Preventing cross-application access
Preventing cross-application access
- Subject: Preventing cross-application access
- From: Maik Musall <email@hidden>
- Date: Fri, 07 Dec 2012 15:04:37 +0100
Hi List,
I don't know if everybody is aware of that, but in a setup with two WO applications A and B, reachable through domains aaa.com and bbb.com, but sharing one Apache Adaptor in front of them, you can generally reach application B through aaa.com if you append the .woa path of application B to it.
What measures do you have in place to prevent that, if any?
Maik
_______________________________________________
Do not post admin requests to the list. They will be ignored.
Webobjects-dev mailing list (email@hidden)
Help/Unsubscribe/Update your Subscription:
This email sent to email@hidden