data:image/s3,"s3://crabby-images/4c8f4/4c8f470fa4cf98b888869f01d8562fcfdf1eced1" alt="Adobe 65029121 - Flash Media Streaming Server Configuration And Administration Manual Download Page 37"
33
FLASH
MEDIA
SERVER
4.5
CONFIGURATION
AND
ADMINISTRATION
Configuring the server
Last updated 11/28/2012
In some scenarios, however, you might want to disable RTMPE (encrypted Real-Time Messaging Protocol). Because
RTMPE uses encrypted channels, there is a minor impact on performance; RTMPE requires about 15% more
processing power than RTMP. If you don’t control the applications that connect to Flash Media Server and you don’t
want them to use RTMPE, you can disable RTMPE at the adaptor level.
To request an encrypted or encrypted tunnelling channel, applications specify
rtmpe
or
rtmpte
, respectively, in the
NetConnection.connect()
URL, for example,
nc.connect("rtmpe://www.example.com/myMediaApplication")
. If an application specifies RTMPE without
explicitly specifying a port, Flash Player scans ports just like it does with RTMP, in the following order: 1935 (RTMPE),
443 (RTMPE), 80 (RTMPE), 80 (RTMPTE).
Note:
RTMPE cannot currently be used between servers or from edge to origin. In these cases, RTMPS can be used instead.
1
Open the Adaptor.xml file for the adaptor you want to disable (located in
rootinstall
/conf).
2
Locate the following XML:
<RTMP>
<!-- RTMPE is the encrypted RTMP protocol covering both RTMPE and RTMPTE -->
<!-- This is enabled by default, setting enabled to "false will not -->
<!-- allow these protocols on this adaptor -->
<RTMPE enabled="true"></RTMPE>
</RTMP
3
Set the
RTMPE enabled
attribute to
"false"
.
4
Restart the server.
See also
“
XML configuration files reference
” on page 123
Flash Media Server Hardening Guide
Configuring security features
For information about security, see the
Flash Media Server Hardening Guide
.
Restrict which domains can connect to a virtual host
If desired, you can restrict which domains are allowed to connect to a virtual host. By default, connections are allowed
from all domains.
1
Open the
rootinstall
/conf/fms.ini file.
2
Set the
VHOST.ALLOW
parameter to a comma-delimited list of domains that are allowed to connect to the server. The
default value is
all
.
If a value is set, only the domains listed are accepted. For example,
VHOST.ALLOW = example.com, example2.com
allows connections from the example.com and example2.com domains. To allow localhost connections, specify
localhost
. For more information, see “
Vhost.xml file
” on page 236.
3
Restart the server.