DO NOT REPLY [Bug 29907] - connector without accept thread (was: hanging during SSL negotiation)

2004-11-03 Thread bugzilla
/show_bug.cgi?id=29907 connector without accept thread (was: hanging during SSL negotiation) [EMAIL PROTECTED] changed: What|Removed |Added Severity|Normal

Re: (Case 69637) DO NOT REPLY [Bug 29907] -connector without accept thread (was: hanging during SSL negotiation)

2004-11-03 Thread techsupport
Hello, This is an automatic notification to inform you that your inquiry has been received and assigned case number 69637. Your request is important to us and we are committed to responding to your requests as quickly as we can. We answer e-mail on a first-in, first-out basis. If you wish to

DO NOT REPLY [Bug 22679] - how to access ssl session ID out of tomcat to prevent session hijacking

2004-10-31 Thread bugzilla
/show_bug.cgi?id=22679 how to access ssl session ID out of tomcat to prevent session hijacking --- Additional Comments From [EMAIL PROTECTED] 2004-10-31 08:27 --- Thanks for the hint, but unfortunately, after tomcat 3.2. SSLSupport.SESSION_ID_KEY appears to be no longer present in coyote

DO NOT REPLY [Bug 22679] - how to access ssl session ID out of tomcat to prevent session hijacking

2004-10-31 Thread bugzilla
/show_bug.cgi?id=22679 how to access ssl session ID out of tomcat to prevent session hijacking --- Additional Comments From [EMAIL PROTECTED] 2004-10-31 21:55 --- It seems that Tomcat 3.3.x 4.1.x work fine. With Tomcat 5 you need to access a standard attribute to trigger, and then it works

DO NOT REPLY [Bug 22679] - how to access ssl session ID out of tomcat to prevent session hijacking

2004-10-31 Thread bugzilla
/show_bug.cgi?id=22679 how to access ssl session ID out of tomcat to prevent session hijacking --- Additional Comments From [EMAIL PROTECTED] 2004-11-01 07:07 --- thx, seems to work! Had troubles finding the doc pages in CVS to provide the promised diff patch

DO NOT REPLY [Bug 22679] - how to access ssl session ID out of tomcat to prevent session hijacking

2004-10-30 Thread bugzilla
/show_bug.cgi?id=22679 how to access ssl session ID out of tomcat to prevent session hijacking [EMAIL PROTECTED] changed: What|Removed |Added Status|RESOLVED

DO NOT REPLY [Bug 22679] - how to access ssl session ID out of tomcat to prevent session hijacking

2004-10-30 Thread bugzilla
/show_bug.cgi?id=22679 how to access ssl session ID out of tomcat to prevent session hijacking --- Additional Comments From [EMAIL PROTECTED] 2004-10-30 21:12 --- Try String sslID = (String)request.getAttribute (javax.servlet.request.ssl_session

DO NOT REPLY [Bug 22679] - how to access ssl session ID out of tomcat to prevent session hijacking

2004-10-29 Thread bugzilla
/show_bug.cgi?id=22679 how to access ssl session ID out of tomcat to prevent session hijacking [EMAIL PROTECTED] changed: What|Removed |Added Status|NEW

DO NOT REPLY [Bug 29695] - regression in SSL cipher strength

2004-10-07 Thread bugzilla
/show_bug.cgi?id=29695 regression in SSL cipher strength --- Additional Comments From [EMAIL PROTECTED] 2004-10-07 17:45 --- interestingly, when moving to ibm_j2skd_142 as JVM and setting sslProtocol=SSL algorithm=IbmX509 Mozilla gets back up to 256 bit

DO NOT REPLY [Bug 29695] - regression in SSL cipher strength

2004-10-06 Thread bugzilla
/show_bug.cgi?id=29695 regression in SSL cipher strength --- Additional Comments From [EMAIL PROTECTED] 2004-10-06 14:24 --- had a look at this again, for those interested, pls find the etheral dumps attached next. java version 1.4.2_05 Java(TM) 2 Runtime Environment, Standard Edition (build

DO NOT REPLY [Bug 29695] - regression in SSL cipher strength

2004-10-06 Thread bugzilla
/show_bug.cgi?id=29695 regression in SSL cipher strength --- Additional Comments From [EMAIL PROTECTED] 2004-10-06 14:25 --- Created an attachment (id=12960) tomcat5-ssl-cipherStrengthRegression.tgz etheral dumps

DO NOT REPLY [Bug 29907] - connector without accept thread (was: hanging during SSL negotiation)

2004-10-06 Thread bugzilla
/show_bug.cgi?id=29907 connector without accept thread (was: hanging during SSL negotiation) [EMAIL PROTECTED] changed: What|Removed |Added URL||http

DO NOT REPLY [Bug 29907] - connector without accept thread (was: hanging during SSL negotiation)

2004-10-06 Thread bugzilla
/show_bug.cgi?id=29907 connector without accept thread (was: hanging during SSL negotiation) --- Additional Comments From [EMAIL PROTECTED] 2004-10-06 19:38 --- Created an attachment (id=12969) threadDump3Connectors.txt

