Shane
Tomcat hardening: Those links provide some basic advice but if your
Tomcat is on a secure machine with the firewall only allowing access to
port 8080 or whatever the HTTP port would be, you're half way there.
Reviewing the applications running on Tomcat is also important. Mid Tier
5.x had a great feature where by you could delete local files, if I
recall. That 'feature' has long gone but there may be others.
John
_______________________________________________________________________________
UNSUBSCRIBE or access ARSlist Archives at www.arslist.org
attend wwrug12 www.wwrug12.com ARSList: "Where the Answers Are"