Summary: | Virtual Host selection across Services? | ||
---|---|---|---|
Product: | Tomcat 5 | Reporter: | Robert Nice <rnice> |
Component: | Unknown | Assignee: | Tomcat Developers Mailing List <dev> |
Status: | RESOLVED FIXED | ||
Severity: | normal | ||
Priority: | P2 | ||
Version: | 5.5.9 | ||
Target Milestone: | --- | ||
Hardware: | Other | ||
OS: | Linux |
Description
Robert Nice
2005-11-10 07:03:13 UTC
If you have suggested text for the note in the docs that you want, please attach it to this item and I'll gladly look at it, commit it as relevant. Note in the docs? This has to be a bug, no? Should a connector of a service be able to access a host in another service? If yes, this is insane, if not you've got a bug. (In reply to comment #2) > Note in the docs? This has to be a bug, no? > Should a connector of a service be able to access a host in another service? If > yes, this is insane, if not you've got a bug. Well, I guess it's insane then ;-). Multiple <Service /> tags is deprecated. However, if you don't name your Engines the same name, then the mapping should work as you expect it to. (In reply to comment #3) > (In reply to comment #2) > > Note in the docs? This has to be a bug, no? > > Should a connector of a service be able to access a host in another service? > If > > yes, this is insane, if not you've got a bug. > > Well, I guess it's insane then ;-). > > Multiple <Service /> tags is deprecated. However, if you don't name your > Engines the same name, then the mapping should work as you expect it to. So are you saying that Engines across different services end up merged or visible to each other if they have the same name? If so I'd put that in the manual. I only ask because it causes a bit of a security problem. If you connect via Apache-httpd and think you can rely on a connector/engine either matching a host defined inside it, or defaulting to the default host inside it, you get a nasty shock if it happens to find a match on a totally different application somewhere else, especially if you thought that application was secured. :( Thanks for the prompt reply. I have updated the docs. The update will be in 5.5.21 onwards. |