Hi,

yes, it seems like the ICEfaces framework counts on correct web client behavior. That's in fact bad design and makes it easy to run a DoS attack against an ICEfaces application.

At the end of my test I included an invoke step which calls the /block/dispose-views URL via POST using the ice session of the cookie as content. In addition to that I reduced the session timeout in web.xml and gave more heap memory to the application server. But the invoke step doesn't really belong to the test. So, I wonder if there is no support from WebTest/HtmlUnit?


Bye, Stefan

_______________________________________________
WebTest mailing list
[email protected]
http://lists.canoo.com/mailman/listinfo/webtest

Reply via email to