Return-Path: Delivered-To: apmail-tomcat-users-archive@www.apache.org Received: (qmail 5916 invoked from network); 1 Dec 2006 21:10:53 -0000 Received: from hermes.apache.org (HELO mail.apache.org) (140.211.11.2) by minotaur.apache.org with SMTP; 1 Dec 2006 21:10:53 -0000 Received: (qmail 90966 invoked by uid 500); 1 Dec 2006 21:10:46 -0000 Delivered-To: apmail-tomcat-users-archive@tomcat.apache.org Received: (qmail 90673 invoked by uid 500); 1 Dec 2006 21:10:45 -0000 Mailing-List: contact users-help@tomcat.apache.org; run by ezmlm Precedence: bulk List-Help: List-Unsubscribe: List-Post: List-Id: Reply-To: "Tomcat Users List" Delivered-To: mailing list users@tomcat.apache.org Received: (qmail 90662 invoked by uid 99); 1 Dec 2006 21:10:45 -0000 Received: from herse.apache.org (HELO herse.apache.org) (140.211.11.133) by apache.org (qpsmtpd/0.29) with ESMTP; Fri, 01 Dec 2006 13:10:45 -0800 X-ASF-Spam-Status: No, hits=2.0 required=10.0 tests=RCVD_IN_BL_SPAMCOP_NET,SPF_HELO_PASS,SPF_PASS X-Spam-Check-By: apache.org Received-SPF: pass (herse.apache.org: domain of miki@ceti.pl designates 62.121.128.10 as permitted sender) Received: from [62.121.128.10] (HELO relay.ceti.pl) (62.121.128.10) by apache.org (qpsmtpd/0.29) with ESMTP; Fri, 01 Dec 2006 13:10:32 -0800 Received: from tau.ceti.pl (tau.ceti.pl [62.121.128.11]) by relay.ceti.pl (Postfix) with ESMTP id 2F937D4FB4 for ; Fri, 1 Dec 2006 22:10:10 +0100 (CET) Received: from [192.168.0.101] (host-ip194-227.crowley.pl [62.111.227.194]) by tau.ceti.pl (Postfix) with ESMTP id 676E2202FED for ; Fri, 1 Dec 2006 22:10:10 +0100 (CET) Message-ID: <45709A30.3020502@ceti.pl> Date: Fri, 01 Dec 2006 22:10:08 +0100 From: Mikolaj Rydzewski User-Agent: Thunderbird 1.5.0.8 (X11/20061119) MIME-Version: 1.0 To: Tomcat Users List Subject: Re: Web spiders - disabling jsessionid References: In-Reply-To: Content-Type: multipart/signed; protocol="application/x-pkcs7-signature"; micalg=sha1; boundary="------------ms030404080503020101030500" X-Virus-Checked: Checked by ClamAV on apache.org --------------ms030404080503020101030500 Content-Type: text/plain; charset=ISO-8859-2; format=flowed Content-Transfer-Encoding: 7bit Caldarale, Charles R wrote: >> That's not true. A session id is assigned the moment you hit >> the site. >> > > That contradicts what Len said about his site: > > "On my site (as on many others) you can browse the site without a > session, but if you want to log in (to add content or to use > personalized settings) you need a session." > I can't believe you don't get it ;-) One can browse the site without a session (read: not using a session already provided by the container), but after login you simply start using a