Omnis App Server HTTPS

Wayne Germann wgermann at PACIFIC.EDU
Fri Dec 9 16:54:36 UTC 2022


HTTPS must be running on server first.   Omnis won’t use it unless you add $issecured on construct of jsform task.   

Sent from my iPhone

> On Dec 9, 2022, at 7:06 AM, Phil (OmnisList) <phil at pgpotter.co.uk> wrote:
> 
> CAUTION: This email originated from outside of Pacific. Do not click any links or open attachments if this is unsolicited email.
> 
> Xavier,
> 
> Ok, not used such a deployment, clearly.
> 
> Maybe this is one for Omnis themselves?
> 
> Presumably it would need to be part of mod_omnis.so or nph-omniscgi if
> its present at all...
> 
> regards
> Phil Potter
> Based in Chester in the UK.
> 
>> On 09/12/2022 14:49, IT wrote:
>> Hi Phil,
>> 
>> The Omnis web server resides in one host in the company and Apache web server is in another host in internet service provider.
>> 
>> The connection is performed via internet.
>> 
>> So, all data between omnis and Apache is not encrypted and is insecure.
>> 
>> I have Omnis to Postgresql encrypted, Apache to client encrypted but Omnis to Apache no avail.
>> 
>> There are one important requirement in this deployment. *ALL* connections must be encrypted. End to end encryption.
>> 
>> regards
>> 
>> xavier
>> 
>> 
>>>> El 9 dic 2022, a las 15:13, Phil (OmnisList)<phil at pgpotter.co.uk>  escribió:
>>> 
>>> Xavier,
>>> 
>>> So, are the web services and rest api going through the Apache webserver?
>>> 
>>> In which case, why do you need HTTPS from Apache to Omnis?
>>> 
>>> and if your not going through Apache to Omnis, why not?
>>> 
>>> Don't you want a full blown apache web server as the first line of defence from the outside world? That can also handle HTTPS...
>>> 
>>> To my recollection, except on dev machines, we always go through a full web server so we can get https and other security measures.
>>> 
>>> regards
>>> Phil Potter
>>> Based in Chester in the UK.
>>> 
>>> On 09/12/2022 10:33, IT wrote:
>>>> Hi,
>>>> 
>>>> I’m developing some web services in Omnis, compound of web server and restful api server.
>>>> 
>>>> I need that all communications end to end are encrypted, but I’m unable how to force that Omnis App Server accepts https connections.
>>>> 
>>>> I can set up web server Apache to use https easily but not Omnis App Server.
>>>> 
>>>> HTTP Worker Client allow you to set up $setsecureoptions() but no similar settings for server side of Omnis App Server
>>>> I’m looking in the Remote Task properties, that I thought it mus’t be, but I can't find any where to set the certificate and key files to use.
>>>> 
>>>> Very estrange that Omnis can’t serve over https nowadays, sure I’m missing something.
>>>> 
>>>> Any one know how to enable SSL in Omnis App Server? Any clue?
>>>> 
>>>> Thank you in advance.
>>>> 
>>>> Xavier
>>>> 
>>>> 
>>>> 
>>>> 
>>>> 
>>>> 
>>>> 
>>>> _____________________________________________________________
>>>> Manage your list subscriptions athttps://lists.omnis-dev.com
>>>> Start a new message ->mailto:omnisdev-en at lists.omnis-dev.com
>>> _____________________________________________________________
>>> Manage your list subscriptions athttps://lists.omnis-dev.com
>>> Start a new message ->mailto:omnisdev-en at lists.omnis-dev.com
>> _____________________________________________________________
>> Manage your list subscriptions athttps://lists.omnis-dev.com
>> Start a new message ->mailto:omnisdev-en at lists.omnis-dev.com
> _____________________________________________________________
> Manage your list subscriptions at https://lists.omnis-dev.com
> Start a new message -> mailto:omnisdev-en at lists.omnis-dev.com


More information about the omnisdev-en mailing list