<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Setting up Alfresco 5 with SSL and Apache  in Alfresco Archive</title>
    <link>https://connect.hyland.com/t5/alfresco-archive/setting-up-alfresco-5-with-ssl-and-apache/m-p/285690#M238820</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;What is ServerAlias alfresco.acme.org? Why is not the same as server name?&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Sat, 12 Jul 2014 21:27:41 GMT</pubDate>
    <dc:creator>donp</dc:creator>
    <dc:date>2014-07-12T21:27:41Z</dc:date>
    <item>
      <title>Setting up Alfresco 5 with SSL and Apache</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/setting-up-alfresco-5-with-ssl-and-apache/m-p/285688#M238818</link>
      <description>I have searched all over the net reading guides on how to install alfresco 5 properly with SSL or utilizing apache as a proxy and also to change it to port 80. I have even searched this forum and I still have not gotten close. How can I change from port 8080 to 80 and SSL correctly? The SSL certific</description>
      <pubDate>Sat, 12 Jul 2014 19:17:16 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/setting-up-alfresco-5-with-ssl-and-apache/m-p/285688#M238818</guid>
      <dc:creator>donp</dc:creator>
      <dc:date>2014-07-12T19:17:16Z</dc:date>
    </item>
    <item>
      <title>Re: Setting up Alfresco 5 with SSL and Apache</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/setting-up-alfresco-5-with-ssl-and-apache/m-p/285689#M238819</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;Try this …&lt;/SPAN&gt;&lt;BR /&gt;&lt;A href="https://forums.alfresco.com/forum/installation-upgrades-configuration-integration/installation-upgrades/alfreso-apache-tomcat" rel="nofollow noopener noreferrer"&gt;https://forums.alfresco.com/forum/installation-upgrades-configuration-integration/installation-upgrades/alfreso-apache-tomcat&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;It works for me. You need the mod_jk for Apache httpd and the configuration in Apache to redirect via the Tomcat connector…&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;For example my Apache configuration includes …&lt;/SPAN&gt;&lt;BR /&gt;&lt;PRE class="language-none line-numbers"&gt;&lt;CODE&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;LoadModule jk_module modules/mod_jk.so&lt;BR /&gt;JkWorkersFile /opt/alfresco/tomcat/conf/workers.properties&lt;BR /&gt;&amp;lt;VirtualHost *:80&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; ServerName engineering.acme.org&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; ServerAlias alfresco.acme.org&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; RewriteEngine On&lt;BR /&gt;# force alfresco and share to use https&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; RewriteCond %{HTTPS} !=on&lt;BR /&gt;#&amp;nbsp;&amp;nbsp;&amp;nbsp; RewriteLogLevel 3&lt;BR /&gt;#&amp;nbsp;&amp;nbsp;&amp;nbsp; RewriteLog "/var/log/rewrite.log"&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; RewriteRule ^/share(.*) &lt;A href="https://engineering.acme.org/share$1" rel="nofollow noopener noreferrer"&gt;https://engineering.acme.org/share$1&lt;/A&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; RewriteRule ^/alfresco(.*) &lt;A href="https://engineering.acme.org/alfresco$1" rel="nofollow noopener noreferrer"&gt;https://engineering.acme.org/alfresco$1&lt;/A&gt;&lt;BR /&gt;&amp;lt;/VirtualHost&amp;gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&amp;lt;VirtualHost *:443&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; ServerName engineering.acme.org&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; ServerAlias alfresco.acme.org&lt;BR /&gt;SSLEngine on&lt;BR /&gt;SSLCertificateFile /etc/pki/tls/certs/acme.crt&lt;BR /&gt;SSLCertificateKeyFile /etc/pki/tls/private/acme.key&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; SetEnvIf User-Agent ".*MSIE.*" nokeepalive ssl-unclean-shutdown downgrade-1.0 force-response-1.0&lt;BR /&gt;#&amp;nbsp;&amp;nbsp; JkOptions indicate to send SSL KEY SIZE,&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; JkOptions +ForwardKeySize -ForwardDirectories&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; JkMount /share/* tomcat&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; JkMount /share tomcat&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; JkMount /alfresco tomcat&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; JkMount /alfresco/* tomcat&lt;BR /&gt;&lt;BR /&gt;# JkLogFile&amp;nbsp;&amp;nbsp;&amp;nbsp; /var/log/mod_jk.log&lt;BR /&gt;# JkLogLevel&amp;nbsp;&amp;nbsp; debug&lt;BR /&gt;# JkLogStampFormat "[%a %b %d %H:%M:%S %Y] "&lt;BR /&gt;&lt;BR /&gt;&amp;lt;/VirtualHost&amp;gt;&lt;BR /&gt;&lt;SPAN class="line-numbers-rows"&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/CODE&gt;&lt;/PRE&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;and my /opt/alfresco/tomcat/conf/workers.properties file is&lt;/SPAN&gt;&lt;BR /&gt;&lt;PRE class="language-none line-numbers"&gt;&lt;CODE&gt;&lt;BR /&gt;[root@engineering-001-gvlp ~]# cat /opt/alfresco/tomcat/conf/workers.properties &lt;BR /&gt;worker.list=tomcat&lt;BR /&gt;&lt;BR /&gt;worker.tomcat.port=9009&lt;BR /&gt;worker.tomcat.host=localhost&lt;BR /&gt;worker.tomcat.type=ajp13&lt;BR /&gt;worker.tomcat.lbfactor=1&lt;BR /&gt;&lt;SPAN class="line-numbers-rows"&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/CODE&gt;&lt;/PRE&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 12 Jul 2014 19:50:00 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/setting-up-alfresco-5-with-ssl-and-apache/m-p/285689#M238819</guid>
