修复tomcatajp协议漏洞的方法有以下几种
1.禁用ajp协议端口
[root@host1 ~]# vim conf/server.xml<Connector port="8009" protocol="AJP/1.3" redirectPort="8443" />
2.在ajp中配置secretRequired和secret属性
[root@host1 ~]# vim conf/server.xml
<Connector port="8009" protocol="AJP/1.3" redirectPort="8443" />
<Connector port="8009" protocol="AJP/1.3" redirectPort="8443" address="YOUR_TOMCAT_IP_ADDRESS" requiredSecret="YOUR_TOMCAT_AJP_SECRET">