Re: Security issue regarding JSESSIONID cookie

2012-09-28 Thread malibo8...@gmail.com
t:8443/ > # ProxyPassReverse / https://localhost:8443/ > # SSLVerifyClient none > # > > On Fri, Sep 28, 2012 at 2:52 PM, malibo8...@gmail.com > wrote: > > > actually, there is no news to configure SSL both in Apache and tomcat. > just > > one side is okay. Apache or tomca

RE: Security issue regarding JSESSIONID cookie

2012-09-28 Thread malibo8...@gmail.com
actually, there is no news to configure SSL both in Apache and tomcat. just one side is okay. Apache or tomcat. 在 2012-9-28 下午2:01,"Martin Gainty" 写道: > > you'll need to configure Apache mod_ssl to implement either Basic or > SSLRequire authentication > http://httpd.apache.org/docs/2.2/ssl/ssl_ho