I got container-managed form-based authentication and logout working properly, and I'm just curious: where does Tomcat store the user information? It doesn't seem to create any new attributes for the authentication information. Is that purely internal and completely hidden from the application developer?
-- To unsubscribe: <mailto:[EMAIL PROTECTED]> For additional commands: <mailto:[EMAIL PROTECTED]> Troubles with the list: <mailto:[EMAIL PROTECTED]>