Reverse Proxy Server and gzip compressed pages

Hi ALL!
Does Proxy Server in reverse proxy configuration works with gzip compressed pages? How it will serve different browser versions which are supports compression differently.
Thanks. Happy New Year!

Hi,
Domain relaxing will not work in this setting, ref. RFC 2109 http://www.ietf.org/rfc/rfc2109.txt
What you need to do is to create a DNS alias for the portal on domain [something].[company].com. Then create a portal component which returns the MYSAPSSO2 cookie and create an URL iView for it with the DNS alias hostname and add it to the default framework page. In this way, persons logging in will get the MYSAPSSO2 cookie for both domains [sap subdomain].[network domain].local and [network domain].[company].com
Regards
Dagfinn

Similar Messages

  • HTTP tunneling and reverse proxy server

    We're currently using Windows Media Services (WMS) to stream
    video on our website. There is an option WMS to use the HTTP
    protocol and to specify the port you'd like to use. This has
    allowed us to stream video through our external firewall, through
    our reverse proxy server, and through our internal firewall to our
    media server. I've been trying for two days now to get Flash Media
    Server (FMS) to do the same thing. For some reason the HTTP
    tunneling (RTMPT) protocol doesn't appear to be acting like the
    HTTP protocol that WMS is using. Anyone have some tips on this
    configuration. I've scoured web resources and documentation as best
    I could. Any help would be greatly appreciated.
    Thanks.

    To give a better picture, here's a more complete description of set up and goals
    Static IP hits external interface of ASA. ASA has a static nat rule to forward it to my DMZ server.
    DMZ server is running IIS 8. Here are what some of the sites look like.
    jira.xxxxx.com -> 10.1.10.21 (ubuntu server) | port 80
    email.xxxxx.com - > 10.1.10.16 (domain joined server 2012) port 80, 443
    media.xxxxx.com -> 10.1.10.14 (domain joined server 2012) port 80, 443
    other stuff like this -> 10.1.10.x port 80 or others
    All of the A records for those domain names point to the static which routes to the ASA and then is NAT'd to the DMZ server. 
    What do I need to do in IIS to have those sites get directed to the proper internal locations?
    Thanks!!

  • SAP reverse Proxy Server Configuration

    Hi All,
    We wanted to configure reverse proxy in our landscape, I will explain how we have through of implementing it.
    The request over the internet will be recieved by Our EP Server AAA which will act as a reverse proxy server and the request will be mapped to the Production EP server BBB which will serve the request.
    I have found few links on the internet explaining the concept of DMZ but still I dont have much clear Idea about this.
    If anyone can share any relevant link on, how this can be implemented will be really great.
    Thanks,
    Sharib Tasneem

    Hi  Sharib
    Check the link below , may be useful
    http://help.sap.com/saphelp_nwce10/helpdata/en/d8/00413549394a85b28bae68b715e6cb/content.htm
    833960 - supported Application Gateway Configurations
    1577357 - How To Change the URL Used to Access the Portal on NetWeaver 7.30
    Regards
    Pyari

  • I set up a reverse  proxy server but the DOJO and auto complete dont work

    I set up a reverse proxy server but the DOJO and auto completer don't work . Am I missing a configuration on the proxy server ?

    Well it would help if you can provide some more details on your configuration/setup.