DO NOT REPLY [Bug 29907] - hanging during SSL negotiation

2004-09-11 Thread bugzilla
/show_bug.cgi?id=29907 hanging during SSL negotiation --- Additional Comments From [EMAIL PROTECTED] 2004-09-11 07:13 --- The following is one hypothesis for this, but we have seen it also happen on non-ssl connectors (i.e. regular http) - anyway, here the reasoning goes as per http

DO NOT REPLY [Bug 27122] - IE plugins cannot access components through Tomcat 5 over SSL

2004-09-06 Thread bugzilla
/show_bug.cgi?id=27122 IE plugins cannot access components through Tomcat 5 over SSL --- Additional Comments From [EMAIL PROTECTED] 2004-09-06 12:09 --- *** Bug 30618 has been marked as a duplicate of this bug

DO NOT REPLY [Bug 27122] - IE plugins cannot access components through Tomcat 5 over SSL

2004-08-12 Thread bugzilla
/show_bug.cgi?id=27122 IE plugins cannot access components through Tomcat 5 over SSL [EMAIL PROTECTED] changed: What|Removed |Added CC||[EMAIL

DO NOT REPLY [Bug 22679] - how to access ssl session ID out of tomcat to prevent session hijacking

2004-07-21 Thread bugzilla
/show_bug.cgi?id=22679 how to access ssl session ID out of tomcat to prevent session hijacking --- Additional Comments From [EMAIL PROTECTED] 2004-07-21 18:29 --- Please suggest text in patch diff format for RFE: enhance the SSL ho wto description at the above URL with a section on how to do

DO NOT REPLY [Bug 27122] - IE plugins cannot access components through Tomcat 5 over SSL

2004-07-12 Thread bugzilla
/show_bug.cgi?id=27122 IE plugins cannot access components through Tomcat 5 over SSL --- Additional Comments From [EMAIL PROTECTED] 2004-07-12 11:58 --- Microsoft describes the exact behaviour of their bug on this webpage: http://support.microsoft.com/?id=316431 Microsoft says that this bug

DO NOT REPLY [Bug 26529] - ISAPI redirector with SSL and tomcat 4.29

2004-07-11 Thread bugzilla
/show_bug.cgi?id=26529 ISAPI redirector with SSL and tomcat 4.29 [EMAIL PROTECTED] changed: What|Removed |Added Status|NEW |RESOLVED Resolution

DO NOT REPLY [Bug 27122] - IE plugins cannot access components through Tomcat 5 over SSL

2004-07-08 Thread bugzilla
/show_bug.cgi?id=27122 IE plugins cannot access components through Tomcat 5 over SSL [EMAIL PROTECTED] changed: What|Removed |Added CC||[EMAIL

DO NOT REPLY [Bug 29907] - hanging during SSL negotiation

2004-07-06 Thread bugzilla
/show_bug.cgi?id=29907 hanging during SSL negotiation --- Additional Comments From [EMAIL PROTECTED] 2004-07-06 09:39 --- - Mozilla hangs after saying Connected to hostname.domain.tld... in the status bar without a timeout (http://bugzilla.mozilla.org/show_bug.cgi?id=249976) - MSIE

DO NOT REPLY [Bug 29907] - hanging during SSL negotiation

2004-07-06 Thread bugzilla
/show_bug.cgi?id=29907 hanging during SSL negotiation --- Additional Comments From [EMAIL PROTECTED] 2004-07-06 09:41 --- Links 0.96: gives a late timeout Error Receive timeout [cancel] - To unsubscribe, e-mail: [EMAIL

DO NOT REPLY [Bug 29907] - hanging during SSL negotiation

2004-07-06 Thread bugzilla
/show_bug.cgi?id=29907 hanging during SSL negotiation [EMAIL PROTECTED] changed: What|Removed |Added Status|NEW |RESOLVED Resolution

DO NOT REPLY [Bug 29907] New: - hanging during SSL negotiation

2004-07-04 Thread bugzilla
/show_bug.cgi?id=29907 hanging during SSL negotiation Summary: hanging during SSL negotiation Product: Tomcat 5 Version: 5.0.24 Platform: Other OS/Version: Other Status: NEW Severity: Normal Priority: Other

DO NOT REPLY [Bug 29695] - regression in SSL cipher strength

2004-06-29 Thread bugzilla
/show_bug.cgi?id=29695 regression in SSL cipher strength [EMAIL PROTECTED] changed: What|Removed |Added Status|RESOLVED|REOPENED Resolution|INVALID

DO NOT REPLY [Bug 29695] - regression in SSL cipher strength

2004-06-29 Thread bugzilla
/show_bug.cgi?id=29695 regression in SSL cipher strength [EMAIL PROTECTED] changed: What|Removed |Added Status|REOPENED|RESOLVED Resolution