      <dc:creator>michaelk</dc:creator>
      <dc:date>2014-07-12T19:50:00Z</dc:date>
    </item>
    <item>
      <title>Re: Setting up Alfresco 5 with SSL and Apache</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/setting-up-alfresco-5-with-ssl-and-apache/m-p/285690#M238820</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;What is ServerAlias alfresco.acme.org? Why is not the same as server name?&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 12 Jul 2014 21:27:41 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/setting-up-alfresco-5-with-ssl-and-apache/m-p/285690#M238820</guid>
      <dc:creator>donp</dc:creator>
      <dc:date>2014-07-12T21:27:41Z</dc:date>
    </item>
    <item>
      <title>Re: Setting up Alfresco 5 with SSL and Apache</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/setting-up-alfresco-5-with-ssl-and-apache/m-p/285691#M238821</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;I set it up and the worker.properties file was not there and created it and it wont load. domain/share. I noticed I was missing the mod_jk.so. I began installing now I am stuck in the compile process of where to install it. Here is the link &lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;I do not know where is the connector dir. &lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;A href="http://mypunitshah.blogspot.com/2012/09/install-modjk-on-centos.html" rel="nofollow noopener noreferrer"&gt;http://mypunitshah.blogspot.com/2012/09/install-modjk-on-centos.html&lt;/A&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 12 Jul 2014 22:18:39 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/setting-up-alfresco-5-with-ssl-and-apache/m-p/285691#M238821</guid>
      <dc:creator>donp</dc:creator>
      <dc:date>2014-07-12T22:18:39Z</dc:date>
    </item>
    <item>
      <title>Re: Setting up Alfresco 5 with SSL and Apache</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/setting-up-alfresco-5-with-ssl-and-apache/m-p/285692#M238822</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;I got it somewhat working I believe. I am getting a service temporary unavailable. domain.com/share Below is what I have configured&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;httpd.conf&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# This is the main Apache server configuration file. It contains the&lt;BR /&gt;# configuration directives that give the server its instructions.&lt;BR /&gt;# See for detailed information.&lt;BR /&gt;# In particular, see&lt;BR /&gt;# &lt;BR /&gt;# for a discussion of each configuration directive.&lt;BR /&gt;#&lt;BR /&gt;#&lt;BR /&gt;# Do NOT simply read the instructions in here without understanding&lt;BR /&gt;# what they do. They're here only as hints or reminders. If you are unsure&lt;BR /&gt;# consult the online docs. You have been warned. &lt;BR /&gt;#&lt;BR /&gt;# The configuration directives are grouped into three basic sections:&lt;BR /&gt;# 1. Directives that control the operation of the Apache server process as a&lt;BR /&gt;# whole (the 'global environment').&lt;BR /&gt;# 2. Directives that define the parameters of the 'main' or 'default' server,&lt;BR /&gt;# which responds to requests that aren't handled by a virtual host.&lt;BR /&gt;# These directives also provide default values for the settings&lt;BR /&gt;# of all virtual hosts.&lt;BR /&gt;# 3. Settings for virtual hosts, which allow Web requests to be sent to&lt;BR /&gt;# different IP addresses or hostnames and have them handled by the&lt;BR /&gt;# same Apache server process.&lt;BR /&gt;#&lt;BR /&gt;# Configuration and logfile names: If the filenames you specify for many&lt;BR /&gt;# of the server's control files begin with "/" (or "drive:/" for Win32), the&lt;BR /&gt;# server will use that explicit path. If the filenames do *not* begin&lt;BR /&gt;# with "/", the value of ServerRoot is prepended -- so "logs/foo.log"&lt;BR /&gt;# with ServerRoot set to "/etc/httpd" will be interpreted by the&lt;BR /&gt;# server as "/etc/httpd/logs/foo.log".&lt;BR /&gt;#&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;### Section 1: Global Environment&lt;BR /&gt;#&lt;BR /&gt;# The directives in this section affect the overall operation of Apache,&lt;BR /&gt;# such as the number of concurrent requests it can handle or where it&lt;BR /&gt;# can find its configuration files.&lt;BR /&gt;#&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# Don't give away too much information about all the subcomponents&lt;BR /&gt;# we are running. Comment out this line if you don't mind remote sites&lt;BR /&gt;# finding out what major optional modules you are running&lt;BR /&gt;ServerTokens OS&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# ServerRoot: The top of the directory tree under which the server's&lt;BR /&gt;# configuration, error, and log files are kept.&lt;BR /&gt;#&lt;BR /&gt;# NOTE! If you intend to place this on an NFS (or otherwise network)&lt;BR /&gt;# mounted filesystem then please read the LockFile documentation&lt;BR /&gt;# (available at );&lt;BR /&gt;# you will save yourself a lot of trouble.