  • Configuring Oracle Portal to Work with a Reverse Proxy Server

    Hi,
    I have an Oracle Portal 11g instance that works fine but I need to put behind a reverse proxy server.
    I follow the instructions of chapter 6.6 of this link http://download.oracle.com/docs/cd/E15523_01/portal.1111/e10239/cg_advnc.htm#i1051122 with any problem, but when I tried to access to the portal/pls/portal page I get the following error:~
    (WWC-00000)
    ;i=pls%2Forasso%2Forasso.wwsso_app_admin.fapp_process_login%3Fp_app_id%3D; Accept=text/html Accept-Charset=ISO-8859-1,utf-8;q=0.7,*;q=0.7 User-Agent=Mozilla/5.0 (Windows; U; Windows NT 6.0; en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6 Oracle HTTPClient Version 10h X-Oracle-Device.Class=pcbrowser X-Oracle-Device.Name=HTML40 X-Oracle-Device.Orientation=landscape X-Oracle-Device.MaxDocSize=0 X-Oracle-Device.Secure=false PROVIDER=90163575;i=2;n=PORTAL%20CONTENT%20AREA;o=0;R=0; PROVIDER=641081930;i=2;n=DESIGN_TIME_PG;o=0;R=0; PORTLET=6,2237;v=641081930;b=2214;t=700;T=;D=Portal%20Builder%20banner;]=2;A=521_2214_641081930;p=6_2237_6_1_1;i=0;Y=0;e=0;d=0;h=0;a=0;^=0;R=0;c=0;C=0;Z=0;I=5;q=http://hostname:7777/portal/page/portal?_mode=10&_cpage_id=1&_csite_id=6&_cstyle_id=1&_cstyle_site_id=6&_ccalledfrom=1&_cmode=3&_ctabstring=Welcome&_cdisplay_name=Portal%20Builder;V=0; PORTLET=606;v=90163575;b=20;t=15;T=;D=Welcome;]=3;A=606_tabset_90163575;p=606_tabset_90163575;i=0;Y=0;e=1;d=1;h=1;a=1;^=1;R=0;c=0;C=0;Z=0;V=11;n=_ts.rid;t=constant;v=606; n=_ts.tid;t=constant;v=13; n=_ts.pid;t=constant;v=1; n=_ts.sid;t=constant;v=6; n=_ts.tp;t=constant;v=; n=_ts.ts;t=constant;v=Welcome; n=_ts.stid;t=constant;v=1; n=_ts.ssid;t=constant;v=6; n=_ts.m;t=constant;v=3; n=_ts.pr;t=constant;v=; n=_ts.sc;t=constant;v=; TEMPLATE=1;c=text/html;
    #portal-rewrite?a=2;i=6,2237/portal-rewrite#
    #portal-rewrite?a=2;i=606/portal-rewrite#
    Could anyone help me solving this problem.
    This is a very critical situation.
    Thanks,
    Regards,
    rjc

    The solution for this problema was put the proxy server name and IP in the database hosts.
    In Oracle portal it's essencial that database could resolve the name of all componentes, like portal mid-tier, web cache, sso, proxy server, etc.
    Regards,
    rjc

  • Using WLS 8.1 as a Reverse Proxy Server as well as using SSL

    Hi,
    We have WebLogic server 8.1 installed and set-up as a Reverse Proxy Server. We would like it to serve pages over a secure internet connection (one way).
    I have imported the SSL certificate which I received from Thawte. I have also configured the identity and Trust keystores for the server.
    However, I am still unable to access the server over a secure connection.
    I have logged into WebLogic Console and unticked Listen Port Enabled Port: 80; and ticked SSL Port Enabled and changed it to listen on Port:80? However, all this will mean is all our url's will need to preceded by 'https' I would prefer us to be able to still use 'http' which when requested redirects to 'https'
    Not having been on any WebLogic courses, I am new to this and would appreciate any help or step by step guides people have.
    Many Thanks,
    Karl

    Hi Raphael Chasse,
    The LoadBalancer plugin can be used as a reverse proxy.
    you could configure the loadbalancer.xml as below, where requests for app1 get redirected to server1 and app2 to server2.
    <loadbalancer>
    <cluster name="cluster1">
    <instance disable-timeout-in-minutes="30" enabled="true" listeners="http://server1 name="i1"/>
    <web-module context-root="/app1" disable-timeout-in-minutes="30" enabled="true"/>
    <health-checker interval-in-seconds="1" timeout-in-seconds="60" url="/"/>
    </cluster>
    <cluster name="cluster2">
    <instance disable-timeout-in-minutes="30" enabled="true" listeners="http://server2 name="i2"/>
    <web-module context-root="/app2" disable-timeout-in-minutes="30" enabled="true"/>
    <health-checker interval-in-seconds="1" timeout-in-seconds="60" url="/"/>
    </cluster>
    </loadbalancer>
    This link talks more about the loadbalancer.xml file format http://docs.sun.com/source/817-5445/aglbdtd.html.
    cheers
    Vishwas

  • Proxy Server and single sign on (SSO)

    We are currently running Portal 7.  I've enabled single sign on via logon tickets from portal to our backend ECC 6.0 and CRM 5.0 systems and its working fine.  For demoing to clients we've employed the Apache webserver for reverse proxy.  This reverse proxy server is located in the DMZ, on a domain of its on.  I can access the portal fine through the reverse proxy but now the single sign on to our backend ECC and CRM systems doesn't work.  I know the issue lies with the difference in the domain.
    Has anyone come accross an issue such as this and can lend me some help?