DO NOT REPLY [Bug 29695] - regression in SSL cipher strength

2004-06-28 Thread bugzilla
/show_bug.cgi?id=29695 regression in SSL cipher strength [EMAIL PROTECTED] changed: What|Removed |Added Status|NEW |RESOLVED Resolution

DO NOT REPLY [Bug 29695] New: - regression in SSL cipher strength

2004-06-20 Thread bugzilla
/show_bug.cgi?id=29695 regression in SSL cipher strength Summary: regression in SSL cipher strength Product: Tomcat 5 Version: 5.0.24 Platform: Other OS/Version: Other Status: NEW Severity: Normal Priority: Other

DO NOT REPLY [Bug 29695] - regression in SSL cipher strength

2004-06-20 Thread bugzilla
/show_bug.cgi?id=29695 regression in SSL cipher strength --- Additional Comments From [EMAIL PROTECTED] 2004-06-20 11:23 --- Please investigate this more, or this will be resolved as INVALID. - To unsubscribe, e-mail: [EMAIL

DO NOT REPLY [Bug 22679] - how to access ssl session ID out of tomcat to prevent session hijacking

2004-06-19 Thread bugzilla
/show_bug.cgi?id=22679 how to access ssl session ID out of tomcat to prevent session hijacking [EMAIL PROTECTED] changed: What|Removed |Added Component|Connector:Coyote HTTP/1.1

DO NOT REPLY [Bug 29336] New: - Unable to download PDF using MS IE 6 and SSL

2004-06-02 Thread bugzilla
/show_bug.cgi?id=29336 Unable to download PDF using MS IE 6 and SSL Summary: Unable to download PDF using MS IE 6 and SSL Product: Tomcat 5 Version: 5.0.24 Platform: PC OS/Version: Linux Status: NEW Severity: Critical

DO NOT REPLY [Bug 29336] - Unable to download PDF using MS IE 6 and SSL

2004-06-02 Thread bugzilla
/show_bug.cgi?id=29336 Unable to download PDF using MS IE 6 and SSL [EMAIL PROTECTED] changed: What|Removed |Added Status|NEW |RESOLVED Resolution

DO NOT REPLY [Bug 27122] - IE plugins cannot access components through Tomcat 5 over SSL

2004-06-02 Thread bugzilla
/show_bug.cgi?id=27122 IE plugins cannot access components through Tomcat 5 over SSL [EMAIL PROTECTED] changed: What|Removed |Added CC||[EMAIL

DO NOT REPLY [Bug 27122] - IE plugins cannot access components through Tomcat 5 over SSL

2004-04-28 Thread bugzilla
/show_bug.cgi?id=27122 IE plugins cannot access components through Tomcat 5 over SSL [EMAIL PROTECTED] changed: What|Removed |Added CC||[EMAIL

DO NOT REPLY [Bug 26529] - ISAPI redirector with SSL and tomcat 4.29

2004-03-22 Thread bugzilla
/show_bug.cgi?id=26529 ISAPI redirector with SSL and tomcat 4.29 --- Additional Comments From [EMAIL PROTECTED] 2004-03-22 14:24 --- any one have any sugestions? - To unsubscribe, e-mail: [EMAIL PROTECTED] For additional

DO NOT REPLY [Bug 22679] - how to access ssl session ID out of tomcat to prevent session hijacking

2004-03-04 Thread bugzilla
/show_bug.cgi?id=22679 how to access ssl session ID out of tomcat to prevent session hijacking [EMAIL PROTECTED] changed: What|Removed |Added Summary|how to access ssl session ID|how

SSL IIS encryption with tomcat question

2004-03-01 Thread John MccLain
I have setup Tomcat to work with IIS. for SSL requests, since IIS decrypts the request and passes it unencrypted to Tomcat, How do I encrypt the request so that all communication from IIS with Tomcat is secure - round trip encryption

DO NOT REPLY [Bug 18441] - apache2/tomcat ssl non-operational

2004-02-29 Thread bugzilla
/show_bug.cgi?id=18441 apache2/tomcat ssl non-operational [EMAIL PROTECTED] changed: What|Removed |Added Status|NEW |RESOLVED Resolution

DO NOT REPLY [Bug 27122] - Opera/IE fail to access JSP pages of MIME type image/svg+xml when using SSL

2004-02-25 Thread bugzilla
/show_bug.cgi?id=27122 Opera/IE fail to access JSP pages of MIME type image/svg+xml when using SSL --- Additional Comments From [EMAIL PROTECTED] 2004-02-25 21:50 --- OK, I finally got a chance to use openssl to try and manually run a couple of HTTP transactions. I found one header I thought

DO NOT REPLY [Bug 27122] - Opera/IE fail to access JSP pages of MIME type image/svg+xml when using SSL

2004-02-25 Thread bugzilla
/show_bug.cgi?id=27122 Opera/IE fail to access JSP pages of MIME type image/svg+xml when using SSL --- Additional Comments From [EMAIL PROTECTED] 2004-02-25 22:07 --- And we have finally found the problem. In an attempt to try and work around some broken client (I can't be bothered to go