&lt;BR /&gt;#&lt;BR /&gt;# Do NOT add a slash at the end of the directory path.&lt;BR /&gt;#&lt;BR /&gt;ServerRoot "/etc/httpd"&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# PidFile: The file in which the server should record its process&lt;BR /&gt;# identification number when it starts. Note the PIDFILE variable in&lt;BR /&gt;# /etc/sysconfig/httpd must be set appropriately if this location is&lt;BR /&gt;# changed.&lt;BR /&gt;#&lt;BR /&gt;PidFile run/httpd.pid&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# Timeout: The number of seconds before receives and sends time out.&lt;BR /&gt;#&lt;BR /&gt;Timeout 60&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# KeepAlive: Whether or not to allow persistent connections (more than&lt;BR /&gt;# one request per connection). Set to "Off" to deactivate.&lt;BR /&gt;#&lt;BR /&gt;KeepAlive Off&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# MaxKeepAliveRequests: The maximum number of requests to allow&lt;BR /&gt;# during a persistent connection. Set to 0 to allow an unlimited amount.&lt;BR /&gt;# We recommend you leave this number high, for maximum performance.&lt;BR /&gt;#&lt;BR /&gt;MaxKeepAliveRequests 100&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# KeepAliveTimeout: Number of seconds to wait for the next request from the&lt;BR /&gt;# same client on the same connection.&lt;BR /&gt;#&lt;BR /&gt;KeepAliveTimeout 15&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;##&lt;BR /&gt;## Server-Pool Size Regulation (MPM specific)&lt;BR /&gt;##&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;# prefork MPM&lt;BR /&gt;# StartServers: number of server processes to start&lt;BR /&gt;# MinSpareServers: minimum number of server processes which are kept spare&lt;BR /&gt;# MaxSpareServers: maximum number of server processes which are kept spare&lt;BR /&gt;# ServerLimit: maximum value for MaxClients for the lifetime of the server&lt;BR /&gt;# MaxClients: maximum number of server processes allowed to start&lt;BR /&gt;# MaxRequestsPerChild: maximum number of requests a server process serves&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;StartServers 8&lt;BR /&gt;MinSpareServers 5&lt;BR /&gt;MaxSpareServers 20&lt;BR /&gt;ServerLimit 256&lt;BR /&gt;MaxClients 256&lt;BR /&gt;MaxRequestsPerChild 4000&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;# worker MPM&lt;BR /&gt;# StartServers: initial number of server processes to start&lt;BR /&gt;# MaxClients: maximum number of simultaneous client connections&lt;BR /&gt;# MinSpareThreads: minimum number of worker threads which are kept spare&lt;BR /&gt;# MaxSpareThreads: maximum number of worker threads which are kept spare&lt;BR /&gt;# ThreadsPerChild: constant number of worker threads in each server process&lt;BR /&gt;# MaxRequestsPerChild: maximum number of requests a server process serves&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;StartServers 4&lt;BR /&gt;MaxClients 300&lt;BR /&gt;MinSpareThreads 25&lt;BR /&gt;MaxSpareThreads 75 &lt;BR /&gt;ThreadsPerChild 25&lt;BR /&gt;MaxRequestsPerChild 0&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# Listen: Allows you to bind Apache to specific IP addresses and/or&lt;BR /&gt;# ports, in addition to the default. See also the &lt;BR /&gt;# directive.&lt;BR /&gt;#&lt;BR /&gt;# Change this to Listen on specific IP addresses as shown below to &lt;BR /&gt;# prevent Apache from glomming onto all bound IP addresses (0.0.0.0)&lt;BR /&gt;#&lt;BR /&gt;#Listen 12.34.56.78:80&lt;BR /&gt;Listen 80&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#ServerName subdomain.domainname.com&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;# RewriteEngine On&lt;BR /&gt;&lt;SPAN&gt;# RewriteRule ^(.*)/login$ &lt;/SPAN&gt;&lt;A class="jive-link-external-small" href="https://migration33.stage.lithium.com/" rel="nofollow noopener noreferrer"&gt;https://%&lt;/A&gt;&lt;SPAN&gt;{SERVER_NAME}$1/login [L,R]&lt;/SPAN&gt;&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;ServerName subdomain.domainname.com&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;ServerAlias alfresco.domainname.com&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;RewriteEngine On&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;# force alfresco and share to use https&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;RewriteCond %{HTTPS} !=on&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;# RewriteLogLevel 3&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;# RewriteLog "/var/log/rewrite.log"&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;RewriteRule ^/share(.*) &lt;A href="https://subdomain.domainname.com/share$1" rel="nofollow noopener noreferrer" style="color: #56a3d9; background: transparent; border: 0px; font-weight: bold; font-size: 14px;"&gt;https://subdomain.domainname.com/share$1&lt;/A&gt;&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;RewriteRule ^/alfresco(.*) &lt;A href="https://subdomain.domainname.com/alfresco$1" rel="nofollow noopener noreferrer" style="color: #56a3d9; background: transparent; border: 0px; font-weight: bold; font-size: 14px;"&gt;https://subdomain.domainname.com/alfresco$1&lt;/A&gt;&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;JkWorkersFile /opt/alfresco-5.0.a/tomcat/conf/workers.properties&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# Dynamic Shared Object (DSO) Support&lt;BR /&gt;#&lt;BR /&gt;# To be able to use the functionality of a module which was built as a DSO you&lt;BR /&gt;# have to place corresponding `LoadModule' lines at this location so the&lt;BR /&gt;# directives contained in it are actually available _before_ they are used.