Standalone or IIS-fronted Tomcat for the IdP on Windows?

Cantor, Scott cantor.2 at
Thu Aug 2 11:36:00 EDT 2012

On 8/2/12 11:32 AM, "Andrew Webb" <andrew.webb at> wrote:

>I would expect that our servers would be running other websites other than
>the Shib IdP.  My instinct says to front the CaptiveTomcat by IIS, but I
>wonder if you have explicit recommendations either way.

I would absolutely not host the IdP on a system running other web sites,
if that answers the question.

I also wouldn't trust IIS and AJP personally, but I'm told it's in better
shape these days than it used to be.

-- Scott