DO NOT REPLY [Bug 27122] - IE plugins cannot access components through Tomcat 5 over SSL

2004-02-25 Thread bugzilla
/show_bug.cgi?id=27122 IE plugins cannot access components through Tomcat 5 over SSL [EMAIL PROTECTED] changed: What|Removed |Added Summary|Opera/IE fail to access JSP |IE plugins

DO NOT REPLY [Bug 27122] New: - Opera/IE fail to access JSP pages of MIME type image/svg+xml when using SSL

2004-02-20 Thread bugzilla
/show_bug.cgi?id=27122 Opera/IE fail to access JSP pages of MIME type image/svg+xml when using SSL Summary: Opera/IE fail to access JSP pages of MIME type image/svg+xml when using SSL Product: Tomcat 5 Version: 5.0.18 Platform: Sun OS

DO NOT REPLY [Bug 27122] - Opera/IE fail to access JSP pages of MIME type image/svg+xml when using SSL

2004-02-20 Thread bugzilla
/show_bug.cgi?id=27122 Opera/IE fail to access JSP pages of MIME type image/svg+xml when using SSL [EMAIL PROTECTED] changed: What|Removed |Added Status|NEW

DO NOT REPLY [Bug 27122] - Opera/IE fail to access JSP pages of MIME type image/svg+xml when using SSL

2004-02-20 Thread bugzilla
/show_bug.cgi?id=27122 Opera/IE fail to access JSP pages of MIME type image/svg+xml when using SSL --- Additional Comments From [EMAIL PROTECTED] 2004-02-20 21:24 --- Of course I haven't tried telnet, it's only happening over SSL. I'm not very good at doing 128-bit encryption in my head and I

DO NOT REPLY [Bug 27122] - Opera/IE fail to access JSP pages of MIME type image/svg+xml when using SSL

2004-02-20 Thread bugzilla
/show_bug.cgi?id=27122 Opera/IE fail to access JSP pages of MIME type image/svg+xml when using SSL --- Additional Comments From [EMAIL PROTECTED] 2004-02-20 21:40 --- Try 'openssl s_client'. It's my first stop when debugging SSL problems

DO NOT REPLY [Bug 27122] - Opera/IE fail to access JSP pages of MIME type image/svg+xml when using SSL

2004-02-20 Thread bugzilla
/show_bug.cgi?id=27122 Opera/IE fail to access JSP pages of MIME type image/svg+xml when using SSL --- Additional Comments From [EMAIL PROTECTED] 2004-02-20 23:33 --- Well, I understand, but the behavior you describe would be extremely strange. I don't see how it can be a Jasper or container

DO NOT REPLY [Bug 26998] New: - Memory Leak when using ssl under linux

2004-02-17 Thread bugzilla
/show_bug.cgi?id=26998 Memory Leak when using ssl under linux Summary: Memory Leak when using ssl under linux Product: Tomcat 4 Version: 4.0 Beta 1 Platform: Other OS/Version: Linux Status: NEW Severity: Critical Priority

DO NOT REPLY [Bug 15306] - Tomcat does not startup SSL

2004-02-17 Thread bugzilla
/show_bug.cgi?id=15306 Tomcat does not startup SSL --- Additional Comments From [EMAIL PROTECTED] 2004-02-17 10:43 --- Seems like the keystore passwd and the tomcat passwd for the keystore have to be the same. That solved the problem for me

DO NOT REPLY [Bug 26998] - Memory Leak when using ssl under linux

2004-02-17 Thread bugzilla
/show_bug.cgi?id=26998 Memory Leak when using ssl under linux [EMAIL PROTECTED] changed: What|Removed |Added Status|NEW |RESOLVED Resolution

DO NOT REPLY [Bug 26951] New: - setStatus() and setHeader() for the SSL redirection

2004-02-15 Thread bugzilla
/show_bug.cgi?id=26951 setStatus() and setHeader() for the SSL redirection Summary: setStatus() and setHeader() for the SSL redirection Product: Tomcat 4 Version: 4.0 Beta 1 Platform: Other OS/Version: Linux Status: NEW Severity

DO NOT REPLY [Bug 26951] - setStatus() and setHeader() for the SSL redirection

2004-02-15 Thread bugzilla
/show_bug.cgi?id=26951 setStatus() and setHeader() for the SSL redirection [EMAIL PROTECTED] changed: What|Removed |Added Status|NEW |RESOLVED

DO NOT REPLY [Bug 12263] - response.sendRedirect won't send to Tomcat SSL

2004-02-07 Thread bugzilla
/show_bug.cgi?id=12263 response.sendRedirect won't send to Tomcat SSL [EMAIL PROTECTED] changed: What|Removed |Added Status|NEW |RESOLVED Resolution

