MACROMEDIA FLASH MEDIA SERVER 2-USING FLASH MEDIA SERVER EDGE SERVERS Guide de l'utilisateur Page 20

  • Télécharger
  • Ajouter à mon manuel
  • Imprimer
  • Page
    / 25
  • Table des matières
  • MARQUE LIVRES
  • Noté. / 5. Basé sur avis des utilisateurs
Vue de la page 19
ADOBE CONNECT 6.0
Technical Overview
16
Use a local software firewall. For a clustered Enterprise Server system that shares a public network with other
customer servers, you may find that a software firewall is appropriate on each individual server.
Configure SSL. You can use an SSL to secure communications between the Enterprise Server edge servers and the
origin Enterprise Server.
Web server security
Enterprise Server relies on Macromedia JRun from Adobe for its web server functionality. The server is hardened in
the Adobe implementation. Enterprise Server uses a simplified version of the JRun server: this means that only the
component of the server that accepts and responds to HTTP requests is present and in use; Adobe removed or
disabled the rest of the functionality. For example, Adobe eliminated the following components: the JRun content
server, auto-deploy, JSP support, sample applications, clustering, session management, and web services.
Secure Sockets Layer (SSL)
You can deploy a licensed version of Enterprise Server with an SSL layer in one of two ways: A software-based
solution that uses the native support for SSL in Flash Media Server; or a hardware-based solution that routes all
communication through an external SSL accelerator, which you must purchase separately through your preferred
vendor.
Without SSL, all logins are conducted over HTTP connections, and all subsequent content and meetings are
delivered over standard unencrypted HTTP and RMTP connections. You can configure SSL to encrypt the HTTP
connection, the RTMP connection, or the HTTP and RTMP connections.
SSL hardware accelerators intercept traffic on port 443, decrypt the information, and send it back to Enterprise
Server over a port and IP address that is presumably not exposed outside your corporate security measures. The
server has no indication that the original data was encrypted. Adobe has tested and verified Enterprise Server with
the following SSL hardware accelerator providers:
F5 Big-IP 1000
Cisco Catalyst 6590 Switch
Radware T100
Your network configuration and environment has a direct effect on Enterprise Server performance and these
variables ultimately determine how Enterprise Server should be deployed with your SSL hardware. Enterprise Server
may support other solutions in the industry, but the providers listed are the only ones that are confirmed at this time.
You may decide to use a software-based SSL, but Adobe recommends hardware accelerators for better performance.
For details on setting up a software-based SSL solution with Enterprise Server, see the Adobe Connect Enterprise
Server 6 Administration Guide available online at www.adobe.com/go/connect_documentation_en.
In the Enterprise Hosted solution, SSL is enabled for login and content management. SSL for real-time communica-
tions is an available option on a per-account basis.
Public key infrastructure (PKI)
You can set up a public key infrastructure (PKI) to manage identification credentials as part of your Enterprise Server
security architecture for clients. In the more familiar SSL protocol, the server must verify its identity to the client; in
PKI, the client must verify its identity to the server.
Vue de la page 19
1 2 ... 15 16 17 18 19 20 21 22 23 24 25

Commentaires sur ces manuels

Pas de commentaire