Class SecurityUtil


  • public final class SecurityUtil
    extends Object
    Util class for Security related operations.
    • Constructor Detail

      • SecurityUtil

        public SecurityUtil()
    • Method Detail

      • isPackageProtectionEnabled

        public static boolean isPackageProtectionEnabled()
        Return the SecurityManager only if Security is enabled AND package protection mechanism is enabled.
        Returns:
        true if package protection is enabled
      • filter

        @Deprecated
        public static String filter​(String message)
        Deprecated.
        This method will be removed in Tomcat 9
        Filter the specified message string for characters that are sensitive in HTML. This avoids potential attacks caused by including JavaScript codes in the request URL that is often reported in error messages.
        Parameters:
        message - The message string to be filtered
        Returns:
        the HTML filtered message