tomcat-users mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From "Turner, John" <JTur...@AAS.com>
Subject RE: Tomcat as root and security issues
Date Thu, 13 Feb 2003 18:31:28 GMT

Neat.  HOWTO? :)

John

> -----Original Message-----
> From: Mike Jackson [mailto:mjackson@cdi-hq.com]
> Sent: Thursday, February 13, 2003 1:31 PM
> To: Tomcat Users List
> Subject: RE: Tomcat as root and security issues
> 
> 
> Run squid in as a web accelerator in front of tomcat.  Has the added
> advatange that static content will be served with less load on tomcat.
> 
> --mikej
> -=-----
> mike jackson
> mjackson@cdi-hq.com
> 
> > -----Original Message-----
> > From: Turner, John [mailto:JTurner@AAS.com]
> > Sent: Thursday, February 13, 2003 10:27 AM
> > To: 'Tomcat Users List'
> > Subject: RE: Tomcat as root and security issues
> >
> >
> >
> > There are other alternatives, as well:
> >
> > - use a port forwarder to forward port 80 to port 8080 (or some
> > other port)
> > - use a tool like authbind and its kin
> > - use chroot (there was a discussion about this on tomcat-dev but
> > it didn't
> > look easy)
> > - probably more
> >
> > John
> >
> >
> > > -----Original Message-----
> > > From: Jake Robb [mailto:jakerobb@mac.com]
> > > Sent: Thursday, February 13, 2003 1:23 PM
> > > To: Tomcat Users List
> > > Subject: Re: Tomcat as root and security issues
> > >
> > >
> > > Use Apache and a connector like mod_jk.  In this setup,
> > > Tomcat typically
> > > runs on port 8009, and Apache uses the connector to send
> > > relevant requests
> > > to Tomcat.
> > >
> > > -Jake
> > >
> > > ----- Original Message -----
> > > From: "McBrayer, Roy" <Roy.McBrayer@mail.va.gov>
> > > To: "'Tomcat Users List'" <tomcat-user@jakarta.apache.org>
> > > Sent: Thursday, February 13, 2003 1:20 PM
> > > Subject: Tomcat as root and security issues
> > >
> > >
> > > > I received a response to a question on Tomcat security that
> > > said if I
> > > wanted
> > > > to run Tomcat as standalone on port 80, I might have to
> > > > run it as root and this was potentially unsafe. What
> > > methods are available
> > > > to avoid these  potentially unsafe issues?
> > > >
> > > > Thanks,
> > > > Roy McBrayer
> > > >
> > > > -----Original Message-----
> > > > From: Xiongfei Wang [mailto:wangxf@arches.uga.edu]
> > > > Sent: Thursday, February 13, 2003 12:10 PM
> > > > To: Tomcat Users List
> > > > Subject: Re: problem in apache-tomacat virtual hosting
> > > >
> > > >
> > > > I guess I need separate server.xml for each virtual host.
> > > Can anybody
> > > > give some suggestions or point to some website i can set up
> > > > multiple server.xml for each virtual host?
> > > >
> > > > Thanks
> > > >
> > > >
> > > >
> > > > On Thu, 13 Feb 2003, Xiongfei Wang wrote:
> > > >
> > > > > I have install apache-tomcat in my redhat7.3 server.
> > > thanks for all
> > > > > howtos (John's and others)
> > > > >
> > > > > I have a new problem. I have apache virtual host in my
> > > server. Now.
> > > > > if i do http://myvirtualhost1/examples, and
> > > http://myvirtualhost/examples
> > > > > the point to the servelet jsp example page. Is there a
> > > way i can set up
> > > > > apache-tomcat vitual host? In this i can keep some info
> > > not shareed by
> > > two
> > > > > vitualhost?
> > > > >
> > > > > Thanks
> > > > >
> > > > >
> > > > >
> > > 
> ---------------------------------------------------------------------
> > > > > To unsubscribe, e-mail: 
> tomcat-user-unsubscribe@jakarta.apache.org
> > > > > For additional commands, e-mail:
> > > tomcat-user-help@jakarta.apache.org
> > > > >
> > > >
> > > >
> > > >
> > > 
> ---------------------------------------------------------------------
> > > > To unsubscribe, e-mail: 
> tomcat-user-unsubscribe@jakarta.apache.org
> > > > For additional commands, e-mail: 
> tomcat-user-help@jakarta.apache.org
> > > >
> > > >
> > > 
> ---------------------------------------------------------------------
> > > > To unsubscribe, e-mail: 
> tomcat-user-unsubscribe@jakarta.apache.org
> > > > For additional commands, e-mail: 
> tomcat-user-help@jakarta.apache.org
> > > >
> > >
> > >
> > > 
> ---------------------------------------------------------------------
> > > To unsubscribe, e-mail: tomcat-user-unsubscribe@jakarta.apache.org
> > > For additional commands, e-mail: 
> tomcat-user-help@jakarta.apache.org
> > >
> >
> > 
> ---------------------------------------------------------------------
> > To unsubscribe, e-mail: tomcat-user-unsubscribe@jakarta.apache.org
> > For additional commands, e-mail: tomcat-user-help@jakarta.apache.org
> >
> 
> 
> 
> ---------------------------------------------------------------------
> To unsubscribe, e-mail: tomcat-user-unsubscribe@jakarta.apache.org
> For additional commands, e-mail: tomcat-user-help@jakarta.apache.org
> 

---------------------------------------------------------------------
To unsubscribe, e-mail: tomcat-user-unsubscribe@jakarta.apache.org
For additional commands, e-mail: tomcat-user-help@jakarta.apache.org


Mime
View raw message