This week's book giveaway is in the OO, Patterns, UML and Refactoring forum. We're giving away four copies of Refactoring for Software Design Smells: Managing Technical Debt and have Girish Suryanarayana, Ganesh Samarthyam & Tushar Sharma on-line! See this thread for details.
1. index page - see the <welcome-file-list> element of the default web.xml - to prevent a file listing, search for the "listings" parameter in web.xml 2. access to admin and manager tools is protected by the respective roles defined in tomcat-user.xml - if you don't define a manager or admin role, nobody can get to the tool. 3. to prevent access to examples, just delete the directory and restart tomcat 4. for more subtle access control see the security manager docs installed with tomcat Bill