You are viewing limited content. For full access, please sign in.

Question

Question

give external users access to the repository

asked on December 19, 2018

hi all,

i am wondering if there is a way to allow external users (that are not on the local l network) access to the Laserfiche repository, through webaccess.

With the new feature of LFDS we can install a separate login page in the DMZ for external users and DMZ products to connect to. so can i set up this to work with laserfiche repository ?

Hanane

0 0

Replies

replied on December 19, 2018

Hi Hanane,

 

This is possible like you say, you'll have to present the repository to the outside world through a DMZ or some kind of port forwarding.

 

In terms of licensing, every user that access's Laserfiche must have a license of some sort (with the exception of Weblink). To that end if they need read only access, you can get a participant license, rather than full licenses for those users. If they need to change or edit anything in the repository then they will need to be full users.

 

You can set these users up as Laserfiche users either at the repository level or in LFDS, which will give them username and password access without the need to link these accounts to active directory.

 

Hope this helps!

0 0
replied on December 19, 2018

hi Douglas,thank you for ure answer, of course it helps.
So you say i have to present my Laserfiche server to the DMZ. Good to know.
But i would like something more secure, i don't want to put all the laserfiche server on the DMZ, i was thinking about only puting the LFDS login page on the DMZ and let the laserfiche server on the local network. and external users could access the repository using some secure protocol or  something like that through LFDS... am i dreaming? 

0 0
replied on December 19, 2018

Hmmmm, you probably don't want to expose or have your data inside a DMZ. You probably just want to have the web components there, pointing inside to your LF server. LFDS can remain inside, but needs to communicate with Web Access.

 

Here is a white paper on DMZ's and how it all fit's together. Hopefully this might explain better. It's for forms, but the principals are the same.

1 0
replied on December 19, 2018

Hello,

The best option is going to be an STS page and Web Access instance on the DMZ, which then connects back into the network to the LF application server.

We have Forms and some other stuff on our DMZ, but the repositories and everything are still inside the network.

The login page just wont be enough because after it authenticates you it redirects you back to the site; if they site isn't visible from outside it won't work.

0 0
You are not allowed to follow up in this post.

Sign in to reply to this post.