Lastly, we advise that you scan the application (before deployment, using a tool such as Sanctum's AppScan, <a href="http://www.sanctuminc.com/)">http://www.sanctuminc.com/)</a> to ensure that the application is not vulnerable to HTTP response-splitting (and other) attacks.