[Esapi-user] ESAPI Swingset
johanlim76 at gmail.com
Tue Jan 12 18:54:42 EST 2010
Thanks for the info. I wil give the ESAPI 2.0 rc4 a try.
On Wed, Jan 13, 2010 at 10:30 AM, Jim Manico <jim.manico at owasp.org> wrote:
> I externalized all property files in the ESAPI 2.0 rc4 release to avoid
> problems of this nature. You just need to put the various property files in
> your classpath.
> Can you update and give this a try please?
> And Johan, as a open source project - and a new one at that - we
> desperately need more docs. We're getting there....
> Hi Jim,
> I resolved the issue in the SwingSet Sample WebApp. The changes in the
> ESAPI.properties files that can be found in
> "..\ROOT\WEB-INF\classes\resources" and in "ROOT\WEB-INF\classes" are not
> loaded even though the WebApp was reloaded.
> To add the new regex, I need to actually extract the contents of
> "ESAPI-2.0.jar" and update the file "validation.properties" in the ".esapi"
> folder. Once the changes is added, I re-arhive all the contents again.
> 1) Which properties file does ESAPI use? Is the validation.properties or
> ESAPI.properties files?
> 2) Is there a way we can extend the .properties file without having to
> manually extract the contents in the jar file?
> On Tue, Jan 12, 2010 at 3:17 PM, Jim Manico <jim.manico at owasp.org> wrote:
>> Aye, Capt'n .Tracking this request here:
>> > Jim Manico wrote:
>> >> Did you reload your app after your change [to ESAPI.properties file]?
>> > You have to do that? Maybe we should add a feature to have a separate
>> thread to
>> > watch the mod time of the file and if it is updated to re-read it. We do
>> > (carefully ;-) on lots of applications at my day job. Sounds like a
>> project for
>> > 2.1 or 3.0 release.
>> Jim Manico
>> OWASP Podcast Host/Producer
> Jim Manico
> OWASP Podcast Host/Producerhttp://www.manico.net
-------------- next part --------------
An HTML attachment was scrubbed...
More information about the Esapi-user