session (i.e. to store user context object). > And it's certainly not true that Tomcat automatically creates a > sessionid for every connection. Creating one is up to the webapps of > interest. > Probably. Filter with wrapper ServletResponse is IMO the best solution. You can apply it to almost every application without touching the code. -- Mikolaj Rydzewski http://ceti.pl/~miki/ PGP KeyID: 8b12ab02 There are three kinds of people: men, women and unix. --------------ms030404080503020101030500 Content-Type: application/x-pkcs7-signature; name="smime.p7s" Content-Transfer-Encoding: base64 Content-Disposition: attachment; filename="smime.p7s" Content-Description: S/MIME Cryptographic Signature MIAGCSqGSIb3DQEHAqCAMIACAQExCzAJBgUrDgMCGgUAMIAGCSqGSIb3DQEHAQAAoIIJwTCC AzswggKkoAMCAQICEFOQ1xgDgtvHcHmAlXWrio4wDQYJKoZIhvcNAQEEBQAwYjELMAkGA1UE BhMCWkExJTAjBgNVBAoTHFRoYXd0ZSBDb25zdWx0aW5nIChQdHkpIEx0ZC4xLDAqBgNVBAMT I1RoYXd0ZSBQZXJzb25hbCBGcmVlbWFpbCBJc3N1aW5nIENBMB4XDTA2MDIxNTIyMzMwOVoX DTA3MDIxNTIyMzMwOVowgY8xEjAQBgNVBAQTCVJ5ZHpld3NraTEVMBMGA1UEKgwMTWlrbyYj MzIyO2FqMR8wHQYDVQQDDBZNaWtvJiMzMjI7YWogUnlkemV3c2tpMRswGQYJKoZIhvcNAQkB FgxtaWtpQGNldGkucGwxJDAiBgkqhkiG9w0BCQEWFW1pa29sYWpAcnlkemV3c2tpLm9yZzCC ASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAN1eD7unCEYT0MEIVhmSzeTle78UW2Vv aJgzqXvqIOQscRN0DNx1tccXUW9pmsGDK3MtFQD2SWAevW9esF1Xh4Y5iGHiL0MDUEpuTgIr qZw+ui1qWcWXMux/0jwtlWwdb+7aGjK+7DgnxD07U5Y8+qE5xHZpNqxwdLFsNuM3+IKNNhGt CIV2LAHQ2WH3d1/HXdxA5bLAOF8CYrJrNQwucHPxPyCE9IIyw82VAsdUu7O7C+6blgOGUO1I tV4fLxG6UrTkG2kW5nOcUhq8H9IxWco1jO8zRJ8+f7zCS7afZmjrMw+te0qmNBvnixSmKZPa Q+4JI7vXmegzFGlGn4E9faMCAwEAAaNAMD4wLgYDVR0RBCcwJYEMbWlraUBjZXRpLnBsgRVt aWtvbGFqQHJ5ZHpld3NraS5vcmcwDAYDVR0TAQH/BAIwADANBgkqhkiG9w0BAQQFAAOBgQCF uDcx/OZY6d2TOgaq2/2ZXg96SNcwz4JOgY/8Tr+goW8uJr47GOBe8JP6Wgr/Arjne3ZH5JWy Nf8rtDqxfVL7Oj67wqpdOWYGLemRLhKfT9zFvNP0JnUDxiBHoeoh/XlUl+xZwU43J/7YEOX2 VwZFWI0Kz2iWIYtElh1+7xyBWzCCAzswggKkoAMCAQICEFOQ1xgDgtvHcHmAlXWrio4wDQYJ KoZIhvcNAQEEBQAwYjELMAkGA1UEBhMCWkExJTAjBgNVBAoTHFRoYXd0ZSBDb25zdWx0aW5n IChQdHkpIEx0ZC4xLDAqBgNVBAMTI1RoYXd0ZSBQZXJzb25hbCBGcmVlbWFpbCBJc3N1aW5n IENBMB4XDTA2MDIxNTIyMzMwOVoXDTA3MDIxNTIyMzMwOVowgY8xEjAQBgNVBAQTCVJ5ZHpl d3NraTEVMBMGA1UEKgwMTWlrbyYjMzIyO2FqMR8wHQYDVQQDDBZNaWtvJiMzMjI7YWogUnlk emV3c2tpMRswGQYJKoZIhvcNAQkBFgxtaWtpQGNldGkucGwxJDAiBgkqhkiG9w0BCQEWFW1p a29sYWpAcnlkemV3c2tpLm9yZzCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAN1e D7unCEYT0MEIVhmSzeTle78UW2VvaJgzqXvqIOQscRN0DNx1tccXUW9pmsGDK3MtFQD2SWAe vW9esF1Xh4Y5iGHiL0MDUEpuTgIrqZw+ui1qWcWXMux/0jwtlWwdb+7aGjK+7DgnxD07U5Y8 +qE5xHZpNqxwdLFsNuM3+IKNNhGtCIV2LAHQ2WH3d1/HXdxA5bLAOF8CYrJrNQwucHPxPyCE 9IIyw82VAsdUu7O7C+6blgOGUO1ItV4fLxG6UrTkG2kW5nOcUhq8H9IxWco1jO8zRJ8+f7zC