House of Fusion
Search over 2,500 ColdFusion resources here
  
Home of the ColdFusion Community

Mailing Lists
Home /  Groups /  ColdFusion Talk (CF-Talk)

Securing Railo

  << Previous Post |  RSS |  Sort Oldest First |  Sort Latest First |  Subscribe to this Group Next >> 
Top  |   Reply  |   Original Post  |   RSS Feed  |   Subscribe to this Group
Author:
Michael David
08/23/2012 06:08 PM

So, I got Railo Beta 4 up and running on IIS 7.5 today.  It was just as easy as I had hoped. Now, what do I need to do to secure Railo?  For example on my CF installs, I do not allow access to /CFIDE from the web.  I administrate CF from IPs only. For Railo, should I similarly restrict the railo-context directory?   What About the WEB-INF directory? -- Cheers! Michael David

Top  |   Parent  |   Reply  |   Original Post  |   RSS Feed  |   Subscribe to this Group
Author:
Russ Michaels
08/23/2012 06:20 PM

You can use url rewrite to restrict access, or install helicon ape and use the .htaccess files already there. Regards Russ Michaels On Aug 23, 2012 11:08 PM, "Michael David" <lists@michaeldavid.com> wrote: ----- Excess quoted text cut - see Original Post for more -----

Top  |   Parent  |   Reply  |   Original Post  |   RSS Feed  |   Subscribe to this Group
Author:
Dave Watts
08/23/2012 06:23 PM

> For Railo, should I similarly restrict the railo-context directory? > What About the WEB-INF directory? I don't know much about Railo specifically, but in general, J2EE web applications block access to /WEB-INF by default, so I doubt you have to do anything with that. Dave Watts, CTO, Fig Leaf Software http://www.figleaf.com/ http://training.figleaf.com/ Fig Leaf Software is a Veteran-Owned Small Business (VOSB) on GSA Schedule, and provides the highest caliber vendor-authorized instruction at our training centers, online, or onsite.


<< Previous Thread Today's Threads Next Thread >>

Search cf-talk

May 18, 2013

<<   <   Today   >   >>
Su Mo Tu We Th Fr Sa
       1 2 3 4
5 6 7 8 9 10 11
12 13 14 15 16 17 18
19 20 21 22 23 24 25
26 27 28 29 30 31   

Designer, Developer and mobile workflow conference