    Hi,
    Domain relaxing will not work in this setting, ref. RFC 2109 http://www.ietf.org/rfc/rfc2109.txt
    What you need to do is to create a DNS alias for the portal on domain [something].[company].com. Then create a portal component which returns the MYSAPSSO2 cookie and create an URL iView for it with the DNS alias hostname and add it to the default framework page. In this way, persons logging in will get the MYSAPSSO2 cookie for both domains [sap subdomain].[network domain].local and [network domain].[company].com
    Regards
    Dagfinn

  • How to configure SharePoint HNSC with a reverse proxy server so that HNSC Share Point URLs are not exposed to end users.

    Could you please let me know how SharePoint HNSC can be configured with a reverse proxy server so that HNSC Share Point URLs are not exposed to end users.
    In normal path based site collections/web applications, reverse proxy configuration can be done using alternate access mappings with  Public URL = "proxy URL", internal = "HNSC Share Point URL" so that share point sends response back
    to Public URL = "proxy URL".
    In Host Named Site Collections,  alternate access mappings  are not supported. Each HNSC is designed to have only one URL in each zone. Zone is one of the five zones(Default,Intranet,Internet,Custom,Extranet) with each of which only one alternate
    URL is associated.  This is what we are able to get using power shell command "Set-SPSiteUrl", but this will not help us to get the response back to proxy URL after a request sent to share point because we could not find any mechanism in share
    point HNSC to respond  to a different URL(proxy URL). Consequently, Share Point URLs are exposed to  external users.
    Below share point article in MSDN blog is symmetrical to what we are observing with Share Point 2013 and Proxy Server. It mentions that internal HNSC URLs can’t be hidden using any proxy server. If  hiding the internal Share Point URLS is a requirement,
    it suggests to use a web application instead of host named site collections.
    Though I’m also observing the same behavior with Share Point 2013 HNSC, Could you please confirm my understanding is correct.
    http://blogs.msdn.com/b/kaevans/archive/2012/03/27/what-every-sharepoint-admin-needs-to-know-about-host-named-site-collections.aspx
    Excerpt from above article-
    "Host Named Site Collections Only Use One Host Name
    Continuing on the discussion on AAMs and host named site collections, you cannot use multiple host names to address a site collection in SharePoint 2010. Because host-named site collections have a single URL, they do not support alternate access mappings and
    are always considered to be in the Default zone.  This is important if you are using a reverse proxy to provide access to external users. Products like Unified Access Gateway 2010 allow external users to authenticate to your gateway and access a site
    as http://uag.sharepoint.com and forward the call to http://portal.sharepoint.com. Remember that URL rewriting is not permitted. Further, a site collection can only respond to one host name. This means if you are using a reverse proxy, it must forward the
    calls to the same URL.  If your networking team has a policy against exposing internal URLs externally, you must instead use web applications and extend the web application using an alternate access mapping."<u5:p></u5:p>

    Hi Satish,
    You are right that only one URL is allowed for each zone of the host-name site collections in both SharePoint 2010 and SharePoint 2013.
    It is by design that each host-name site collection only support one URL for each zone.
    The article below is about RTM version of SharePoint, and it is the same for SharePoint 2013 with the latest CU.
    https://support.microsoft.com/en-us/kb/2826457
    So to make the URL of HNSC not exposed to external users is not supported, you need to use path-based sites instead.
    Best regards.
    Thanks
    TechNet Community Support
    Please remember to mark the replies as answers if they help, and unmark the answers if they provide no help. If you have feedback for TechNet Support, contact
    [email protected]

  • 10gAS, proxy server and client ip address

    Hello,
    We recently deployed an application in a 10G application server, running behind an apache reverse proxy server.
    Our developers want to get the client ip addresses, which the proxy server passes in the the header x-forwarded-for. They're currently using getRemoteAddr to get the ip address of the system making the request, which is always going to be the proxy server.
    If using webcache, it looks like it's possible to toggle webcacheip on in the httpd.conf, which modifies the return value of getRemoteAddr appropriately. Is there a way to modify the application server to pull the ip address out of the x-forwarded-for header instead of the clientip header and return it via getRemoteAddr?
    Should I just have the developers pulling from that x-forwarded-for header value instead?