&lt;BR /&gt;# Statically compiled modules (those listed by `httpd -l') do not need&lt;BR /&gt;# to be loaded here.&lt;BR /&gt;#&lt;BR /&gt;# Example:&lt;BR /&gt;# LoadModule foo_module modules/mod_foo.so&lt;BR /&gt;#a&lt;BR /&gt;LoadModule jk_module modules/mod_jk.so&lt;BR /&gt;LoadModule auth_basic_module modules/mod_auth_basic.so&lt;BR /&gt;LoadModule auth_digest_module modules/mod_auth_digest.so&lt;BR /&gt;LoadModule authn_file_module modules/mod_authn_file.so&lt;BR /&gt;LoadModule authn_alias_module modules/mod_authn_alias.so&lt;BR /&gt;LoadModule authn_anon_module modules/mod_authn_anon.so&lt;BR /&gt;LoadModule authn_dbm_module modules/mod_authn_dbm.so&lt;BR /&gt;LoadModule authn_default_module modules/mod_authn_default.so&lt;BR /&gt;LoadModule authz_host_module modules/mod_authz_host.so&lt;BR /&gt;LoadModule authz_user_module modules/mod_authz_user.so&lt;BR /&gt;LoadModule authz_owner_module modules/mod_authz_owner.so&lt;BR /&gt;LoadModule authz_groupfile_module modules/mod_authz_groupfile.so&lt;BR /&gt;LoadModule authz_dbm_module modules/mod_authz_dbm.so&lt;BR /&gt;LoadModule authz_default_module modules/mod_authz_default.so&lt;BR /&gt;LoadModule ldap_module modules/mod_ldap.so&lt;BR /&gt;LoadModule authnz_ldap_module modules/mod_authnz_ldap.so&lt;BR /&gt;LoadModule include_module modules/mod_include.so:&lt;BR /&gt;LoadModule log_config_module modules/mod_log_config.so&lt;BR /&gt;LoadModule logio_module modules/mod_logio.so&lt;BR /&gt;LoadModule env_module modules/mod_env.so&lt;BR /&gt;LoadModule ext_filter_module modules/mod_ext_filter.so&lt;BR /&gt;LoadModule mime_magic_module modules/mod_mime_magic.so&lt;BR /&gt;LoadModule expires_module modules/mod_expires.so&lt;BR /&gt;LoadModule deflate_module modules/mod_deflate.so&lt;BR /&gt;LoadModule headers_module modules/mod_headers.so&lt;BR /&gt;LoadModule usertrack_module modules/mod_usertrack.so&lt;BR /&gt;LoadModule setenvif_module modules/mod_setenvif.so&lt;BR /&gt;LoadModule mime_module modules/mod_mime.so&lt;BR /&gt;LoadModule dav_module modules/mod_dav.so&lt;BR /&gt;LoadModule status_module modules/mod_status.so&lt;BR /&gt;LoadModule autoindex_module modules/mod_autoindex.so&lt;BR /&gt;LoadModule info_module modules/mod_info.so&lt;BR /&gt;LoadModule dav_fs_module modules/mod_dav_fs.so&lt;BR /&gt;LoadModule vhost_alias_module modules/mod_vhost_alias.so&lt;BR /&gt;LoadModule negotiation_module modules/mod_negotiation.so&lt;BR /&gt;LoadModule dir_module modules/mod_dir.so&lt;BR /&gt;LoadModule actions_module modules/mod_actions.so&lt;BR /&gt;LoadModule speling_module modules/mod_speling.so&lt;BR /&gt;LoadModule userdir_module modules/mod_userdir.so&lt;BR /&gt;LoadModule alias_module modules/mod_alias.so&lt;BR /&gt;LoadModule substitute_module modules/mod_substitute.so&lt;BR /&gt;LoadModule rewrite_module modules/mod_rewrite.so&lt;BR /&gt;LoadModule proxy_module modules/mod_proxy.so&lt;BR /&gt;LoadModule proxy_balancer_module modules/mod_proxy_balancer.so&lt;BR /&gt;LoadModule proxy_ftp_module modules/mod_proxy_ftp.so&lt;BR /&gt;LoadModule proxy_http_module modules/mod_proxy_http.so&lt;BR /&gt;LoadModule proxy_ajp_module modules/mod_proxy_ajp.so&lt;BR /&gt;LoadModule proxy_connect_module modules/mod_proxy_connect.so&lt;BR /&gt;LoadModule cache_module modules/mod_cache.so&lt;BR /&gt;LoadModule suexec_module modules/mod_suexec.so&lt;BR /&gt;LoadModule disk_cache_module modules/mod_disk_cache.so&lt;BR /&gt;LoadModule cgi_module modules/mod_cgi.so&lt;BR /&gt;LoadModule version_module modules/mod_version.so&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# The following modules are not loaded by default:&lt;BR /&gt;#&lt;BR /&gt;#LoadModule asis_module modules/mod_asis.so&lt;BR /&gt;#LoadModule authn_dbd_module modules/mod_authn_dbd.so&lt;BR /&gt;#LoadModule cern_meta_module modules/mod_cern_meta.so&lt;BR /&gt;#LoadModule cgid_module modules/mod_cgid.so&lt;BR /&gt;#LoadModule dbd_module modules/mod_dbd.so&lt;BR /&gt;#LoadModule dumpio_module modules/mod_dumpio.so&lt;BR /&gt;#LoadModule filter_module modules/mod_filter.so&lt;BR /&gt;#LoadModule ident_module modules/mod_ident.so&lt;BR /&gt;#LoadModule log_forensic_module modules/mod_log_forensic.so&lt;BR /&gt;#LoadModule unique_id_module modules/mod_unique_id.so&lt;BR /&gt;#&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# Load config files from the config directory "/etc/httpd/conf.d".&lt;BR /&gt;#&lt;BR /&gt;Include conf.d/*.conf&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# ExtendedStatus controls whether Apache will generate "full" status&lt;BR /&gt;# information (ExtendedStatus On) or just basic information (ExtendedStatus&lt;BR /&gt;# Off) when the "server-status" handler is called. The default is Off.&lt;BR /&gt;#&lt;BR /&gt;#ExtendedStatus On&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# If you wish httpd to run as a different user or group, you must run&lt;BR /&gt;# httpd as root initially and it will switch. &lt;BR /&gt;#&lt;BR /&gt;# User/Group: The name (or #number) of the user/group to run httpd as.&lt;BR /&gt;# . On SCO (ODT 3) use "User nouser" and "Group nogroup".