tomcat-dev mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From bugzi...@apache.org
Subject DO NOT REPLY [Bug 7344] New: - Tomcat appears to be case-sensitive with regard to the token "Basic" in Authorization request parameter
Date Fri, 22 Mar 2002 03:24:34 GMT
DO NOT REPLY TO THIS EMAIL, BUT PLEASE POST YOUR BUG 
RELATED COMMENTS THROUGH THE WEB INTERFACE AVAILABLE AT
<http://nagoya.apache.org/bugzilla/show_bug.cgi?id=7344>.
ANY REPLY MADE TO THIS MESSAGE WILL NOT BE COLLECTED AND 
INSERTED IN THE BUG DATABASE.

http://nagoya.apache.org/bugzilla/show_bug.cgi?id=7344

Tomcat appears to be case-sensitive with regard to the token "Basic" in Authorization request
parameter

           Summary: Tomcat appears to be case-sensitive with regard to the
                    token "Basic" in Authorization request parameter
           Product: Tomcat 4
           Version: 4.0 Final
          Platform: All
        OS/Version: All
            Status: NEW
          Severity: Normal
          Priority: Other
         Component: Catalina
        AssignedTo: tomcat-dev@jakarta.apache.org
        ReportedBy: derrick@misfit.com


While using OpenSTA for developing some automated tests, I noticed that it 
generates its Authorization string as follows:
Authorization: BASIC lkjdflkjfdslkjfsdlkjsfd

This seemed to cause problems with Tomcat 4, until we manually forced the 
string to be:
Authorization: Basic lkjfdjkldsjklfdsjkllkjkjl

RFC for HTTP says that the token identifying the authorization type should be 
case-insensitive (http://www-old.ics.uci.edu/pub/ietf/http/rfc1945.html#AA)

--
To unsubscribe, e-mail:   <mailto:tomcat-dev-unsubscribe@jakarta.apache.org>
For additional commands, e-mail: <mailto:tomcat-dev-help@jakarta.apache.org>


Mime
View raw message