Page 1 of 1

[RESOLVED]ABE rule to allow redirection to local server

Posted: Tue Apr 21, 2015 12:31 am
by Thrawn
Hi, folks.;

I'm having some difficulty assembling an ABE rule to allow redirection from an identity provider (edentity.com) to a development server (on localhost).

My SYSTEM ruleset looks like this:

Code: Select all

Site http://localhost:7666
Accept from localhost https://uat.identity.qld.gov.au https://test.edentity.com

# Prevent Internet sites from requesting LAN resources.
Site LOCAL
Accept from LOCAL
Deny
And the Deny log is:

Code: Select all

[ABE] <LOCAL> Deny on {GET http://localhost:7666/papium/greenid/verify/<redacted> <<< https://test.edentiti.com/timeout.seam;jsessionid=<redacted>?cid=<redacted>, https://test.edentiti.com/verification/verify-singlepage.seam, https://test.edentiti.com/verification/verify-singlepage.seam?show=medicaredvs - 6}
SYSTEM rule:
Site LOCAL
Accept from LOCAL
Deny
I've tried adding /* to the end of URL in the Accept line, but it didn't make a difference. It looks like there are multiple redirects happening, which is always tricky in ABE, but I would have thought that putting everything on the one Accept line would handle that.

(And I could post this in the ABE forum, but I actually need help).

Re: ABE rule to allow redirection to local server

Posted: Tue Apr 21, 2015 1:16 am
by barbaz
Try this?

Code: Select all

Site http://localhost:7666/*
Accept from http://localhost:7666/* https://uat.identity.qld.gov.au/* https://test.edentity.com/* https://test.edentiti.com/*

# Prevent Internet sites from requesting LAN resources.
Site LOCAL
Accept from LOCAL
Deny

Re: ABE rule to allow redirection to local server

Posted: Wed May 06, 2015 3:29 pm
by barbaz
You also have a typo that I didn't spot before Image
Edited the rule above

Re: ABE rule to allow redirection to local server

Posted: Thu May 07, 2015 3:48 am
by Thrawn
You're right; it was a typo. edentity.com should have been edentiti.com. Works now; thanks :).