[Java-project] Fw: Finish Securing Tomcat Article

tcrow at corpone.org tcrow at corpone.org
Wed Jan 3 10:25:34 EST 2007

Do you think any notes about archiving the logs might be useful? I have
more experience with Tomcat 4.1.x than the newer versions, so they might
have some log management tools built in, but rotating catalina.out under
Tomcat 4.1.x can be a hassle.

Hope this helps!

Terrance A. Crow
AVP Technology
Corporate One Federal Credit Union
ph: 614/825-9316 | fax: 614.825.9201

----- Forwarded by Terry Crow/Corporate One on 01/03/07 10:24 AM -----
             ces at lists.owasp.o                                             
             rg                                                         To 
                                       java-project at lists.owasp.org        
             01/03/07 10:23 AM                                          cc 
                                       [Java-project] Finish Securing      
                                       Tomcat Article                      

Christmas and New Year done it's time I finished off the Securing
Tomcat article!  This Friday I should have time to finish it and
perhaps show it to the tomcat-user list for comments and review.

There are some corrections to file permissions, but the main thing
left is the section on logging.  I've not got much idea of what to
put in this section though, apart from detailing logging
configuration, which is more appropriate in the tomcat user manual.
Any ideas or suggestions?


Java-project mailing list
Java-project at lists.owasp.org


This email message is for the sole use of the intended recipient(s) and may contain 
confidential and privileged information.  Any unauthorized review, use, disclosure 
or distribution is prohibited.  If you are not the intended recipient, please contact 
the sender by reply email and destroy all copies of the original message.


More information about the Java-project mailing list