Return-Path: Delivered-To: apmail-geronimo-user-archive@www.apache.org Received: (qmail 44044 invoked from network); 30 Nov 2007 00:54:51 -0000 Received: from hermes.apache.org (HELO mail.apache.org) (140.211.11.2) by minotaur.apache.org with SMTP; 30 Nov 2007 00:54:51 -0000 Received: (qmail 22476 invoked by uid 500); 30 Nov 2007 00:54:32 -0000 Delivered-To: apmail-geronimo-user-archive@geronimo.apache.org Received: (qmail 22453 invoked by uid 500); 30 Nov 2007 00:54:32 -0000 Mailing-List: contact user-help@geronimo.apache.org; run by ezmlm Precedence: bulk list-help: list-unsubscribe: List-Post: Reply-To: user@geronimo.apache.org List-Id: Delivered-To: mailing list user@geronimo.apache.org Received: (qmail 22437 invoked by uid 99); 30 Nov 2007 00:54:32 -0000 Received: from athena.apache.org (HELO athena.apache.org) (140.211.11.136) by apache.org (qpsmtpd/0.29) with ESMTP; Thu, 29 Nov 2007 16:54:32 -0800 X-ASF-Spam-Status: No, hits=4.0 required=10.0 tests=DNS_FROM_OPENWHOIS,FORGED_YAHOO_RCVD,SPF_HELO_PASS,SPF_PASS,WHOIS_MYPRIVREG X-Spam-Check-By: apache.org Received-SPF: pass (athena.apache.org: domain of lists@nabble.com designates 216.139.236.158 as permitted sender) Received: from [216.139.236.158] (HELO kuber.nabble.com) (216.139.236.158) by apache.org (qpsmtpd/0.29) with ESMTP; Fri, 30 Nov 2007 00:54:11 +0000 Received: from isper.nabble.com ([192.168.236.156]) by kuber.nabble.com with esmtp (Exim 4.63) (envelope-from ) id 1Ixu8z-0002jN-Hi for user@geronimo.apache.org; Thu, 29 Nov 2007 16:54:13 -0800 Message-ID: <14038563.post@talk.nabble.com> Date: Thu, 29 Nov 2007 16:54:13 -0800 (PST) From: abpb2006 To: user@geronimo.apache.org Subject: Re: How to shut donwn one of the instances on Gronimo while they were started by Multiple server command cmd line In-Reply-To: MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Transfer-Encoding: 7bit X-Nabble-From: abpb2006@yahoo.com References: <14020472.post@talk.nabble.com> <1b5bfeb50711282316j5c753606o59c2d6d614af6260@mail.gmail.com> <14020710.post@talk.nabble.com> <1b5bfeb50711282346o719c797h6e1dabf24b51324d@mail.gmail.com> <14021262.post@talk.nabble.com> <1b5bfeb50711290037g321ff715s5f01abd7bab9a653@mail.gmail.com> <14035947.post@talk.nabble.com> X-Virus-Checked: Checked by ClamAV on apache.org it was indeed very helpful david one more quick ques... It want to increase the port offset size currnently its only taking max of 4000 ....how can i increase the portoffset limit this is really required in our setup. Any pointers for me? thanks in advance again. ABPB djencks wrote: > > > On Nov 29, 2007, at 1:49 PM, abpb2006 wrote: > >> >> oh i see. thanks. >> >> Where and how do we change the default credentials for every user >> instance? > > In trunk and perhaps 2.0.2 the default security config is configured > in the server-security-config module. It's set up to use the > properties file login module. In trunk this is set up as a plugin > and the default properties files are included in the plugin. For > serious usage I'd recommend coming up with your own real-server- > security-config module using kerberos/ldap/sql/whatever and replacing > the default one with it using artifact_aliases.properties. > > If you want to keep using the toy properties file login module but > just change the credentials you can edit var/security/ > users.properties and var/security/groups.properties. The admin group > gets remote deploy/lifecycle access. > > hope this helps > david jencks > >> >> >> >> >> Jacek Laskowski wrote: >>> >>> On Nov 29, 2007 9:27 AM, abpb2006 wrote: >>> >>>> What impact its gonna have evn if we use the same default user >>>> name and >>>> pwd >>>> i.e. SYSTEM and MANAGER for all the instances.....can one user >>>> instance >>>> mess >>>> other users deployed application/settings etc ? >>> >>> If you ask about Geronimos working together to rule the world, I'd >>> say >>> it's not possible..today perhaps tomorrow ;-) Seriously, when someone >>> breaches one geronimo instance without knowing the admin credentials >>> (s)he cannot do much on another Geronimo instance - they're separate >>> entities and any outside connection is (supposed to be) authorized. >>> It's not recommended to leave the default system credentials >>> active as >>> it's widely known to everybody who has worked with Geronimo or wants >>> to pass its security fence. >>> >>> Jacek >>> >>> -- >>> Jacek Laskowski >>> http://www.JacekLaskowski.pl >>> >>> >> >> -- >> View this message in context: http://www.nabble.com/How-to-shut- >> donwn-one-of-the-instances-on-Gronimo-while-they-were-started-by- >> Multiple-server-command-cmd-line-tf4895464s134.html#a14035947 >> Sent from the Apache Geronimo - Users mailing list archive at >> Nabble.com. >> > > > -- View this message in context: http://www.nabble.com/How-to-shut-donwn-one-of-the-instances-on-Gronimo-while-they-were-started-by-Multiple-server-command-cmd-line-tf4895464s134.html#a14038563 Sent from the Apache Geronimo - Users mailing list archive at Nabble.com.