with double quotes in filenames.

2016-03-05 Thread bugzilla
https://bz.apache.org/bugzilla/show_bug.cgi?id=59115 --- Comment #4 from Mark Thomas --- I've fixed the initial exception. The relevant spec here is RFC6266. I'm leaving this issue open until I have a chance to look through that spec. -- You are receiving this mail because:

buildbot exception in on tomcat-trunk

2016-03-05 Thread buildbot
The Buildbot has detected a build exception on builder tomcat-trunk while building . Full details are available at: https://ci.apache.org/builders/tomcat-trunk/builds/1140 Buildbot URL: https://ci.apache.org/ Buildslave for this Build: silvanus_ubuntu Build Reason: The AnyBranchScheduler

svn commit: r1733736 - in /tomcat/tc7.0.x/trunk: ./ java/org/apache/catalina/core/ApplicationPart.java

2016-03-05 Thread markt
Author: markt Date: Sat Mar 5 16:04:34 2016 New Revision: 1733736 URL: http://svn.apache.org/viewvc?rev=1733736=rev Log: Correct regex. The actual regex is "\\" and since '\' needs to be escaped the code needs to use "" Modified: tomcat/tc7.0.x/trunk/ (props changed)

svn commit: r1733735 - in /tomcat/tc8.0.x/trunk: ./ java/org/apache/catalina/core/ApplicationPart.java

2016-03-05 Thread markt
Author: markt Date: Sat Mar 5 16:03:22 2016 New Revision: 1733735 URL: http://svn.apache.org/viewvc?rev=1733735=rev Log: Correct regex. The actual regex is "\\" and since '\' needs to be escaped the code needs to use "" Modified: tomcat/tc8.0.x/trunk/ (props changed)

svn commit: r1733734 - /tomcat/trunk/java/org/apache/catalina/core/ApplicationPart.java

2016-03-05 Thread markt
Author: markt Date: Sat Mar 5 16:01:57 2016 New Revision: 1733734 URL: http://svn.apache.org/viewvc?rev=1733734=rev Log: Correct regex. The actual regex is "\\" and since '\' needs to be escaped the code needs to use "" Modified:

Re: svn commit: r1733617 - in /tomcat/trunk: java/org/apache/catalina/core/ApplicationPart.java webapps/docs/changelog.xml

2016-03-05 Thread Mark Thomas
On 04/03/2016 17:55, Konstantin Kolinko wrote: > 2016-03-04 20:24 GMT+03:00 : >> Author: markt >> Date: Fri Mar 4 17:24:36 2016 >> New Revision: 1733617 >> >> URL: http://svn.apache.org/viewvc?rev=1733617=rev >> Log: >> Fix https://bz.apache.org/bugzilla/show_bug.cgi?id=59115

[Bug 59123] New: The JNDIRealm does not close the NamingEnumeration

2016-03-05 Thread bugzilla
https://bz.apache.org/bugzilla/show_bug.cgi?id=59123 Bug ID: 59123 Summary: The JNDIRealm does not close the NamingEnumeration Product: Tomcat 9 Version: unspecified Hardware: PC OS: Mac OS X 10.4 Status: NEW

[GUMP@vmgump]: Project tomcat-tc7.0.x-test-apr (in module tomcat-7.0.x) failed

2016-03-05 Thread Bill Barker
-20160305.jar -Dtomcat-dbcp-src.jar=/srv/gump/public/workspace/tomcat-7.0.x/tomcat-deps/tomcat-dbcp-src.jar -Dtomcat-dbcp.home=/srv/gump/public/workspace/tomcat-7.0.x/tomcat-deps -Dtest.excludePerformance=true -Dhamcrest.jar=/srv/gump/packages/hamcrest/hamcrest-core-1.3.jar -Dcommons-dbcp.home=/srv

[GUMP@vmgump]: Project tomcat-trunk-test-apr (in module tomcat-trunk) failed

2016-03-05 Thread Bill Barker
/commons-daemon-20160305-native-src.tar.gz -Dexamples.sources.skip=true -Dbase.path=/srv/gump/public/workspace/tomcat-trunk/tomcat-build-libs -Djdt.jar=/srv/gump/packages/eclipse/plugins/R-4.5-201506032000/ecj-4.5.jar -Dtest.apr.loc=/srv/gump/public/workspace/tomcat-native-trunk/dest-20160305/lib

Re: [VOTE] Release Apache Tomcat Native 1.2.5

2016-03-05 Thread Rainer Jung
Am 02.03.2016 um 14:43 schrieb Mark Thomas: Version 1.2.4 includes the following changes: - Report runtime rather than compile time version for OpenSSL - Fixes to allow continued building with master The proposed release artefacts can be found at [1], and the build was done using tag [2]. The

Why we use a ReentrantReadWriteLock.WriteLock instead of ReentrantLock in DeltaSession?

2016-03-05 Thread xueliang liu
Hi, I'm curious the implementation of Tomcat's Cluster, so i'm taking a look at this part codes. (tomcat 7.0.68) In DeltaSession, we are using a diffLock to protect the concurrent access, and diffLock is instantiated as ReentrantReadWriteLock.WriteLock(). Since

[GUMP@vmgump]: Project tomcat-trunk-test-nio2 (in module tomcat-trunk) failed

2016-03-05 Thread Bill Barker
/dist/bin/commons-daemon-20160305-native-src.tar.gz -Dexamples.sources.skip=true -Dbase.path=/srv/gump/public/workspace/tomcat-trunk/tomcat-build-libs -Djdt.jar=/srv/gump/packages/eclipse/plugins/R-4.5-201506032000/ecj-4.5.jar -Dtest.relaxTiming=true -Dcommons-daemon.jar=/srv/gump/public