BIG PROBLEM // LINUX TOMCAT SSL

2004-02-06 Thread Bouchia Nazha
:[EMAIL PROTECTED] Envoyé : mercredi 14 janvier 2004 12:19 À : 'Tomcat Users List' Objet : BIG PROBLEM // LINUX TOMCAT SSL Hello, I have encountered a problem using tomcat, linux and ssl. This is my configuration: OS: Redhat7.2 Tomcat: 4.0 Jdk: 1.3.1_07 I have a servlet that does a post https

Re: BIG PROBLEM // LINUX TOMCAT SSL

2004-02-06 Thread Jeanfrancois Arcand
List' Objet : BIG PROBLEM // LINUX TOMCAT SSL Hello, I have encountered a problem using tomcat, linux and ssl. This is my configuration: OS: Redhat7.2 Tomcat: 4.0 Jdk: 1.3.1_07 I have a servlet that does a post https connexion with a certificat client and server. When I execute 200 (or more

DO NOT REPLY [Bug 26529] New: - ISAPI redirector with SSL and tomcat 4.29

2004-01-29 Thread bugzilla
/show_bug.cgi?id=26529 ISAPI redirector with SSL and tomcat 4.29 Summary: ISAPI redirector with SSL and tomcat 4.29 Product: Tomcat 4 Version: 4.1.29 Platform: Other OS/Version: Windows NT/2K Status: NEW Severity: Critical

IIS 6.0 SSL port 443 and Tomcat 5.0 problem.

2004-01-28 Thread charles doweary
Software Platform: Windows Server 2003, IIS 6.0, SSL, Tomcat 5.0. Please help me resolve this issue: Redirection works for my non-secure websites, but it's not work properly for my secure website. My website at HTTP://dowearysoftware.com processes my jsp pages without any problems. I

HTTPS problem - Jsp pages no working with IIS 6.0 SSL.

2004-01-27 Thread charles doweary
My website at HTTP://dowearysoftware.com processes my jsp pages without any problems. I created a copy of the this website at www.dowearysoftware.com and added SSL with 128 bit encryption in IIS 6.0. HTTP://dowearysoftware.com processes the jsp successfully, but HTTPS

Re: HTTPS problem - Jsp pages no working with IIS 6.0 SSL.

2004-01-27 Thread Jan-Henrik Haukeland
Jan-Henrik Haukeland [EMAIL PROTECTED] writes: Connecting to www.dowearysoftware.com:443 HTTP/1.1 200 OK Content-Length: 5575 Content-Type: application/octet-stream Content-Location: https://www.dowearysoftware.com:443/index.jsp Ah, yes, as you can see the server sets the Content-Location

Re: HTTPS problem - Jsp pages no working with IIS 6.0 SSL.

2004-01-27 Thread Jan-Henrik Haukeland
charles doweary [EMAIL PROTECTED] writes: My website at HTTP://dowearysoftware.com processes my jsp pages without any problems. I created a copy of the this website at www.dowearysoftware.com and added SSL with 128 bit encryption in IIS 6.0. HTTP://dowearysoftware.com processes the jsp

Re: HTTPS problem - Jsp pages no working with IIS 6.0 SSL.

2004-01-27 Thread charles doweary
. From: Jan-Henrik Haukeland [EMAIL PROTECTED] To: Tomcat Developers List [EMAIL PROTECTED] CC: [EMAIL PROTECTED] Subject: Re: HTTPS problem - Jsp pages no working with IIS 6.0 SSL. Date: Tue, 27 Jan 2004 14:21:28 +0100 Jan-Henrik Haukeland [EMAIL PROTECTED] writes: Connecting

Re: HTTPS problem - Jsp pages no working with IIS 6.0 SSL.

2004-01-27 Thread charles doweary
://dowearysoftware.com. What else do I need to do to insure that my .jsp pages are compiled and deployed properly? Charles From: Jan-Henrik Haukeland [EMAIL PROTECTED] To: Tomcat Developers List [EMAIL PROTECTED] CC: [EMAIL PROTECTED] Subject: Re: HTTPS problem - Jsp pages no working with IIS 6.0 SSL. Date: Tue, 27

Re: HTTPS problem - Jsp pages no working with IIS 6.0 SSL.

2004-01-27 Thread Jan-Henrik Haukeland
on a portnumber Tomcat does not listening on (e.g. 8443) or tries to establish a SSL connection to a non-ssl tomcat connector. Anyway it's most likely a configuration problem at the IIS server. (The ISS/connector should forward the request to Tomcat on a standard HTTP portnumber). -- Jan-Henrik

cvs commit: jakarta-tomcat-4.0/webapps/tomcat-docs ssl-howto.xml

2004-01-25 Thread billbarker
billbarker2004/01/25 18:07:55 Modified:webapps/tomcat-docs ssl-howto.xml Log: Update docs for new value of clientAuth. Revision ChangesPath 1.14 +3 -1 jakarta-tomcat-4.0/webapps/tomcat-docs/ssl-howto.xml Index: ssl-howto.xml

cvs commit: jakarta-tomcat-catalina/webapps/docs ssl-howto.xml

2004-01-25 Thread billbarker
billbarker2004/01/25 18:11:09 Modified:webapps/docs ssl-howto.xml Log: Document the new value for clientAuth. Revision ChangesPath 1.11 +3 -1 jakarta-tomcat-catalina/webapps/docs/ssl-howto.xml Index: ssl-howto.xml