    I've gotten a few emails on this, what I did was this:
    On the front end apache reverse proxy, I added these lines:
    RewriteEngine On
    RewriteCond %{REMOTE_ADDR} ^(.*)
    RewriteRule ^.* - [env=MY_REMOTE_ADDR:%1]
    RequestHeader set ClientIP "%{MY_REMOTE_ADDR}e
    It's been a while, but I recall having to do some extra work to be able to write this value into a header, I couldn't do it directly, so I did the above four lines instead.
    And then set UseWebCacheIp On on the application server httpd.conf.

  • How to setup CSS as reverse proxy server without cache server

    Hi, question regarding CSS capabilities.
    Is there a way to setup CSS (11000 series or 11500) to act as a reverse proxy server without caching server in place? Or is it possible for CSS to cache contents on its own?
    And what is disk space on CSS used for?
    Thank you.

    Thank you for clarification on disk usage on CSS. I have gone through sample config for reverse proxy caching
    http://www.cisco.com/warp/customer/117/CSS_CEreverseproxy.html
    Does this mean only way to have CSS to do reverse proxying is to have cache engine in conjunction with CSS?
    Thank you again in advance.

  • SSL for Reverse Proxy, webdispatcher and EP?

    We have a setup like:
    Reverse Proxy->webdispatcher->EP
    Do we need SSL for Reverse Proxy, webdispatcher and EP?
    If so, how to do it?
    Thanks!

    You don't need SSL because of the middleware architecture. It is recommended for the obvious security reasons (protect user credentials, protect sensitive content while in transmission, etc.).
    For performance reasons, I prefer not to have SSL encryption on the EP server, but instead offload it to other hardware. Ideally that's a network appliance, but you can use the Web Dispatcher instead.
    On the other hand, you have a reverse proxy as well. In some cases the reverse proxy is configured decrypting SSL traffic as well (e.g., to do packet inspection). If that is the case, there isn't much point in re-encrypting it before relaying to the Web Dispatcher, so that it can only decrypt it again. But if you reverse proxy is doing a "pass-through", the Web Dispatcher should decrypt it (in my opinion) to offload the EP server.

  • When using a proxy server at work, Deezer page does not load normally?

    When using a proxy server at work, Deezer page does not load normally, but when I go home and use connection without proxy, everything is fine.
    It loads, and some features on the website work, but the look is not the same. Over the proxy it shows just text on the left side of the screen and I can't choose some of the options.
    When I go home and use my home connection without proxy, there are no problems, everything is OK.
    Could you please solve this?

    I found that after Firefox v29, a LOT of my settings and<BR>
    add-ons were changed / reset. Try this;
    '''''[https://support.mozilla.org/en-US/kb/troubleshoot-firefox-issues-using-safe-mode Start Firefox in Safe Mode]'''''
    <BR>While you are in safe mode;<BR>
    '''''Firefox Options > Advanced > General'''''.<BR>
    Look for and turn off '''Use Hardware Acceleration'''.<BR>
    Then check ALL of your settings. Browser and add-ons. Then restart.

  • When i finally connected my mac to work network on windows environment everything related to apple including App store, Safari, software updates, iCloud and iTunes do not work using a proxy server and everything else is working very well

    when i finally connected my mac to work network on windows environment everything related to apple including App store, Safari, software updates, iCloud and iTunes do not work using a proxy server and everything else is working very well including chrome browser…i tried everything but no clue...anybody have solution for this..???

