[jira] [Created] (MTOMCAT-210) Tomcat7 plugin fails in multi module project when test dependencies are present

2013-02-28 Thread Ludwig Magnusson (JIRA)
Ludwig Magnusson created MTOMCAT-210: Summary: Tomcat7 plugin fails in multi module project when test dependencies are present Key: MTOMCAT-210 URL: https://issues.apache.org/jira/browse/MTOMCAT-210

[Bug 54618] New: Add filter implementing HTTP Strict Transport Security (HSTS)

2013-02-28 Thread bugzilla
https://issues.apache.org/bugzilla/show_bug.cgi?id=54618 Bug ID: 54618 Summary: Add filter implementing HTTP Strict Transport Security (HSTS) Product: Tomcat 7 Version: unspecified Hardware: All OS: All

[Bug 54618] Add filter implementing HTTP Strict Transport Security (HSTS)

2013-02-28 Thread bugzilla
https://issues.apache.org/bugzilla/show_bug.cgi?id=54618 --- Comment #1 from Jens Borgland --- Created attachment 30001 --> https://issues.apache.org/bugzilla/attachment.cgi?id=30001&action=edit A test -- You are receiving this mail because: You are the assignee for the bug.

[Bug 54618] Add filter implementing HTTP Strict Transport Security (HSTS)

2013-02-28 Thread bugzilla
https://issues.apache.org/bugzilla/show_bug.cgi?id=54618 --- Comment #2 from Jens Borgland --- Created attachment 30002 --> https://issues.apache.org/bugzilla/attachment.cgi?id=30002&action=edit New error message property -- You are receiving this mail because: You are the assignee for the bu

[Bug 54618] Add filter implementing HTTP Strict Transport Security (HSTS)

2013-02-28 Thread bugzilla
https://issues.apache.org/bugzilla/show_bug.cgi?id=54618 Jens Borgland changed: What|Removed |Added CC||jens.borgl...@gmail.com -- You ar

[Bug 54618] Add filter implementing HTTP Strict Transport Security (HSTS)

2013-02-28 Thread bugzilla
https://issues.apache.org/bugzilla/show_bug.cgi?id=54618 --- Comment #3 from Jens Borgland --- Created attachment 30003 --> https://issues.apache.org/bugzilla/attachment.cgi?id=30003&action=edit Proposed implementation as unified diff -- You are receiving this mail because: You are the assign

[Bug 54619] New: JSSESocketFactory Webdav over SSL with windows explorer

2013-02-28 Thread bugzilla
https://issues.apache.org/bugzilla/show_bug.cgi?id=54619 Bug ID: 54619 Summary: JSSESocketFactory Webdav over SSL with windows explorer Product: Tomcat 7 Version: 7.0.37 Hardware: PC Status: NEW Severi

[Bug 54620] New: [PATCH] custom mod_jk availability checks

2013-02-28 Thread bugzilla
https://issues.apache.org/bugzilla/show_bug.cgi?id=54620 Bug ID: 54620 Summary: [PATCH] custom mod_jk availability checks Product: Tomcat Connectors Version: 1.2.37 Hardware: HP OS: Linux Status: NEW Sever

[Bug 54621] New: [PATCH] custom mod_jk availability checks

2013-02-28 Thread bugzilla
https://issues.apache.org/bugzilla/show_bug.cgi?id=54621 Bug ID: 54621 Summary: [PATCH] custom mod_jk availability checks Product: Tomcat Connectors Version: 1.2.37 Hardware: HP OS: Linux Status: NEW Sever

[Tomcat Wiki] Trivial Update of "FAQ/Monitoring" by KonstantinKolinko

2013-02-28 Thread Apache Wiki
Dear Wiki user, You have subscribed to a wiki page or wiki category on "Tomcat Wiki" for change notification. The "FAQ/Monitoring" page has been changed by KonstantinKolinko: http://wiki.apache.org/tomcat/FAQ/Monitoring?action=diff&rev1=10&rev2=11 Comment: Add this page to FAQ category Pl

[Bug 54620] [PATCH] custom mod_jk availability checks

2013-02-28 Thread bugzilla
https://issues.apache.org/bugzilla/show_bug.cgi?id=54620 Alan F changed: What|Removed |Added Status|NEW |RESOLVED Resolution|---

[Bug 54621] [PATCH] custom mod_jk availability checks

2013-02-28 Thread bugzilla
https://issues.apache.org/bugzilla/show_bug.cgi?id=54621 --- Comment #1 from Alan F --- *** Bug 54620 has been marked as a duplicate of this bug. *** -- You are receiving this mail because: You are the assignee for the bug. -