BIG PROBLEM // LINUX TOMCAT SSL

2004-01-20 Thread Bouchia Nazha
List' Objet : BIG PROBLEM // LINUX TOMCAT SSL Hello, I have encountered a problem using tomcat, linux and ssl. This is my configuration: OS: Redhat7.2 Tomcat: 4.0 Jdk: 1.3.1_07 I have a servlet that does a post https connexion with a certificat client and server. When I execute 200 (or more

SSL connector to check Certificate Revocation List

2004-01-16 Thread Alain Baucant
Is it possible to define a CRL to be checked by tomcat when using SSL ? If yes, with which tomcat version ? If no, is it planned ? I apologize disturbing developpers with this question but I didn't recevie any answer on tomcat-user. Thanks for your help, Alain. PS: Where can I find a full

Re: SSL connector to check Certificate Revocation List

2004-01-16 Thread Bill Barker
- Original Message - From: Alain Baucant [EMAIL PROTECTED] To: [EMAIL PROTECTED] Sent: Friday, January 16, 2004 12:13 AM Subject: SSL connector to check Certificate Revocation List Is it possible to define a CRL to be checked by tomcat when using SSL ? Sounds like a good thing

Re: SSL connector to check Certificate Revocation List

2004-01-16 Thread Alain Baucant
Bill Barker wrote: - Original Message - From: Alain Baucant [EMAIL PROTECTED] To: [EMAIL PROTECTED] Sent: Friday, January 16, 2004 12:13 AM Subject: SSL connector to check Certificate Revocation List Is it possible to define a CRL to be checked by tomcat when using SSL ? Sounds

cvs commit: jakarta-tomcat/src/doc AJPv13.html JDBCRealm-howto.html Tomcat-on-NetWare-HowTo.html mod_jk-howto.html serverxml.html tomcat-security.html tomcat-ssl-howto.html tomcat-ug.html

2004-01-14 Thread billbarker
billbarker2004/01/14 00:22:22 Modified:src/doc AJPv13.html JDBCRealm-howto.html Tomcat-on-NetWare-HowTo.html mod_jk-howto.html serverxml.html tomcat-security.html tomcat-ssl-howto.html tomcat-ug.html Log: Fix

Re: SSL Socket does not timeout when no handshake occurs

2004-01-12 Thread Bill Barker
Your patch has been applied, and will be available in TC 5.0.17 4.1.30. - Original Message - From: Alex Chan [EMAIL PROTECTED] To: [EMAIL PROTECTED] Sent: Sunday, January 11, 2004 9:40 PM Subject: SSL Socket does not timeout when no handshake occurs I have found that if a connection

SSL Socket does not timeout when no handshake occurs

2004-01-11 Thread Alex Chan
I have found that if a connection is initiated on the SSL port but the client does not participate in the SSL handshake, the socket seems to hang around indefinitely. The test I used was to telnet to the secure port without typing/sending any further data. When doing the same to the non-secure

DO NOT REPLY [Bug 25852] New: - Error Session Creation under SSL and switch to non-SSL

2003-12-31 Thread bugzilla
/show_bug.cgi?id=25852 Error Session Creation under SSL and switch to non-SSL Summary: Error Session Creation under SSL and switch to non-SSL Product: Tomcat 5 Version: 5.0.16 Platform: All OS/Version: Linux Status: NEW Severity

DO NOT REPLY [Bug 25852] - Error Session Creation under SSL and switch to non-SSL

2003-12-31 Thread bugzilla
/show_bug.cgi?id=25852 Error Session Creation under SSL and switch to non-SSL [EMAIL PROTECTED] changed: What|Removed |Added Status|NEW |RESOLVED

cvs commit: jakarta-tomcat-catalina/webapps/docs ssl-howto.xml

2003-12-17 Thread billbarker
billbarker2003/12/17 21:31:48 Modified:webapps/docs ssl-howto.xml Log: updating the SSL docs to match the code. Revision ChangesPath 1.10 +2 -1 jakarta-tomcat-catalina/webapps/docs/ssl-howto.xml Index: ssl-howto.xml

DO NOT REPLY [Bug 25038] New: - Tomcat and Mozilla SSL: error code -12229

2003-11-26 Thread bugzilla
/show_bug.cgi?id=25038 Tomcat and Mozilla SSL: error code -12229 Summary: Tomcat and Mozilla SSL: error code -12229 Product: Tomcat 4 Version: 4.1.27 Platform: PC OS/Version: Windows XP Status: NEW Severity: Major Priority

