On 2015-02-26 Aurélien Terrestris wrote: > > It makes me remember this doc which is not bad for securing Tomcat : > https://www.owasp.org/index.php/Securing_tomcat >
This is a good one. I've also found this: http://server.dzone.com/articles/hacking-liferay-%E2%80%93-securing It would be nice to compile it into some 'best practices' article published as part of Tomcat documentation. Jan --------------------------------------------------------------------- To unsubscribe, e-mail: users-unsubscr...@tomcat.apache.org For additional commands, e-mail: users-h...@tomcat.apache.org