foxphiles

Member
Feb 29, 2008
11
0
51
hi,

i've just installed tomcat via easyapache3.

tried to deploy war file so i've done some searching and found out that i can access tomcat web app via http://www.mydomain.com:8080/manager/html/ which require password for manager group that can be found in tomcat-user.xml file.

but the problem is that one password can access tomcat web manager for any domain that using tomcat on the server.

for example, i've assign a set user/password for a manager group in tomcat-user.xml say...myuser and mypassword
then i install tomcat for domain1.com and another for domain2.com
now i access http://www.domain1.com:8080/manager/html/ using myuser and mypassword. i can see folders in domain1 account.
meanwhile access http://www.domain2.com:8080/manager/html/ using the exact same password as above, only now i see folders in domain2 account.

so now if i assign password in manager group for one user, he'll be able to access all domains' tomcat web app using that password -*-

anyone got solution for this? please help.

thanks in advance ^^
 
Last edited: