Shane

Tomcat hardening: Those links provide some basic advice but if your Tomcat is on a secure machine with the firewall only allowing access to port 8080 or whatever the HTTP port would be, you're half way there.

Reviewing the applications running on Tomcat is also important. Mid Tier 5.x had a great feature where by you could delete local files, if I recall. That 'feature' has long gone but there may be others.


John

_______________________________________________________________________________
UNSUBSCRIBE or access ARSlist Archives at www.arslist.org
attend wwrug12 www.wwrug12.com ARSList: "Where the Answers Are"

Reply via email to