WebApp Sec mailing list archives

RE: Tomcat on port 80 or Java as root


From: Marc Deglos <md () nomensa com>
Date: Fri, 12 Mar 2004 14:22:24 +0000

>>What are the implications of running tomcat as root(ie to run tomcat on port 80)

The use of the word 'root' is misleading - IMO, this reference to 'root' does not correlate to the root user.

The question seems to be:
"What are the implications of allowing web traffic to connect directly to Tomcat, instead of through apache?"

//Marc.


Current thread: