www-infrastructure-issues mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From "Noel J. Bergman (JIRA)" <j...@apache.org>
Subject [jira] Commented: (INFRA-661) JIRA should detect HTTPS access and stop redirecting to plaintext
Date Thu, 05 Jan 2006 16:47:33 GMT
    [ http://issues.apache.org/jira/browse/INFRA-661?page=comments#action_12361863 ] 

Noel J. Bergman commented on INFRA-661:
---------------------------------------

Sander Temme installed v2.2.0, and I've switched the configuration for JIRA to use mod_proxy_ajp.

> JIRA should detect HTTPS access and stop redirecting to plaintext
> -----------------------------------------------------------------
>
>          Key: INFRA-661
>          URL: http://issues.apache.org/jira/browse/INFRA-661
>      Project: Infrastructure
>         Type: Bug
>   Components: JIRA
>  Environment: Ajax, JIRA http interface behind httpd 2.2.0 mod_proxy
>     Reporter: Sander Temme
>     Assignee: Noel J. Bergman

>
> We now have a certificate and SSL vhost configured on issues.apache.org. However, when
browsing JIRA, it frequently redirects the user to plaintext http. This is undesirable as
it forces the user out of the cosy SSL security blanket. 
> Does JIRA have a switch that can be flicked to make it respect incoming plaintext access?
For instance, can it be configured to work behind an external SSL offload appliance? Turning
this on may force plaintext users to SSL but that bothers me less than the reverse. 

-- 
This message is automatically generated by JIRA.
-
If you think it was sent incorrectly contact one of the administrators:
   http://issues.apache.org/jira/secure/Administrators.jspa
-
For more information on JIRA, see:
   http://www.atlassian.com/software/jira


Mime
View raw message