> I strongly advise against doing this. Unless you know *exactly* what you are
> doing it is far too easy to open a whole can of security worms, the most
> regularly seen of which is source code disclosure of all of the JSPs on the
> site.

Even if I have:-

JkMount /*.jsp my-worker
JkMount /*.do my-worker
JkMount /my/servlet* my-worker

in my httpd.conf? Or are there some other security considerations I
should be aware of?

Thanks,
Phil.

---------------------------------------------------------------------
To start a new topic, e-mail: users@tomcat.apache.org
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]

Reply via email to