[Bug 46676] Configurable test request for Watchdog thread

2013-02-28 Thread bugzilla
https://issues.apache.org/bugzilla/show_bug.cgi?id=46676 --- Comment #2 from Alan F --- Maybe you're not interested in this anymore, but I wrote a patch to do this. See here: https://issues.apache.org/bugzilla/show_bug.cgi?id=54621 -- You are receiving this mail because: You are the assignee f

[Bug 54604] NPE at InternalInputBuffer.java while using AsyncContext

2013-02-28 Thread bugzilla
https://issues.apache.org/bugzilla/show_bug.cgi?id=54604 Prakasaraman.V changed: What|Removed |Added Status|RESOLVED|REOPENED Resolution|INVAL

[Bug 54619] JSSESocketFactory Webdav over SSL with windows explorer

2013-02-28 Thread bugzilla
https://issues.apache.org/bugzilla/show_bug.cgi?id=54619 Konstantin Kolinko changed: What|Removed |Added OS||All --- Comment #1 from Konst

[Bug 54621] [PATCH] custom mod_jk availability checks

2013-02-28 Thread bugzilla
https://issues.apache.org/bugzilla/show_bug.cgi?id=54621 Mark Thomas changed: What|Removed |Added CC||gerhardus.geldenhuis@gmail.

[Bug 46676] Configurable test request for Watchdog thread

2013-02-28 Thread bugzilla
https://issues.apache.org/bugzilla/show_bug.cgi?id=46676 Mark Thomas changed: What|Removed |Added Status|NEW |RESOLVED Resolution|---

[Bug 54604] NPE at InternalInputBuffer.java while using AsyncContext

2013-02-28 Thread bugzilla
https://issues.apache.org/bugzilla/show_bug.cgi?id=54604 Mark Thomas changed: What|Removed |Added Status|REOPENED|RESOLVED Resolution|---

[Bug 54619] JSSESocketFactory Webdav over SSL with windows explorer

2013-02-28 Thread bugzilla
https://issues.apache.org/bugzilla/show_bug.cgi?id=54619 Mark Thomas changed: What|Removed |Added Status|NEW |RESOLVED Resolution|---

[Bug 54618] Add filter implementing HTTP Strict Transport Security (HSTS)

2013-02-28 Thread bugzilla
https://issues.apache.org/bugzilla/show_bug.cgi?id=54618 --- Comment #4 from Mark Thomas --- HSTS has a fairly major hole: the bootstrap MITM problem. There are suggested solutions but the current pre-loaded lists contain a very small number of sites. Further, the practicalities of trying to buil

[Bug 54618] Add filter implementing HTTP Strict Transport Security (HSTS)

2013-02-28 Thread bugzilla
https://issues.apache.org/bugzilla/show_bug.cgi?id=54618 --- Comment #5 from Jens Borgland --- I agree that the bootstrapping is a problem (and it's recognized in the RFC as well) but I still think that HSTS helps reduce the attack window quite drastically and therefore has significant benefits.

[Bug 54621] [PATCH] custom mod_jk availability checks

2013-02-28 Thread bugzilla
https://issues.apache.org/bugzilla/show_bug.cgi?id=54621 Rainer Jung changed: What|Removed |Added Keywords||PatchAvailable -- You are receiving

[Bug 54602] B2CConverter character decode underflow leaves bytes in buffer

2013-02-28 Thread bugzilla
https://issues.apache.org/bugzilla/show_bug.cgi?id=54602 --- Comment #2 from Mark Thomas --- Part of the problem here is that the UTF-8 decoder should reject bytes 5-8 as an invalid sequence but doesn't. That is a JVM bug that needs to be reported to Oracle. Given the widespread use of UTF-8 I s

[Bug 54602] B2CConverter character decode underflow leaves bytes in buffer

2013-02-28 Thread bugzilla
https://issues.apache.org/bugzilla/show_bug.cgi?id=54602 --- Comment #3 from NateC --- InputStreamReader defaults to replacement characters so it won't reject those characters just replace them with the replacement. The underlying InputStreamReader holds on to those remaining bytes because it is

[jira] [Created] (MTOMCAT-211) The .war file is not extracted from executable war

