I use jetty 9.3.11 and in my web.xml
I have the following code to use jetty default servlet for providing static content (images, txt files etc).
<servlet>
<servlet-name>DefaultServlet</servlet-name>
<servlet-class>org.eclipse.jetty.servlet.DefaultServlet</servlet-class>
<init-param>
<param-name>resourceBase</param-name>
<param-value>/home/User/data/</param-value>
</init-param>
</servlet>
<servlet-mapping>
<servlet-name>DefaultServlet</servlet-name>
<url-pattern>/static/*</url-pattern>
</servlet-mapping>
Is it safe to use default servlet of jetty this way? I mean - can I be sure that no one will get data from /home/User/
,/home/User/temp/
, /home/
folders?