User guide
Chapter 1: Overview
1-52
Figure 1-38 Using SSL Communication between Application Gateway and Authentication Server
To operate using this system configuration, use the following settings.
Setup of Application Gateway
• Reverse Settings
Examples of the reverse settings in the figure above are shown in the table below.
In the URL for the directory from which the request originated that is entered in the business server
reverse settings, specify a directory layer for each business server. Example: /www1/, /www2/.
Table 1-8 Reverse for Application Gateway
Request-source URL Conversion
control
Relay-destination URL Remarks
https://sd.fujitsu.com:44
3/www1/
<----------> https://www.fujitsu.com:443/ Reverse settings of
Business server
https://sd.fujitsu.com:44
3/auth/
<----------> https://auth.fujitsu.com:443/ Reverse settings of
Authentication server
When “Set-Cookies Header” is specified in the HTTP response header, and path and domain that
are specified to “Set-Cookies Header” are same as directory and server name of Relay-destination
URL that is defined in the table (1-8) above, set path and domain as to replace the compatible
Request-source URL.
Setup of authentication server
• To create SSL configurations on the authentication server, select [System] > [Security] > [SSL] >
[Create a new SSL Configuration] tab. Then, specify "No" for [Verify Client Certificate?] under
[General Settings].
2. Single Sign-on System that can be Accessed Only from the Clients on the Internet
The following describes the Single Sign-on system that can be accessed only from the clients on the
Internet.
Note the following points for the operations of this system.