How do I secure the web GUI ?

By default, the web GUI binds to all IP addresses on a node, i.e. ''. If this is undesired for security reasons, the web GUI can be secured by binding the HTTP server to localhost only, i.e. prevent remote browser access. The server.socket_host line in the global section of the /opt/HAC/RSF-1/SVC/rsf_standalone.conf file just needs to be updated as follows:

server.socket_host: ''

Once the file has been saved, the web GUI will automatically restart and be bound to localhost only.

N.B. This is the only supported method of securing the web GUI which will allow the new rsfadm command which relies on the Python HTTP API to continue functioning normally.

Last update: 2016-05-06 13:16
Author: Andrew Robson
Revision: 1.3