&lt;BR /&gt;# . On HPUX you may not be able to use shared memory as nobody, and the&lt;BR /&gt;# suggested workaround is to create a user www and use that user.&lt;BR /&gt;# NOTE that some kernels refuse to setgid(Group) or semctl(IPC_SET)&lt;BR /&gt;# when the value of (unsigned)Group is above 60000; &lt;BR /&gt;# don't use Group #-1 on these systems!&lt;BR /&gt;#&lt;BR /&gt;User apache&lt;BR /&gt;Group apache&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;### Section 2: 'Main' server configuration&lt;BR /&gt;#&lt;BR /&gt;# The directives in this section set up the values used by the 'main'&lt;BR /&gt;# server, which responds to any requests that aren't handled by a&lt;BR /&gt;# definition. These values also provide defaults for&lt;BR /&gt;# any containers you may define later in the file.&lt;BR /&gt;#&lt;BR /&gt;# All of these directives may appear inside containers,&lt;BR /&gt;# in which case these default settings will be overridden for the&lt;BR /&gt;# virtual host being defined.&lt;BR /&gt;#&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# ServerAdmin: Your address, where problems with the server should be&lt;BR /&gt;# e-mailed. This address appears on some server-generated pages, such&lt;BR /&gt;# as error documents. e.g. &lt;A href="mailto:admin@your-domain.com" style="color: #56a3d9; background: transparent; border: 0px; font-weight: bold; font-size: 14px;" rel="nofollow noopener noreferrer"&gt;admin@your-domain.com&lt;/A&gt;&lt;BR /&gt;#&lt;BR /&gt;ServerAdmin &lt;A href="mailto:admin@domainname.com" style="color: #56a3d9; background: transparent; border: 0px; font-weight: bold; font-size: 14px;" rel="nofollow noopener noreferrer"&gt;admin@domainname.com&lt;/A&gt;&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# ServerName gives the name and port that the server uses to identify itself.&lt;BR /&gt;# This can often be determined automatically, but we recommend you specify&lt;BR /&gt;# it explicitly to prevent problems during startup.&lt;BR /&gt;#&lt;BR /&gt;# If this is not set to valid DNS name for your host, server-generated&lt;BR /&gt;# redirections will not work. See also the UseCanonicalName directive.&lt;BR /&gt;#&lt;BR /&gt;# If your host doesn't have a registered DNS name, enter its IP address here.&lt;BR /&gt;# You will have to access it by its address anyway, and this will make &lt;BR /&gt;# redirections work in a sensible way.&lt;BR /&gt;#&lt;BR /&gt;#ServerName &lt;A href="http://www.example.com/" rel="nofollow noopener noreferrer" style="color: #56a3d9; background: transparent; border: 0px; font-weight: bold; font-size: 14px;"&gt;www.example.com:80&lt;/A&gt;&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# UseCanonicalName: Determines how Apache constructs self-referencing &lt;BR /&gt;# URLs and the SERVER_NAME and SERVER_PORT variables.&lt;BR /&gt;# When set "Off", Apache will use the Hostname and Port supplied&lt;BR /&gt;# by the client. When set "On", Apache will use the value of the&lt;BR /&gt;# ServerName directive.&lt;BR /&gt;#&lt;BR /&gt;UseCanonicalName Off&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# DocumentRoot: The directory out of which you will serve your&lt;BR /&gt;# documents. By default, all requests are taken from this directory, but&lt;BR /&gt;# symbolic links and aliases may be used to point to other locations.&lt;BR /&gt;#&lt;BR /&gt;DocumentRoot "/var/www/html"&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# Each directory to which Apache has access can be configured with respect&lt;BR /&gt;# to which services and features are allowed and/or disabled in that&lt;BR /&gt;# directory (and its subdirectories). &lt;BR /&gt;#&lt;BR /&gt;# First, we configure the "default" to be a very restrictive set of &lt;BR /&gt;# features. &lt;BR /&gt;#&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;Options FollowSymLinks&lt;BR /&gt;AllowOverride None&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# Note that from this point forward you must specifically allow&lt;BR /&gt;# particular features to be enabled - so if something's not working as&lt;BR /&gt;# you might expect, make sure that you have specifically enabled it&lt;BR /&gt;# below.&lt;BR /&gt;#&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# This should be changed to whatever you set DocumentRoot to.&lt;BR /&gt;#&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# Possible values for the Options directive are "None", "All",&lt;BR /&gt;# or any combination of:&lt;BR /&gt;# Indexes Includes FollowSymLinks SymLinksifOwnerMatch ExecCGI MultiViews&lt;BR /&gt;#&lt;BR /&gt;# Note that "MultiViews" must be named *explicitly* --- "Options All"&lt;BR /&gt;# doesn't give it to you.&lt;BR /&gt;#&lt;BR /&gt;# The Options directive is both complicated and important. Please see&lt;BR /&gt;# &lt;A href="http://httpd.apache.org/docs/2.2/mod/core.html#options" rel="nofollow noopener noreferrer" style="color: #56a3d9; background: transparent; border: 0px; font-weight: bold; font-size: 14px;"&gt;http://httpd.apache.org/docs/2.2/mod/core.html#options&lt;/A&gt;&lt;BR /&gt;# for more information.&lt;BR /&gt;#&lt;BR /&gt;Options Indexes FollowSymLinks&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# AllowOverride controls what directives may be placed in .htaccess files.&lt;BR /&gt;# It can be "All", "None", or any combination of the keywords:&lt;BR /&gt;# Options FileInfo AuthConfig Limit&lt;BR /&gt;#&lt;BR /&gt;AllowOverride None&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# Controls who can get stuff from this server.