2013-02-28 Thread Petr Novak (JIRA)
Petr Novak created MTOMCAT-211: -- Summary: The .war file is not extracted from executable war Key: MTOMCAT-211 URL: https://issues.apache.org/jira/browse/MTOMCAT-211 Project: Apache Tomcat Maven Plugin

[jira] [Updated] (MTOMCAT-211) The .war file is not extracted from executable war

2013-02-28 Thread Petr Novak (JIRA)
[ https://issues.apache.org/jira/browse/MTOMCAT-211?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Petr Novak updated MTOMCAT-211: --- Attachment: maven-tomcat-test.zip maven-tomcat-test-0.0.1-SNAPSHOT-war-exec.jar The

[jira] [Comment Edited] (MTOMCAT-211) The .war file is not extracted from executable war

2013-02-28 Thread Petr Novak (JIRA)
[ https://issues.apache.org/jira/browse/MTOMCAT-211?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=13589899#comment-13589899 ] Petr Novak edited comment on MTOMCAT-211 at 2/28/13 8:56 PM: -

[jira] [Commented] (MTOMCAT-211) The .war file is not extracted from executable war

2013-02-28 Thread Petr Novak (JIRA)
[ https://issues.apache.org/jira/browse/MTOMCAT-211?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=13589921#comment-13589921 ] Petr Novak commented on MTOMCAT-211: I tried some changes in configuration and detect

[Tomcat Wiki] Trivial Update of "LynwoodSn" by LynwoodSn

2013-02-28 Thread Apache Wiki
Dear Wiki user, You have subscribed to a wiki page or wiki category on "Tomcat Wiki" for change notification. The "LynwoodSn" page has been changed by LynwoodSn: http://wiki.apache.org/tomcat/LynwoodSn New page: Nothing to say about myself at all.<> <> Also visit my web-site; [[http://www.etsy

[Tomcat Wiki] Update of "LocalBadContent" by ChuckCaldarale

2013-02-28 Thread Apache Wiki
Dear Wiki user, You have subscribed to a wiki page or wiki category on "Tomcat Wiki" for change notification. The "LocalBadContent" page has been changed by ChuckCaldarale: http://wiki.apache.org/tomcat/LocalBadContent?action=diff&rev1=74&rev2=75 envy\.nu erectiledysfunctiontreatment\.org

[Bug 54624] New: Form authenticator hangs on re-authentication of POST request behind mod_proxy_ajp

2013-02-28 Thread bugzilla
https://issues.apache.org/bugzilla/show_bug.cgi?id=54624 Bug ID: 54624 Summary: Form authenticator hangs on re-authentication of POST request behind mod_proxy_ajp Product: Tomcat 7 Version: 7.0.37 Hardware: All

svn commit: r1451408 - in /tomcat/trunk: java/org/apache/tomcat/util/buf/B2CConverter.java test/org/apache/tomcat/util/buf/TestB2CConverter.java

2013-02-28 Thread markt
Author: markt Date: Thu Feb 28 22:37:14 2013 New Revision: 1451408 URL: http://svn.apache.org/r1451408 Log: Add test for size of leftover buffer and increase buffer size to support more character sets Modified: tomcat/trunk/java/org/apache/tomcat/util/buf/B2CConverter.java tomcat/trunk/t

svn commit: r1451434 - in /tomcat/trunk: java/org/apache/tomcat/util/buf/B2CConverter.java test/org/apache/tomcat/util/buf/TestB2CConverter.java

2013-02-28 Thread markt
Author: markt Date: Thu Feb 28 23:30:14 2013 New Revision: 1451434 URL: http://svn.apache.org/r1451434 Log: Add option to converter so client can indicate no more input is available Add some more tests for BZ54602 TODO: Review the use of the now deprecated code Modified: tomcat/trunk/java/org

[Bug 54602] B2CConverter character decode underflow leaves bytes in buffer

2013-02-28 Thread bugzilla
https://issues.apache.org/bugzilla/show_bug.cgi?id=54602 --- Comment #4 from Mark Thomas --- The original report was about URI processing. Now you are talking about request bodies. There are multiple issues here. So far I have found / suspect: a) Invalid sequences are not rejected quickly enough

[Bug 54602] B2CConverter character decode underflow leaves bytes in buffer

2013-02-28 Thread bugzilla
https://issues.apache.org/bugzilla/show_bug.cgi?id=54602 --- Comment #5 from NateC --- Where do you think I started talking about request bodies? org.apache.catalina.connector.Request uses a B2CConverter for URIDecoding the variable is called URIConverter. B2CConverter uses ReadConverter, which