
Figure 41. Urika-GX SSL setup
Information sent over the Internet is passed through various servers before it reaches the destination. Any
computer located between the source and destination can see user names, passwords, and other sensitive
information if it is not encrypted with an SSL certificate. Therefore, it is recommended to enable SSL, as
described in this procedure.
Major steps involved in installing SSL include:
1. Acquire and install a valid SSL certificate.
2. Edit the HA Proxy configuration file by uncommenting the settings to enable SSL.
3. Edit the settings for the Urika Applications Interface by uncommenting some settings to enable SSL.
In the following instructions, it is assumed that the SSL certificate is being installed on Urika-GX system
containing 48 nodes and
nid00030
is used as the node ID of login node 1.
CAUTION: SSL is only supported with certificates issued by a trusted Certificate Authority(CA), not with
self-signed certificates
In the following instructions and code samples,
hostname
is used as an example and should be replaced with the
actual host name of the system. This procedure assumes that it is being carried out on a 48 node system.
Procedure
1. SSH into login node 1.
#
ssh nid00030
Security
S3016
230