Closed schuyler closed 4 years ago
The IP-address-based Tomcat session reuse enabled by CrawlerSessionManagerValve in #230 unfortunately permits the following scenario:
CrawlerSessionManagerValve
I think we can agree that this is not what we intended. Unfortunately I think it means we need to reopen #225 and come up with a more robust solution.
Alas.
The IP-address-based Tomcat session reuse enabled by
CrawlerSessionManagerValve
in #230 unfortunately permits the following scenario:CrawlerSessionManagerValve
and is now using Client A's credentials.I think we can agree that this is not what we intended. Unfortunately I think it means we need to reopen #225 and come up with a more robust solution.