&lt;BR /&gt;#&lt;BR /&gt;Order allow,deny&lt;BR /&gt;Allow from all&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# UserDir: The name of the directory that is appended onto a user's home&lt;BR /&gt;# directory if a ~user request is received.&lt;BR /&gt;#&lt;BR /&gt;# The path to the end user account 'public_html' directory must be&lt;BR /&gt;# accessible to the webserver userid. This usually means that ~userid&lt;BR /&gt;# must have permissions of 711, ~userid/public_html must have permissions&lt;BR /&gt;# of 755, and documents contained therein must be world-readable.&lt;BR /&gt;# Otherwise, the client will only receive a "403 Forbidden" message.&lt;BR /&gt;#&lt;BR /&gt;# See also: &lt;A href="http://httpd.apache.org/docs/misc/FAQ.html#forbidden" rel="nofollow noopener noreferrer" style="color: #56a3d9; background: transparent; border: 0px; font-weight: bold; font-size: 14px;"&gt;http://httpd.apache.org/docs/misc/FAQ.html#forbidden&lt;/A&gt;&lt;BR /&gt;#&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# UserDir is disabled by default since it can confirm the presence&lt;BR /&gt;# of a username on the system (depending on home directory&lt;BR /&gt;# permissions).&lt;BR /&gt;#&lt;BR /&gt;UserDir disabled&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# To enable requests to /~user/ to serve the user's public_html&lt;BR /&gt;# directory, remove the "UserDir disabled" line above, and uncomment&lt;BR /&gt;# the following line instead:&lt;BR /&gt;# &lt;BR /&gt;#UserDir public_html&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# Control access to UserDir directories. The following is an example&lt;BR /&gt;# for a site where these directories are restricted to read-only.&lt;BR /&gt;#&lt;BR /&gt;#&lt;BR /&gt;# AllowOverride FileInfo AuthConfig Limit&lt;BR /&gt;# Options MultiViews Indexes SymLinksIfOwnerMatch IncludesNoExec&lt;BR /&gt;# &lt;BR /&gt;# Order allow,deny&lt;BR /&gt;# Allow from all&lt;BR /&gt;# &lt;BR /&gt;# &lt;BR /&gt;# Order deny,allow&lt;BR /&gt;# Deny from all&lt;BR /&gt;# &lt;BR /&gt;#&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# DirectoryIndex: sets the file that Apache will serve if a directory&lt;BR /&gt;# is requested.&lt;BR /&gt;#&lt;BR /&gt;# The index.html.var file (a type-map) is used to deliver content-&lt;BR /&gt;# negotiated documents. The MultiViews Option can be used for the &lt;BR /&gt;# same purpose, but it is much slower.&lt;BR /&gt;#&lt;BR /&gt;DirectoryIndex index.html index.html.var&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# AccessFileName: The name of the file to look for in each directory&lt;BR /&gt;# for additional configuration directives. See also the AllowOverride&lt;BR /&gt;# directive.&lt;BR /&gt;#&lt;BR /&gt;AccessFileName .htaccess&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# The following lines prevent .htaccess and .htpasswd files from being &lt;BR /&gt;# viewed by Web clients. &lt;BR /&gt;#&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;Order allow,deny&lt;BR /&gt;Deny from all&lt;BR /&gt;Satisfy All&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# TypesConfig describes where the mime.types file (or equivalent) is&lt;BR /&gt;# to be found.&lt;BR /&gt;#&lt;BR /&gt;TypesConfig /etc/mime.types&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# DefaultType is the default MIME type the server will use for a document&lt;BR /&gt;# if it cannot otherwise determine one, such as from filename extensions.&lt;BR /&gt;# If your server contains mostly text or HTML documents, "text/plain" is&lt;BR /&gt;# a good value. If most of your content is binary, such as applications&lt;BR /&gt;# or images, you may want to use "application/octet-stream" instead to&lt;BR /&gt;# keep browsers from trying to display binary files as though they are&lt;BR /&gt;# text.&lt;BR /&gt;#&lt;BR /&gt;DefaultType text/plain&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# The mod_mime_magic module allows the server to use various hints from the&lt;BR /&gt;# contents of the file itself to determine its type. The MIMEMagicFile&lt;BR /&gt;# directive tells the module where the hint definitions are located.&lt;BR /&gt;#&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;# MIMEMagicFile /usr/share/magic.mime&lt;BR /&gt;MIMEMagicFile conf/magic&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# HostnameLookups: Log the names of clients or just their IP addresses&lt;BR /&gt;# e.g., &lt;A href="http://www.apache.org/" rel="nofollow noopener noreferrer" style="color: #56a3d9; background: transparent; border: 0px; font-weight: bold; font-size: 14px;"&gt;www.apache.org&lt;/A&gt; (on) or 204.62.129.132 (off).&lt;BR /&gt;# The default is off because it'd be overall better for the net if people&lt;BR /&gt;# had to knowingly turn this feature on, since enabling it means that&lt;BR /&gt;# each client request will result in AT LEAST one lookup request to the&lt;BR /&gt;# nameserver.&lt;BR /&gt;#&lt;BR /&gt;HostnameLookups Off&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# EnableMMAP: Control whether memory-mapping is used to deliver&lt;BR /&gt;# files (assuming that the underlying OS supports it).