External Designer Access
Posted: Wed May 19, 2010 4:21 pm
I have ProfoundUI set up using SSL so our clients can connect remotely. It works great, they can go to "https://examplesite.com/client", and it runs the Alias pointing to Profound UI's "start.html". Also have it set up so if they try to access it using "http://", it will rewrite and force "https://". Our clients then use a general IBM profile (same for all clients) to log in and get presented with a second logon screen. This second logon is where their access level gets determined. This is all working great.
One thing I noticed though, is they can go to "https://examplesite.com/profoundui/designer" and it will prompt for the IBM profile. If they enter the general IBM profile that was created for the above use, it'll load up Visual Designer. This is not good.
Is there a way in the HTTP configuration to block "/profoundui/designer" for external access, but still allow it for local/internal access? Or am I going about this the wrong way? I could remove the designer Alias, but then I wouldn't be able to access the designer at all, even locally.
Perhaps the ability to restrict Visual Designer to only certain user profiles?
Any help is greatly appreciated. Thanks,
-RC
One thing I noticed though, is they can go to "https://examplesite.com/profoundui/designer" and it will prompt for the IBM profile. If they enter the general IBM profile that was created for the above use, it'll load up Visual Designer. This is not good.
Is there a way in the HTTP configuration to block "/profoundui/designer" for external access, but still allow it for local/internal access? Or am I going about this the wrong way? I could remove the designer Alias, but then I wouldn't be able to access the designer at all, even locally.
Perhaps the ability to restrict Visual Designer to only certain user profiles?
Any help is greatly appreciated. Thanks,
-RC