Macromedia Connect Entreprise Server - 6.0 User Manual

Chapter 1:
ADOBE® CONNECT ENTERPRISE SERVER 6
SSL CONFIGURATION GUIDE
Copyright
Adobe® Connect™ Enterprise Server 6 SSL Configuration Guide, for Windows®
If this guide is distributed with software that includes an end user agreement, this guide, as well as the software described in it, is furnished under license and may be used or copied only in accordance with the terms of such license. Except as permitted by any such license, no part of this guide may be reproduced, stored in a retrieval system, or trans mitted, in any form or by any means, electronic, mechanical, recording, or otherwise, without the prior written permission of Adobe Systems Incorporated. Please note that the content in this guide is protected under copyright law even if it is not distributed with software that includes an end user license agreement.
The content of this guide is furnished for informational use only, is subject to change without notice, and should not be construed as a commitment by Adobe Systems Incorpo­rated. Adobe Systems Incorporated assumes no responsibility or liability for any errors or inaccuracies that may appear in the informational content contained in this guide.
Please remember that existing artwork or images that you may want to include in your project may be protected under copyright law. The unauthorized incorporation of such material into your new work could be a violation of the rights of the copyright owner. Please be sure to obtain any permission required from the copyright owner.
Any references to company names in sample templates are for demonstration purposes only and are not intended to refer to any actual organization.
Adobe, the Adobe logo, Acrobat, Adobe Connect, Adobe Press, Breeze, Flash Media Server, Flash Player, and JRun are either registered trademarks or trademarks of Adobe Systems Incorporated in the United States and/or other countries.
IBM is a trademark of International Business Machines Corporation in the United States, other countries, or both. Linux is the registered trademark of Linus Torvalds in the U.S. and other countries. Macintosh is a trademark of Apple Computer, Inc., registered in the United States and other countries. Microsoft, Windows, and Windows Server are either registered trademarks or trademarks of Microsoft Corporation in the United States and/or other countries. Solaris and Sun are trademarks or registered trademarks of Sun Micro systems, Inc. in the United States and other countries. UNIX is a registered trademark of The Open Group in the US and other countries. All other trademarks are the property of their respective owners.
Notice to U.S. Government End Users: The Software and Documentation are “Commercial Items,” as that term is defined at 48 C.F.R. §2.101, consisting of “Commercial Computer Software” and “Commercial Computer Software Documentation,” as such terms are used in 48 C.F.R. §12.212 or 48 C.F.R. §227.7202, as applicable. Consistent with 48 C.F.R. §12.212 or 48 C.F.R. §§227.7202-1 through 227.7202-4, as applicable, the Commercial Computer Software and Commercial Computer Software Documentation are being licensed to U.S. Government end users (a) only as Commercial Items and (b) with only those rights as are granted to all other end users pursuant to the terms and conditions herein. Unpublished-rights reserved under the copyright laws of the United States. Adobe agrees to comply with all applicable equal opportunity laws including, if appropriate, the provisions of Executive Order 11246, as amended, Section 402 of the Vietnam Era Veterans Readjustment Assistance Act of 1974 (38 USC 4212), and Section 503 of the Rehabilitation Act of 1973, as amended, and the regulations at 41 CFR Parts 60-1 through 60-60, 60-250, and 60-741. The affirmative action clause and regulations contained in the preceding sentence shall be incorporated by reference.
Adobe Systems Incorporated, 345 Park Avenue, San Jose, California 95110, USA.
-
-

Contents

SSL Configuration Guide
Preparing to configure SSL . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 1
Configuring SSL for Connect Enterprise Server . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 2
SSL configuration reference . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 8
iii

SSL Configuration Guide

Configure SSL to create secure client-server connections for Adobe® Connect™ Enterprise Server and Adobe Connect Edge Server.

Preparing to configure SSL

About SSL support

Connect Enterprise Server 6 is made up of two servers: Macromedia® Flash® Media Server from Adobe and the Connect Enterprise application server. Flash Media Server is also called the meeting server, because it handles the
®
real-time RTMP connection between the client and Adobe Enterprise application server handles the HTTP connection between the client and the Connect Enterprise appli cation logic. By default, Connect Enterprise Server uses port 443 for encrypted traffic.
You can configure SSL for the application server, the meeting server, or both:
Acrobat® Connect™ Professional meetings. The Connect
-
1
Hardware-based solution Use an SSL accelerator for the most robust SSL configuration.
You must purchase an SSL accelerator separately. Adobe has verified that Connect Enterprise Server works with the following SSL hardware accelerators: F5 Big-IP 1000, Cisco Catalyst 6590 Switch, and Radware T100.
Software-based solution Use the native support for SSL in Connect Enterprise Server.
Note: SSL is not supported on Microsoft
Connect Enterprise Server uses the HTTP CONNECT method to request an SSL connection. To ensure that Acrobat Connect meetings can connect to clients securely without tunneling RTMP over HTTP/HTTPS, make sure any proxy servers allow clients to use the
For help configuring SSL, contact Adobe Support at www.adobe.com/go/connect_licensed_programs_en.
®
Windows® 98.
CONNECT method.

Working with certificates

An SSL certificate verifies the identity of the server to the client.
To secure the meeting server connection (RTMP) and the application server connection (HTTP), you must have two SSL certificates, one for each server. To configure SSL for a cluster of computers hosting Connect Enterprise Server, you must have an SSL certificate for each meeting server, but you can use one certificate for all the application servers.
For example, to secure the meeting server and application server connections on one server, you would need two SSL certificates. To secure the meeting server and application server connections on a cluster of three servers, you would need four SSL certificates—one for the application servers and three for the meeting servers.
Obtain certificates
Contact a Certificate Authority—a trusted third party who verifies the identity of the applicant. (A self-signed
certificate will not work with Connect Enterprise.)
Loading...
+ 8 hidden pages