    I also forgot to note that this problem also persists with the new iBooks application. I cannot get past the 'Get Started' screen or access the iBooks Store. Again, all top bar menus are unresponsive.
    DT

  • Microsoft outlook 2010 not working after installing proxy server and ForeFront TMG firewall

    I am trying to have Outlook 2010 work though proxy server recently installed on internal network, I have configured IE to use the proxy settings, but I cannot find the
    same with Outlook 2010, I want to clarify that we use Outlook 2010 to connect to internet email and we installed ForeFront TMG firewall on the proxy server and as a result of that we changed the IP settings and after that Outlook stopped sending and receiving
    mails and gives error: “receiving reported error (0x800408fc): 'The Server name you entered cannot be found (it might be down temporarily).”
    So please help us by sharing how to fix this issue to make Outlook work though proxy server
    Thanks

    Hi,
    Are you using Exchange account? If you are changing your Exchange account to use a proxy server, I suggest we can create new profile and automatically re-configuring your account with autodiscover service to have a try:
    http://support.microsoft.com/kb/829918
    If the account can’t be configured automatically, please manually configure the account and change the settings for procy server:
    1. In the Account Settings dialog box, click the
    Email tab, click to select the Exchange account, and then click
    Change.
    2. Click More Settings. On the Connections tab, click
    Exchange Proxy Settings.
    3. In Connection settings, type the proxy server FQDN under Use this URL to connect to my proxy server for Exchange, click OK to have a try, and then click
    OK to save all settings.
    4. Restart Outlook.
    Regards,
    Winnie Liang
    TechNet Community Support

  • Proxy server and uri rewrite

    We're trying to set up some internet reports, which go through a proxy server (Novell iChain). We want to have the external calls use a particular cgicmd.dat entry on our ReportServer.
    So
    https://dnrx.wisconsin.gov/ldesrep?other_stuff
    would turn into an internal app server call like
    http://server/reports/rwservlet?cmdkey=ldesexternal&other_stuff
    iChain won't do that. It can't work with the queryString portion of the call.
    Apache will easily rewrite the incoming uri and queryString into the right form, but mod_rewrite seems to fire too late, so it interprets the /reports/rwservlet as a directory, not a program to be executed.
    (I could probably call one Apache server and have it use mod_rewrite to send the rewritten call to another server, but that seems pretty kludgey).
    Anyway, I'm looking for a good way to call a report through our proxy server and allow external access to only a limited set of reports on the server.
    Any suggestions?
    -- jim

    Pintom1 wrote:
    This works GREAT, however, I noticed when I'm at work and work has a proxy server for FTP I cannot connect to my domain and update - publish to my private server doesn't happen.
    Would anyone know how to make ICal use a proxy? Having the proxy in the Network Prefs under FTP and the box checked does not work. Both passive and unpassive does not make a difference.
    Is there a way to enter proxy information in the ftp:// string I am using?
    I can get the calendars no problem. I know there is an HTTP proxy but ICal seems to be able to get through this fine?
    Any suggestions would be appreciated.
    THANKS!
    Message was edited by: Pintom1
    We had issues when we first published our calendars at work too. I am not certain that this will help, but you can try it. What we did was go to the Network Preference Pane and add the IP address of the Cal server to the list of IP's that bypass the proxy server. After that we had no issues viewing or updating our calendars. I don't know exactly how your network is setup, but it may be worth a shot.
    Brian

Maybe you are looking for

  • How do I get the size of a file on a server with an Applet

    Hei, I have a problem. I have some files that I need to read in with InputStream to get an Array of bytes. The Applet and the files are on the same server. My Prob is, that when I use URL(daFile).getFile().getSize(); it only gives the inaccurate size

  • CRM 2007 and SAP PI 7.1 ESR

    Good day, We are implementing a remp-amp SAP CRM 2007 application. I was wondering: 1. which web services available as part of the new CRM 2.what is the advantage of using SAP PI\XI with the CRM ( we still have a middleware right??) appreciate the re

  • System Not coming in Find Data

    Hi, I added a new JDBC system in portal in Visual Composer folder, created alias, done usermapping and my connection tests are successful. But when i tried to access it from VC, its not coming up in Find data tab. I am getting the following message i

  • Filechooser box does not appear

    I have made an installer using izpack. Somewhere in the installation process a user are to press a button and locate a directory using an izpack filechoose. This has been working fine for some time now but all the sudden this filechooser box does not

  • FED UP with dropped Airport connections!

    Okay, a little history here. I've been a Mac user for 20+ years. I know my way around these machines. I have a Mac Pro and a Mac Book, and when they were running Tiger I had zero problems with Airport connections in either case. However, since I upgr