&lt;BR /&gt;# The default is on; turn this off if you serve from NFS-mounted &lt;BR /&gt;# filesystems. On some systems, turning it off (regardless of&lt;BR /&gt;# filesystem) can improve performance; for details, please see&lt;BR /&gt;# &lt;A href="http://httpd.apache.org/docs/2.2/mod/core.html#enablemmap" rel="nofollow noopener noreferrer" style="color: #56a3d9; background: transparent; border: 0px; font-weight: bold; font-size: 14px;"&gt;http://httpd.apache.org/docs/2.2/mod/core.html#enablemmap&lt;/A&gt;&lt;BR /&gt;#&lt;BR /&gt;#EnableMMAP off&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# EnableSendfile: Control whether the sendfile kernel support is &lt;BR /&gt;# used to deliver files (assuming that the OS supports it). &lt;BR /&gt;# The default is on; turn this off if you serve from NFS-mounted &lt;BR /&gt;# filesystems. Please see&lt;BR /&gt;# &lt;A href="http://httpd.apache.org/docs/2.2/mod/core.html#enablesendfile" rel="nofollow noopener noreferrer" style="color: #56a3d9; background: transparent; border: 0px; font-weight: bold; font-size: 14px;"&gt;http://httpd.apache.org/docs/2.2/mod/core.html#enablesendfile&lt;/A&gt;&lt;BR /&gt;#&lt;BR /&gt;#EnableSendfile off&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# ErrorLog: The location of the error log file.&lt;BR /&gt;# If you do not specify an ErrorLog directive within a &lt;BR /&gt;# container, error messages relating to that virtual host will be&lt;BR /&gt;# logged here. If you *do* define an error logfile for a &lt;BR /&gt;# container, that host's errors will be logged there and not here.&lt;BR /&gt;#&lt;BR /&gt;ErrorLog logs/error_log&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# LogLevel: Control the number of messages logged to the error_log.&lt;BR /&gt;# Possible values include: debug, info, notice, warn, error, crit,&lt;BR /&gt;# alert, emerg.&lt;BR /&gt;#&lt;BR /&gt;LogLevel warn&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# The following directives define some format nicknames for use with&lt;BR /&gt;# a CustomLog directive (see below).&lt;BR /&gt;#&lt;BR /&gt;LogFormat "%h %l %u %t \"%r\" %&amp;gt;s %b \"%{Referer}i\" \"%{User-Agent}i\"" combined&lt;BR /&gt;LogFormat "%h %l %u %t \"%r\" %&amp;gt;s %b" common&lt;BR /&gt;LogFormat "%{Referer}i -&amp;gt; %U" referer&lt;BR /&gt;LogFormat "%{User-agent}i" agent&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;# "combinedio" includes actual counts of actual bytes received (%I) and sent (%O); this&lt;BR /&gt;# requires the mod_logio module to be loaded.&lt;BR /&gt;#LogFormat "%h %l %u %t \"%r\" %&amp;gt;s %b \"%{Referer}i\" \"%{User-Agent}i\" %I %O" combinedio&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# The location and format of the access logfile (Common Logfile Format).&lt;BR /&gt;# If you do not define any access logfiles within a &lt;BR /&gt;# container, they will be logged here. Contrariwise, if you *do*&lt;BR /&gt;# define per- access logfiles, transactions will be&lt;BR /&gt;# logged therein and *not* in this file.&lt;BR /&gt;#&lt;BR /&gt;#CustomLog logs/access_log common&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# If you would like to have separate agent and referer logfiles, uncomment&lt;BR /&gt;# the following directives.&lt;BR /&gt;#&lt;BR /&gt;#CustomLog logs/referer_log referer&lt;BR /&gt;#CustomLog logs/agent_log agent&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# For a single logfile with access, agent, and referer information&lt;BR /&gt;# (Combined Logfile Format), use the following directive:&lt;BR /&gt;#&lt;BR /&gt;CustomLog logs/access_log combined&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# Optionally add a line containing the server version and virtual host&lt;BR /&gt;# name to server-generated pages (internal error documents, FTP directory&lt;BR /&gt;# listings, mod_status and mod_info output etc., but not CGI generated&lt;BR /&gt;# documents or custom error documents).&lt;BR /&gt;# Set to "EMail" to also include a mailto: link to the ServerAdmin.&lt;BR /&gt;# Set to one of: On | Off | EMail&lt;BR /&gt;#&lt;BR /&gt;ServerSignature On&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# Aliases: Add here as many aliases as you need (with no limit). The format is &lt;BR /&gt;# Alias fakename realname&lt;BR /&gt;#&lt;BR /&gt;# Note that if you include a trailing / on fakename then the server will&lt;BR /&gt;# require it to be present in the URL. So "/icons" isn't aliased in this&lt;BR /&gt;# example, only "/icons/". If the fakename is slash-terminated, then the &lt;BR /&gt;# realname must also be slash terminated, and if the fakename omits the &lt;BR /&gt;# trailing slash, the realname must also omit it.&lt;BR /&gt;#&lt;BR /&gt;# We include the /icons/ alias for FancyIndexed directory listings. If you&lt;BR /&gt;# do not use FancyIndexing, you may comment this out.&lt;BR /&gt;#&lt;BR /&gt;Alias /icons/ "/var/www/icons/"&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;Options Indexes MultiViews FollowSymLinks&lt;BR /&gt;AllowOverride None&lt;BR /&gt;Order allow,deny&lt;BR /&gt;Allow from all&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# WebDAV module configuration section.&lt;BR /&gt;#&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;# Location of the WebDAV lock database.&lt;BR /&gt;DAVLockDB /var/lib/dav/lockdb&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# ScriptAlias: This controls which directories contain server scripts.