DO NOT REPLY [Bug 25038] - Tomcat and Mozilla SSL: error code -12229

2003-11-26 Thread bugzilla
/show_bug.cgi?id=25038 Tomcat and Mozilla SSL: error code -12229 [EMAIL PROTECTED] changed: What|Removed |Added Status|NEW |RESOLVED Resolution

DO NOT REPLY [Bug 17323] - Cancelled SSL connections cause Tomcat to stumble

2003-11-24 Thread bugzilla
/show_bug.cgi?id=17323 Cancelled SSL connections cause Tomcat to stumble --- Additional Comments From [EMAIL PROTECTED] 2003-11-25 01:29 --- Which build has this been fixed in? It still seems to occur in Tomcat 4.1.27. Is there a patch or workaround available without going to a nightly build

DO NOT REPLY [Bug 24563] - Problem with SSL authentication

2003-11-22 Thread bugzilla
/show_bug.cgi?id=24563 Problem with SSL authentication [EMAIL PROTECTED] changed: What|Removed |Added Status|NEW |RESOLVED Resolution

DO NOT REPLY [Bug 24563] New: - Problem with SSL authentication

2003-11-10 Thread bugzilla
/show_bug.cgi?id=24563 Problem with SSL authentication Summary: Problem with SSL authentication Product: Tomcat 4 Version: 4.1.27 Platform: PC OS/Version: Windows NT/2K Status: NEW Severity: Normal Priority: Other

DO NOT REPLY [Bug 22701] - commons-logging and SSL in tomcat with struts

2003-11-03 Thread bugzilla
/show_bug.cgi?id=22701 commons-logging and SSL in tomcat with struts --- Additional Comments From [EMAIL PROTECTED] 2003-11-03 19:58 --- I had same problem with 4.1.27. The patch works fine (javac statement is missing commons-logging.jar), and 4.1.29 also fixed the problem

DO NOT REPLY [Bug 24363] New: - SSL server will not work with Mozilla

2003-11-03 Thread bugzilla
/show_bug.cgi?id=24363 SSL server will not work with Mozilla Summary: SSL server will not work with Mozilla Product: Tomcat 5 Version: 5.0.12 Platform: Other OS/Version: Other Status: NEW Severity: Normal Priority: Other

DO NOT REPLY [Bug 24363] - SSL server will not work with Mozilla

2003-11-03 Thread bugzilla
/show_bug.cgi?id=24363 SSL server will not work with Mozilla [EMAIL PROTECTED] changed: What|Removed |Added Status|NEW |RESOLVED Resolution

DO NOT REPLY [Bug 24363] - SSL server will not work with Mozilla

2003-11-03 Thread bugzilla
/show_bug.cgi?id=24363 SSL server will not work with Mozilla --- Additional Comments From [EMAIL PROTECTED] 2003-11-03 22:50 --- I was unable to get Tomcat 5 to build on my Solaris machines, hence the use of the version from jwsdp

DO NOT REPLY [Bug 24363] - SSL server will not work with Mozilla

2003-11-03 Thread bugzilla
/show_bug.cgi?id=24363 SSL server will not work with Mozilla --- Additional Comments From [EMAIL PROTECTED] 2003-11-03 22:55 --- Just download a nightly build :-) instead. http://cvs.apache.org/builds/jakarta-tomcat-5/nightly/ -- Jeanfrancois

DO NOT REPLY [Bug 24363] - SSL server will not work with Mozilla

2003-11-03 Thread bugzilla
/show_bug.cgi?id=24363 SSL server will not work with Mozilla --- Additional Comments From [EMAIL PROTECTED] 2003-11-04 02:54 --- Yes, using the nightly build for Tomcat 5 made Mozilla work. Someone needs to beat on Sun. I installed jwsdp-1.3 without tomcat and copied the tomcat5/dist firectory

DO NOT REPLY [Bug 24363] - SSL server will not work with Mozilla

2003-11-03 Thread bugzilla
/show_bug.cgi?id=24363 SSL server will not work with Mozilla --- Additional Comments From [EMAIL PROTECTED] 2003-11-04 03:28 --- Thanks for the info. -- jeanfrancois.arcand at sun.com ;-) - To unsubscribe, e-mail: [EMAIL

DO NOT REPLY [Bug 23970] - form-based authentication and SSL, general principles

2003-10-25 Thread bugzilla
/show_bug.cgi?id=23970 form-based authentication and SSL, general principles --- Additional Comments From [EMAIL PROTECTED] 2003-10-25 16:25 --- All I want to do is encrypt a login form but not the pages the security-constraint protects. It's all well and good that the spec says

DO NOT REPLY [Bug 23970] - form-based authentication and SSL, general principles

2003-10-23 Thread bugzilla
/show_bug.cgi?id=23970 form-based authentication and SSL, general principles [EMAIL PROTECTED] changed: What|Removed |Added Status|NEW |RESOLVED

DO NOT REPLY [Bug 23970] New: - form-based authentication and SSL, general principles

