www-infrastructure-issues mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From "Jacques Le Roux (JIRA)" <j...@apache.org>
Subject [jira] [Commented] (INFRA-10973) Send X-Forwarded-Proto=HTTPS from reverse-proxy to OFBIZ-VM
Date Sun, 20 Dec 2015 13:13:46 GMT

    [ https://issues.apache.org/jira/browse/INFRA-10973?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=15065741#comment-15065741
] 

Jacques Le Roux commented on INFRA-10973:
-----------------------------------------

Yes please, because OFBiz  receives only HTTP requests from the proxy

FYI here are the HTTP hdeaders for request and response respectively

Host: demo-trunk-ofbiz.apache.org
User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:43.0) Gecko/20100101 Firefox/43.0
Accept: text/html,application/xhtml+xml,application/xml;q=0.9,*/*;q=0.8
Accept-Language: fr,fr-FR;q=0.8,en-US;q=0.5,en;q=0.3
Accept-Encoding: gzip, deflate
DNT: 1
Referer: http://demo-trunk-ofbiz.apache.org/webtools/control/entitymaint
Cookie: __utma=176865968.560878820.1399288487.1399288487.1399288487.1; _ga=GA1.2.529066776.1418222199;
__utma=111365460.529066776.1418222199.1427392647.1431205386.3; __utmc=111365460
Connection: keep-alive
Cache-Control: max-age=0


Connection: Keep-Alive
Content-Encoding: gzip
Content-Type: text/html;charset=UTF-8
Date: Sun, 20 Dec 2015 13:08:18 GMT
Keep-Alive: timeout=5, max=100
Server: Apache-Coyote/1.1
Set-Cookie: JSESSIONID=464D02B4C966E268F80CE3B460BBC10A.jvm1; Path=/webtools/; Secure; HttpOnly
OFBiz.Visitor=12263; Expires=Mon, 19-Dec-2016 13:08:17 GMT; Path=/; Secure; HttpOnly
OFBiz.Visitor=12264; Expires=Mon, 19-Dec-2016 13:08:17 GMT; Path=/; Secure; HttpOnly
webtools.autoUserLoginId=admin; Domain=""; Expires=Mon, 19-Dec-2016 13:08:17 GMT; Path=/;
Secure; HttpOnly
Strict-Transport-Security: max-age=31536000; includeSubDomains
Transfer-Encoding: chunked
Vary: Accept-Encoding
X-Content-Type-Options: nosniff
X-Frame-Options: sameorigin
x-xss-protection: 1; mode=block

> Send X-Forwarded-Proto=HTTPS from reverse-proxy to OFBIZ-VM
> -----------------------------------------------------------
>
>                 Key: INFRA-10973
>                 URL: https://issues.apache.org/jira/browse/INFRA-10973
>             Project: Infrastructure
>          Issue Type: Bug
>          Components: Other/Misc
>            Reporter: Jacques Le Roux
>            Assignee: Daniel Gruno
>            Priority: Blocker
>
> I have recently secured some HTTP headers in OFBiz (still WIP OFBIZ-6766). We now need
the  reverse-proxy in front of OFBIZ-VM to send X-Forwarded-Proto=HTTPS.
> This is blocking our trunk demo in some cases (webtools)
> Thanks



--
This message was sent by Atlassian JIRA
(v6.3.4#6332)

Mime
View raw message