You are viewing limited content. For full access, please sign in.

Question

Question

Setting up Mobile App Server in the DMZ with STS

asked on June 6, 2019 Show version history

I currently have an LFDS Server on a seperate domain to my application server storing forms, workflow, repository etc. The LFDS server communicates to the application server on another domain using certificates (alternate service) and domain trusts. I have web access and forms access working fine although i am trying to setup the Mobile server on the application server to allow users to login on their mobile to forms and repository. 

When setting up the Directory Server in the configuration i input the 'applicationserverdomain/LFDSSTS' in the STS and achieve just a domain does not match the name in the license file.... So if i input the LFDS Servers (licensed FQDN) STS address it returns the organisations for the Licensing site, but will not come up with a login screen on the app.. The goal is to be able to use the local applications server domain and authenticate through that like the other applications. 

Any ideas thank you! 

Config.PNG
Cert.PNG
Config.PNG (21.1 KB)
Cert.PNG (19.33 KB)
0 0

Answer

SELECTED ANSWER
replied on June 6, 2019

This is a known issue with setting up Mobile Server in the DMZ. What I recommend is this:

  1. Use the UI to set up the certificate and enter the LFDS Server's STS address (just to keep the configuration page happy)
  2. Save your changes and open up C:\ProgramData\Laserfiche\Mobile\WebAccessConfig.xml
  3. Back up this file, and edit it to use your intended STS address (using the incorrect STS address as a template)
  4. Restart IIS

 

Note: if after this you use the UI to change any settings, the changes you made to the XML file may need to be repeated.

2 0
replied on June 10, 2019

Hi Chase thanks for your reply!

This worked great for me thank you very much! The repository works great but i cant seem to login to forms. I get an error in the configuration page that the forms server does not match the lFDS server at the bottom..... Any idea?

1 0
replied on October 16, 2019 Show version history

I am having similar issues. I am able to access the Forms Portal server via my browser from outside the network without issue, so I'm certain that is configured correctly to communicate to the DMZ WebSTS. Via the Mobile App, if I do not add the Forms Portal, I am able to access the Repository, so I'm confident I have things configured correctly there. If I add the Forms Portal server to the Mobile App, I get an error that I am unable to connect to the remote server. 

I have followed the Mobile instructions in the Directory Server SSO guide.

Please advise.



 

Mobile Config.png
MobileApp Error.png
Mobile Config.png (289.36 KB)
0 0
replied on October 16, 2019

Hi Michael,

I recommend reaching out to the Support team for this issue so they can narrow things down.

0 0

Replies

You are not allowed to reply in this post.
You are not allowed to follow up in this post.

Sign in to reply to this post.