S7afZmjrMw+te0qmNBvnixSmKZPaQ+4JI7vXmegzFGlGn4E9faMCAwEAAaNAMD4wLgYDVR0R BCcwJYEMbWlraUBjZXRpLnBsgRVtaWtvbGFqQHJ5ZHpld3NraS5vcmcwDAYDVR0TAQH/BAIw ADANBgkqhkiG9w0BAQQFAAOBgQCFuDcx/OZY6d2TOgaq2/2ZXg96SNcwz4JOgY/8Tr+goW8u Jr47GOBe8JP6Wgr/Arjne3ZH5JWyNf8rtDqxfVL7Oj67wqpdOWYGLemRLhKfT9zFvNP0JnUD xiBHoeoh/XlUl+xZwU43J/7YEOX2VwZFWI0Kz2iWIYtElh1+7xyBWzCCAz8wggKooAMCAQIC AQ0wDQYJKoZIhvcNAQEFBQAwgdExCzAJBgNVBAYTAlpBMRUwEwYDVQQIEwxXZXN0ZXJuIENh cGUxEjAQBgNVBAcTCUNhcGUgVG93bjEaMBgGA1UEChMRVGhhd3RlIENvbnN1bHRpbmcxKDAm BgNVBAsTH0NlcnRpZmljYXRpb24gU2VydmljZXMgRGl2aXNpb24xJDAiBgNVBAMTG1RoYXd0 ZSBQZXJzb25hbCBGcmVlbWFpbCBDQTErMCkGCSqGSIb3DQEJARYccGVyc29uYWwtZnJlZW1h aWxAdGhhd3RlLmNvbTAeFw0wMzA3MTcwMDAwMDBaFw0xMzA3MTYyMzU5NTlaMGIxCzAJBgNV BAYTAlpBMSUwIwYDVQQKExxUaGF3dGUgQ29uc3VsdGluZyAoUHR5KSBMdGQuMSwwKgYDVQQD EyNUaGF3dGUgUGVyc29uYWwgRnJlZW1haWwgSXNzdWluZyBDQTCBnzANBgkqhkiG9w0BAQEF AAOBjQAwgYkCgYEAxKY8VXNV+065yplaHmjAdQRwnd/p/6Me7L3N9VvyGna9fww6YfK/Uc4B 1OVQCjDXAmNaLIkVcI7dyfArhVqqP3FWy688Cwfn8R+RNiQqE88r1fOCdz0Dviv+uxg+B79A gAJk16emu59l0cUqVIUPSAR/p7bRPGEEQB5kGXJgt/sCAwEAAaOBlDCBkTASBgNVHRMBAf8E CDAGAQH/AgEAMEMGA1UdHwQ8MDowOKA2oDSGMmh0dHA6Ly9jcmwudGhhd3RlLmNvbS9UaGF3 dGVQZXJzb25hbEZyZWVtYWlsQ0EuY3JsMAsGA1UdDwQEAwIBBjApBgNVHREEIjAgpB4wHDEa MBgGA1UEAxMRUHJpdmF0ZUxhYmVsMi0xMzgwDQYJKoZIhvcNAQEFBQADgYEASIzRUIPqCy7M DaNmrGcPf6+svsIXoUOWlJ1/TCG4+DYfqi2fNi/A9BxQIJNwPP2t4WFiw9k6GX6EsZkbAMUa C4J0niVQlGLH2ydxVyWN3amcOY6MIE9lX5Xa9/eH1sYITq726jTlEBpbNU1341YheILcIRk1 3iSx0x1G/11fZU8xggNkMIIDYAIBATB2MGIxCzAJBgNVBAYTAlpBMSUwIwYDVQQKExxUaGF3 dGUgQ29uc3VsdGluZyAoUHR5KSBMdGQuMSwwKgYDVQQDEyNUaGF3dGUgUGVyc29uYWwgRnJl ZW1haWwgSXNzdWluZyBDQQIQU5DXGAOC28dweYCVdauKjjAJBgUrDgMCGgUAoIIBwzAYBgkq hkiG9w0BCQMxCwYJKoZIhvcNAQcBMBwGCSqGSIb3DQEJBTEPFw0wNjEyMDEyMTEwMDhaMCMG CSqGSIb3DQEJBDEWBBQbTo3qs3vgGPmAT6cJ3rRf2B6mvDBSBgkqhkiG9w0BCQ8xRTBDMAoG CCqGSIb3DQMHMA4GCCqGSIb3DQMCAgIAgDANBggqhkiG9w0DAgIBQDAHBgUrDgMCBzANBggq hkiG9w0DAgIBKDCBhQYJKwYBBAGCNxAEMXgwdjBiMQswCQYDVQQGEwJaQTElMCMGA1UEChMc VGhhd3RlIENvbnN1bHRpbmcgKFB0eSkgTHRkLjEsMCoGA1UEAxMjVGhhd3RlIFBlcnNvbmFs IEZyZWVtYWlsIElzc3VpbmcgQ0ECEFOQ1xgDgtvHcHmAlXWrio4wgYcGCyqGSIb3DQEJEAIL MXigdjBiMQswCQYDVQQGEwJaQTElMCMGA1UEChMcVGhhd3RlIENvbnN1bHRpbmcgKFB0eSkg THRkLjEsMCoGA1UEAxMjVGhhd3RlIFBlcnNvbmFsIEZyZWVtYWlsIElzc3VpbmcgQ0ECEFOQ 1xgDgtvHcHmAlXWrio4wDQYJKoZIhvcNAQEBBQAEggEAKTlkqE5OSgcw++y+rvghiwzvgsU8 oMeR93jvnBSi51oS0qdkVj67eh5ICuFbedLpluhiH5u33fF6mFNuO/2UpoPHf2bY6hQr7USj Xhts+JPbFz3vIyqWgE96KwO3TKk8U40c84VGn2dvJ4MuuVlSrG3g0/ooKIWqaRa3Z3xcCycz vZvLkoQhRg0RYrLc3VdU5HWsx49fO78iWh1eVPwOngHDe+lEOCjgX7h91whZZ9kLo5SsWcpP 6zcNpWvpTqjgT5BQKYvMzXKOXkkxWKR+bKtFpd2o4b9cvzv3Shygw8PbJgQ7Nj5Lg0l6fA9K KV0Cq0w7l59vJ2iqcsyt0qwRNgAAAAAAAA== --------------ms030404080503020101030500--