
2. Uncomment the following lines in
/etc/haproxy/haproxy.cfg
configuration file and replace all
occurrences of
/etc/ssl/certs/
filename
.pem
with the full path to the SSL certificate.
frontend hive_ssl
bind *:29207 ssl crt /etc/hive/conf/server.pem
mode tcp
option forwardfor
reqadd X-Forwarded-Proto:\ https
default_backend hive_ssl_backend
backend hive_ssl_backend
mode tcp
balance source
server server1 192.168.0.33:10000
frontend sparkthrift_ssl
bind *:29208 ssl crt /etc/hive/conf/server.pem
mode tcp
option forwardfor
reqadd X-Forwarded-Proto:\ https
default_backend sparkthrift_ssl_backend
backend sparkthrift_ssl_backend
mode tcp
balance source
server server1 192.168.0.33:10015
frontend grafana_ssl
bind *:29201 ssl crt /etc/ssl/certs/filename.pem
mode http
option forwardfor
option http-server-close
option httpclose
reqadd X-Forwarded-Proto:\ https
default_backend grafana_ssl_backend
backend grafana_ssl_backend
mode http
balance source
server server1 192.168.0.47:3000
frontend hue_ssl
bind *:29202 ssl crt /etc/ssl/certs/filename.pem
mode http
option forwardfor
option http-server-close
option httpclose
reqadd X-Forwarded-Proto:\ https
reqadd X-Forwarded-Protocol:\ https
default_backend hue_ssl_backend
backend hue_ssl_backend
mode http
balance source
server server3 192.168.0.31:8888
frontend jupyter_ssl
bind *:29204 ssl crt /etc/ssl/certs/filename.pem
mode http
option forwardfor
Security
S3016
231