Omnis App Server HTTPS
Wayne Germann
wgermann at PACIFIC.EDU
Fri Dec 9 16:54:36 UTC 2022
HTTPS must be running on server first. Omnis won’t use it unless you add $issecured on construct of jsform task.
Sent from my iPhone
> On Dec 9, 2022, at 7:06 AM, Phil (OmnisList) <phil at pgpotter.co.uk> wrote:
>
> CAUTION: This email originated from outside of Pacific. Do not click any links or open attachments if this is unsolicited email.
>
> Xavier,
>
> Ok, not used such a deployment, clearly.
>
> Maybe this is one for Omnis themselves?
>
> Presumably it would need to be part of mod_omnis.so or nph-omniscgi if
> its present at all...
>
> regards
> Phil Potter
> Based in Chester in the UK.
>
>> On 09/12/2022 14:49, IT wrote:
>> Hi Phil,
>>
>> The Omnis web server resides in one host in the company and Apache web server is in another host in internet service provider.
>>
>> The connection is performed via internet.
>>
>> So, all data between omnis and Apache is not encrypted and is insecure.
>>
>> I have Omnis to Postgresql encrypted, Apache to client encrypted but Omnis to Apache no avail.
>>
>> There are one important requirement in this deployment. *ALL* connections must be encrypted. End to end encryption.
>>
>> regards
>>
>> xavier
>>
>>
>>>> El 9 dic 2022, a las 15:13, Phil (OmnisList)<phil at pgpotter.co.uk> escribió:
>>>
>>> Xavier,
>>>
>>> So, are the web services and rest api going through the Apache webserver?
>>>
>>> In which case, why do you need HTTPS from Apache to Omnis?
>>>
>>> and if your not going through Apache to Omnis, why not?
>>>
>>> Don't you want a full blown apache web server as the first line of defence from the outside world? That can also handle HTTPS...
>>>
>>> To my recollection, except on dev machines, we always go through a full web server so we can get https and other security measures.
>>>
>>> regards
>>> Phil Potter
>>> Based in Chester in the UK.
>>>
>>> On 09/12/2022 10:33, IT wrote:
>>>> Hi,
>>>>
>>>> I’m developing some web services in Omnis, compound of web server and restful api server.
>>>>
>>>> I need that all communications end to end are encrypted, but I’m unable how to force that Omnis App Server accepts https connections.
>>>>
>>>> I can set up web server Apache to use https easily but not Omnis App Server.
>>>>
>>>> HTTP Worker Client allow you to set up $setsecureoptions() but no similar settings for server side of Omnis App Server
>>>> I’m looking in the Remote Task properties, that I thought it mus’t be, but I can't find any where to set the certificate and key files to use.
>>>>
>>>> Very estrange that Omnis can’t serve over https nowadays, sure I’m missing something.
>>>>
>>>> Any one know how to enable SSL in Omnis App Server? Any clue?
>>>>
>>>> Thank you in advance.
>>>>
>>>> Xavier
>>>>
>>>>
>>>>
>>>>
>>>>
>>>>
>>>>
>>>> _____________________________________________________________
>>>> Manage your list subscriptions athttps://lists.omnis-dev.com
>>>> Start a new message ->mailto:omnisdev-en at lists.omnis-dev.com
>>> _____________________________________________________________
>>> Manage your list subscriptions athttps://lists.omnis-dev.com
>>> Start a new message ->mailto:omnisdev-en at lists.omnis-dev.com
>> _____________________________________________________________
>> Manage your list subscriptions athttps://lists.omnis-dev.com
>> Start a new message ->mailto:omnisdev-en at lists.omnis-dev.com
> _____________________________________________________________
> Manage your list subscriptions at https://lists.omnis-dev.com
> Start a new message -> mailto:omnisdev-en at lists.omnis-dev.com
More information about the omnisdev-en
mailing list