...
Verify Workbench is up and running under HTTP and/or HTTPS by navigating to https://<host url>:8443
and/or http://<host url>:8080
(as appropriate) in your browser.Note that there is another type of connection called “Admin”. If you have configured this connection it allows you to gather metrics and get status information about the health of your server. Provisioning it is exactly analogous to the Application connector.
As an example, here is the server section of a Unix config.yml
that has configured adminConnectors
to allow both http and https connections (this is a customer example, and also shows use of a customer supplied ssh certificate rather than a self signed one)
Code Block |
---|
server:
applicationConnectors:
- type: http
port: 8080
- type: https
port: 8443
keyStoreType: "PKCS12"
keyStorePath: "/opt/dm/mci/workbenchEntrustSigned.p12"
keyStorePassword: "bigSecret"
trustStoreType: "PKCS12"
trustStorePath: "/opt/dm/mci/workbenchEntrustSigned.p12"
trustStorePassword: "bigSecret"
adminConnectors:
- type: http
port: 8083
- type: https
port: 8444
keyStoreType: "PKCS12"
keyStorePath: "/opt/dm/mci/workbenchEntrustSigned.p12"
keyStorePassword: "bigSecret"
trustStoreType: "PKCS12"
trustStorePath: "/opt/dm/mci/workbenchEntrustSigned.p12"
trustStorePassword: "bigSecret"
<rest of config.yml omitted> |
Note that the same ssh certificate is used for both connectors in this example. It can be different but that may not be worth the extra effort. Note also that http has been left enabled, you may want to remove that based on your organization’s security preferences.
Note also that, like with the applicationConnector
, you can use any ports (but they must be different than the other connector, and must be available on your system, not already in use)
When you have it set up right, going to https://your.server.name.com:8444/
will give you a small menu that looks like this:
...
It is recommended that you get the application connector working correctly over https before you also enable the admin connector or before you turn off http access.
Trusting your certificate
...