Highlighted
6525036 Super Contributor.
Super Contributor.
193 views

ig email template host and port

Jump to solution

Hi,

We have IG behind a reverse proxy, and because of this, the host name differs from the actual IG computers host name.

In the notification mails, the host and port of the "real" server are referenced (the links en the mails, seen as "$certifyTaskLink$" in the email templates.

We would very much like this to point to the reverse proxy servers hostname and port instead.

How can this be accomplished?

 

 

0 Likes
1 Solution

Accepted Solutions
Micro Focus Expert
Micro Focus Expert

Re: ig email template host and port

Jump to solution

Greetings,
I am not set-up behind a reverse proxy, but I am set-up with a Load Balancer. If the users are access via the URL of the reserve proxy, then please make sure the settings in configutil correctly have the URL via the reverse proxy except for the 'Local Tomcat Host' field in the GUI version of configutil. Once updated a restart of the Tomcat server(s) is required.


Sincerely,
Steven Williams
Principal Enterprise Architect
Micro Focus

4 Replies
Micro Focus Expert
Micro Focus Expert

Re: ig email template host and port

Jump to solution

Greetings,
I am not set-up behind a reverse proxy, but I am set-up with a Load Balancer. If the users are access via the URL of the reserve proxy, then please make sure the settings in configutil correctly have the URL via the reverse proxy except for the 'Local Tomcat Host' field in the GUI version of configutil. Once updated a restart of the Tomcat server(s) is required.


Sincerely,
Steven Williams
Principal Enterprise Architect
Micro Focus

6525036 Super Contributor.
Super Contributor.

Re: ig email template host and port

Jump to solution

Thanks

I assume it is the one on the "Network Topology" tab.

It seems to work. Nice and simple, thanks.

0 Likes
Micro Focus Expert
Micro Focus Expert

Re: ig email template host and port

Jump to solution

Greetings,
If you are using a Load Balancer (or Reverse Proxy) then the following should have the value of the LB (which means protocol, dns value, and port)

1) On the Authentication Server Tab
a) IG Redirect URL
b) IG Request Redirect URL
c) OSP URL (This will depend upon where OSP is deployed)

2) On the Network Topology Tab
a) Protocol dropdown
b) Host Name
c) Port


During the install of ID Gov you are asked 2 times for DNS values. One set would be used when coming in via a Load Balancer (or Reverse Proxy in your case) the second set is the local value (because some calls need to go via the LB and some stay local).


Did you configure during the install for the Reverse Proxy or did you do it post install?


Sincerely,
Steven Williams
Principal Enterprise Architect
Micro Focus

Knowledge Partner
Knowledge Partner

Re: ig email template host and port

Jump to solution

Also remember that if your port is https over 443 then unless it was fixed, configupdate.sh (for OSP config) not sure about configutil.sh requires a port value.  But if you set 443 (the correct value) OSP will not properly work since your browser will 'simplify' the request from https://site:443/ to https://site/ which is semantically identical.  However for OSP to follow the standards, they differ.  So you would have to set it to 443 in the GUI and then edit the ism-configuration.propertieis file afterwards.

 

Configutil.sh is a different file and you should be able to handle it without the 443 at all in there.  Just a heads up of a very annoying

The opinions expressed above are the personal opinions of the authors, not of Micro Focus. By using this site, you accept the Terms of Use and Rules of Participation. Certain versions of content ("Material") accessible here may contain branding from Hewlett-Packard Company (now HP Inc.) and Hewlett Packard Enterprise Company. As of September 1, 2017, the Material is now offered by Micro Focus, a separately owned and operated company. Any reference to the HP and Hewlett Packard Enterprise/HPE marks is historical in nature, and the HP and Hewlett Packard Enterprise/HPE marks are the property of their respective owners.