Hi ArchivesSpace Community Members,
Identify the Problem:
NOTE: 8089 is the port used by the ArchivesSpace API.
Describe the Outcome:
The netstat output shows the ArchivesSpace API binding to 0.0.0.0:8089.
Explore Possible Strategies:
We can configure MySQL, Apache, and ArchivesSpace to bind exclusively to the loopback address (127.0.0.1).
Anticipate Outcomes and Act:
We anticipated that configuring ArchivesSpace's config.rb file to bind to 127.0.0.1 would result in the following netstat output:
|
Proto |
Recv-Q |
Send-Q |
Local Address |
Foreign Address |
State |
User |
Inode |
PID/Program name |
Timer |
|
tcp |
0 |
0 |
127.0.0.1:* |
LISTEN |
0 |
10807013 |
1128186/java |
off (0.00/0/0) |
But We Get:
However, the command still returns:
|
Proto |
Recv-Q |
Send-Q |
Local Address |
Foreign Address |
State |
User |
Inode |
PID/Program name |
Timer |
|
tcp |
0 |
0 |
0.0.0.0:* |
LISTEN |
0 |
10807013 |
1128186/java |
off (0.00/0/0) |
Look and Learn:
How can we resolve this configuration issue to satisfy Campus IT (InfoSec unit) and definitively support the statement: "The library's technology unit has no publicly exposed ports for the ArchivesSpace API"?
Khuong Vu (Application Development Coordinator, [he|him|his])
University Library, California State University San Marcos
San Marcos, California, is on the traditional territory and homelands of the Luiseño/Payómkawichum people: Luiseño (Loo-sin-yo) and Payómkawichum (Pie-yom-ko-wi-shum)
|
You don't often get email from william....@und.edu.
Learn why this is important
|