2003-10-21 Thread bugzilla
/show_bug.cgi?id=23970 form-based authentication and SSL, general principles Summary: form-based authentication and SSL, general principles Product: Tomcat 5 Version: 5.0.12 Platform: Other OS/Version: Other Status: NEW Severity

DO NOT REPLY [Bug 23970] - form-based authentication and SSL, general principles

2003-10-21 Thread bugzilla
/show_bug.cgi?id=23970 form-based authentication and SSL, general principles --- Additional Comments From [EMAIL PROTECTED] 2003-10-21 14:48 --- Another alternative solution would be to allow the form-based authentication login page to submit to https://mydomain:8443/mycontext/j_security_check

DO NOT REPLY [Bug 23887] New: - FORM-based login with SSL broken in Mozilla (but not IE6)

2003-10-17 Thread bugzilla
/show_bug.cgi?id=23887 FORM-based login with SSL broken in Mozilla (but not IE6) Summary: FORM-based login with SSL broken in Mozilla (but not IE6) Product: Tomcat 5 Version: 5.0.12 Platform: PC OS/Version: Linux Status

DO NOT REPLY [Bug 23887] - FORM-based login with SSL broken in Mozilla (but not IE6)

2003-10-17 Thread bugzilla
/show_bug.cgi?id=23887 FORM-based login with SSL broken in Mozilla (but not IE6) --- Additional Comments From [EMAIL PROTECTED] 2003-10-17 10:20 --- Created an attachment (id=8605) deployment descriptor - To unsubscribe, e

DO NOT REPLY [Bug 23887] - FORM-based login with SSL broken in Mozilla (but not IE6)

2003-10-17 Thread bugzilla
/show_bug.cgi?id=23887 FORM-based login with SSL broken in Mozilla (but not IE6) --- Additional Comments From [EMAIL PROTECTED] 2003-10-17 10:22 --- Created an attachment (id=8606) test.war - To unsubscribe, e-mail: [EMAIL

DO NOT REPLY [Bug 23887] - FORM-based login with SSL broken in Mozilla (but not IE6)

2003-10-17 Thread bugzilla
/show_bug.cgi?id=23887 FORM-based login with SSL broken in Mozilla (but not IE6) [EMAIL PROTECTED] changed: What|Removed |Added Status|UNCONFIRMED |RESOLVED

DO NOT REPLY [Bug 23887] - FORM-based login with SSL broken in Mozilla (but not IE6)

2003-10-17 Thread bugzilla
/show_bug.cgi?id=23887 FORM-based login with SSL broken in Mozilla (but not IE6) --- Additional Comments From [EMAIL PROTECTED] 2003-10-17 17:58 --- Yes that is the problem. I've been tricked by the cache again. Caching is the one of my biggest sources of wasted time in looking for bugs

DO NOT REPLY [Bug 23887] - FORM-based login with SSL broken in Mozilla (but not IE6)

2003-10-17 Thread bugzilla
/show_bug.cgi?id=23887 FORM-based login with SSL broken in Mozilla (but not IE6) --- Additional Comments From [EMAIL PROTECTED] 2003-10-17 18:08 --- No, it's a Mozilla bug: Tomcat doesn't include a if-modified-since, and it is a secure connection, so it is wrong to cache this. BTW

DO NOT REPLY [Bug 23887] - FORM-based login with SSL broken in Mozilla (but not IE6)

2003-10-17 Thread bugzilla
/show_bug.cgi?id=23887 FORM-based login with SSL broken in Mozilla (but not IE6) --- Additional Comments From [EMAIL PROTECTED] 2003-10-17 18:19 --- OK I'll take your word for it. I'll log this at bugzilla.mozilla.org and let them think about it. Thanks for the information. Adam

DO NOT REPLY [Bug 23766] - cannot configure SSL for form-based authentication

2003-10-14 Thread bugzilla
/show_bug.cgi?id=23766 cannot configure SSL for form-based authentication --- Additional Comments From [EMAIL PROTECTED] 2003-10-14 11:49 --- Yes he is. - To unsubscribe, e-mail: [EMAIL PROTECTED] For additional commands, e

DO NOT REPLY [Bug 23766] - cannot configure SSL for form-based authentication

2003-10-14 Thread bugzilla
/show_bug.cgi?id=23766 cannot configure SSL for form-based authentication --- Additional Comments From [EMAIL PROTECTED] 2003-10-14 18:09 --- Remy isn't saying that and it clearly does work. It would be a spec violation if it did't. The web.xml below works for me (I was using it to test

DO NOT REPLY [Bug 23766] - cannot configure SSL for form-based authentication

2003-10-14 Thread bugzilla
/show_bug.cgi?id=23766 cannot configure SSL for form-based authentication --- Additional Comments From [EMAIL PROTECTED] 2003-10-14 18:26 --- Are you sure this runs under tomcat 5? It's just you've got a servlet 2.4 DTD reference. I know tomcat doesn't care, but just checking... Presuming

<    1   2   3   4   5   6   7   >