Security and Vulnerability Considerations
For extra security and vulnerability reasons, the Apache Tomcat bundled within MIMM can be updated as follows:
In this section
- Tomcat Upgrade To The Current Patches
- Tomcat Check For Allowed Referrer
- Tomcat Configuration to avoid TLS violation of Cryptographic Standard STD-IT-0005
- Tomcat Configuration to include HTTP security headers
- Tomcat Configuration for Access Control with Valve
- Secret / Password Encryption
- Outside Access to MMDoc and MIMBWebServices