This week's book giveaway is in the Big Data forum.
We're giving away four copies of Elasticsearch in Action and have Radu Gheorghe & Matthew Lee Hinman on-line!
See this thread for details.
The moose likes Tomcat and the fly likes Pro Jakarta Tomcat 5 and Security Big Moose Saloon
  Search | Java FAQ | Recent Topics | Flagged Topics | Hot Topics | Zero Replies
Register / Login

Win a copy of Elasticsearch in Action this week in the Big Data forum!
JavaRanch » Java Forums » Products » Tomcat
Bookmark "Pro Jakarta Tomcat 5 and Security" Watch "Pro Jakarta Tomcat 5 and Security" New topic

Pro Jakarta Tomcat 5 and Security

Kailey Smith

Joined: Mar 05, 2004
Posts: 5

I'm fairly new to Tomcat having only developed a couple small web apps using version 4. In addition, I only ran these apps locally. It was really just to get me familiar with the process. In the future, however, I'm looking at developing a web app for a local nonprofit. I'm considering using Tomcat, but what to make sure I set up a secure app.

Does Pro Jakarta Tomcat 5 cover security issues?

Thank you,
Kailey Smith
Matthew Moodie

Joined: Oct 18, 2002
Posts: 14
Hi Kailey,

Does Pro Jakarta Tomcat 5 cover security issues?

The book covers security from the admin's perspective. This includes authentication and authorisation, SSL with Apache, Java's security manager, user management and file system security.

Writing inherently secure web applications is not covered in the book as that is the developer's role and not the admin's.


Author of <a href="" target="_blank" rel="nofollow">Pro Jakarta Tomcat 5</a>
Surasak Leenapongpanit
Ranch Hand

Joined: May 10, 2002
Posts: 341
I found two chapters in Table of Contents about security issues.

I agree. Here's the link:
subject: Pro Jakarta Tomcat 5 and Security