Re: How to grab the raw HTTPS stream in Tomcat?

From: Colin McKinnon (colin@EditMeOutUnlessYoureABot.wew.co.uk)
Date: 01/08/02


From: "Colin McKinnon" <colin@EditMeOutUnlessYoureABot.wew.co.uk>
Date: Tue, 8 Jan 2002 08:27:23 -0000

Jesse <javajesse@yahoo.com> wrote in message
news:b7ce2e9b.0201071412.45e51f30@posting.google.com...
> The customer will already have been given a unique x509 certificate to
> install in their browser. The raw data from the HTTPS post is an
> auditable guarantee that the data was created by that specific
> customer (we can decrypt the data to read it, but nobody but the
> customer could have created it in the first place). I will link all
> orders to their corresponding HTTPS request data, so in the case of an
> audit, we can guarantee the authenticity of each order in the system
> by comparing it to the raw HTTPS data.
>

You might want to look at a proxy which supports a simple plugin type of
recorder - e.g. delegate or squid. See freshmeat.net for URLs.

HTH

Colin



Relevant Pages

  • Re: How to grab the raw HTTPS stream in Tomcat?
    ... > I need to "intercept" the HTTPS post request, store all the raw ... > encrypted data from that post, and then forward the request on to be ... > The customer will already have been given a unique x509 certificate to ...
    (comp.security.unix)
  • Re: Do insecure e-commerce sites violate any laws?
    ... I recently purchased my contact lenses online from a household-name UK ... customer is asked to put the credit card number, expiry date, etc. the ... question is does this violate any laws such as the DPA? ... HTTPS payment gateway. ...
    (uk.legal)
  • Re: How to grab the raw HTTPS stream in Tomcat?
    ... > encrypted data from that post, and then forward the request on ... > by that specific customer (we can decrypt the data to read it, ... I will link all orders to their corresponding HTTPS ... even if they use it as the Servlet container. ...
    (comp.security.unix)
  • RE: Decimal Rounding - Desperately need help!!
    ... try writing a query that will compare the two and ... The raw data shows 2 places, ... but a summary form (to show orders by customer and to ...
    (microsoft.public.access.formscoding)
  • Strange RPC/HTTP behavior
    ... RPC clients. ... RPC over HTTPs works well, clients connect, mail comes in, ... I know there are scripts to disable that button but the customer would ...
    (microsoft.public.isaserver)