&lt;BR /&gt;# ScriptAliases are essentially the same as Aliases, except that&lt;BR /&gt;# documents in the realname directory are treated as applications and&lt;BR /&gt;# run by the server when requested rather than as documents sent to the client.&lt;BR /&gt;# The same rules about trailing "/" apply to ScriptAlias directives as to&lt;BR /&gt;# Alias.&lt;BR /&gt;#&lt;BR /&gt;ScriptAlias /cgi-bin/ "/var/www/cgi-bin/"&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# "/var/www/cgi-bin" should be changed to whatever your ScriptAliased&lt;BR /&gt;# CGI directory exists, if you have that configured.&lt;BR /&gt;#&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;AllowOverride None&lt;BR /&gt;Options None&lt;BR /&gt;Order allow,deny&lt;BR /&gt;Allow from all&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# Redirect allows you to tell clients about documents which used to exist in&lt;BR /&gt;# your server's namespace, but do not anymore. This allows you to tell the&lt;BR /&gt;# clients where to look for the relocated document.&lt;BR /&gt;# Example:&lt;BR /&gt;# Redirect permanent /foo &lt;A href="http://www.example.com/bar" rel="nofollow noopener noreferrer" style="color: #56a3d9; background: transparent; border: 0px; font-weight: bold; font-size: 14px;"&gt;http://www.example.com/bar&lt;/A&gt;&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# Directives controlling the display of server-generated directory listings.&lt;BR /&gt;#&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# IndexOptions: Controls the appearance of server-generated directory&lt;BR /&gt;# listings.&lt;BR /&gt;#&lt;BR /&gt;IndexOptions FancyIndexing VersionSort NameWidth=* HTMLTable Charset=UTF-8&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# AddIcon* directives tell the server which icon to show for different&lt;BR /&gt;# files or filename extensions. These are only displayed for&lt;BR /&gt;# FancyIndexed directories.&lt;BR /&gt;#&lt;BR /&gt;AddIconByEncoding (CMP,/icons/compressed.gif) x-compress x-gzip&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;AddIconByType (TXT,/icons/text.gif) text/*&lt;BR /&gt;AddIconByType (IMG,/icons/image2.gif) image/*&lt;BR /&gt;AddIconByType (SND,/icons/sound2.gif) audio/*&lt;BR /&gt;AddIconByType (VID,/icons/movie.gif) video/*&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;AddIcon /icons/binary.gif .bin .exe&lt;BR /&gt;AddIcon /icons/binhex.gif .hqx&lt;BR /&gt;AddIcon /icons/tar.gif .tar&lt;BR /&gt;AddIcon /icons/world2.gif .wrl .wrl.gz .vrml .vrm .iv&lt;BR /&gt;AddIcon /icons/compressed.gif .Z .z .tgz .gz .zip&lt;BR /&gt;AddIcon /icons/a.gif .ps .ai .eps&lt;BR /&gt;AddIcon /icons/layout.gif .html .shtml .htm .pdf&lt;BR /&gt;AddIcon /icons/text.gif .txt&lt;BR /&gt;AddIcon /icons/c.gif .c&lt;BR /&gt;AddIcon /icons/p.gif .pl .py&lt;BR /&gt;AddIcon /icons/f.gif .for&lt;BR /&gt;AddIcon /icons/dvi.gif .dvi&lt;BR /&gt;AddIcon /icons/uuencoded.gif .uu&lt;BR /&gt;AddIcon /icons/script.gif .conf .sh .shar .csh .ksh .tcl&lt;BR /&gt;AddIcon /icons/tex.gif .tex&lt;BR /&gt;AddIcon /icons/bomb.gif core&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;AddIcon /icons/back.gif ..&lt;BR /&gt;AddIcon /icons/hand.right.gif README&lt;BR /&gt;AddIcon /icons/folder.gif ^^DIRECTORY^^&lt;BR /&gt;AddIcon /icons/blank.gif ^^BLANKICON^^&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# DefaultIcon is which icon to show for files which do not have an icon&lt;BR /&gt;# explicitly set.&lt;BR /&gt;#&lt;BR /&gt;DefaultIcon /icons/unknown.gif&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# AddDescription allows you to place a short description after a file in&lt;BR /&gt;# server-generated indexes. These are only displayed for FancyIndexed&lt;BR /&gt;# directories.&lt;BR /&gt;# Format: AddDescription "description" filename&lt;BR /&gt;#&lt;BR /&gt;#AddDescription "GZIP compressed document" .gz&lt;BR /&gt;#AddDescription "tar archive" .tar&lt;BR /&gt;#AddDescription "GZIP compressed tar archive" .tgz&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# ReadmeName is the name of the README file the server will look for by&lt;BR /&gt;# default, and append to directory listings.&lt;BR /&gt;#&lt;BR /&gt;# HeaderName is the name of a file which should be prepended to&lt;BR /&gt;# directory indexes. &lt;BR /&gt;ReadmeName README.html&lt;BR /&gt;HeaderName HEADER.html&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# IndexIgnore is a set of filenames which directory indexing should ignore&lt;BR /&gt;# and not include in the listing. Shell-style wildcarding is permitted.&lt;BR /&gt;#&lt;BR /&gt;IndexIgnore .??* *~ *# HEADER* README* RCS CVS *,v *,t&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# DefaultLanguage and AddLanguage allows you to specify the language of &lt;BR /&gt;# a document. You can then use content negotiation to give a browser a &lt;BR /&gt;# file in a language the user can understand.&lt;BR /&gt;#&lt;BR /&gt;# Specify a default language. This means that all data&lt;BR /&gt;# going out without a specific language tag (see below) will &lt;BR /&gt;# be marked with this one. You probably do NOT want to set&lt;BR /&gt;# this unless you are sure it is correct for all cases.&lt;BR /&gt;#&lt;BR /&gt;# * It is generally better to not mark a page as &lt;BR /&gt;# * being a certain language than marking it with the wrong&lt;BR /&gt;# * language!&lt;BR /&gt;#&lt;BR /&gt;# DefaultLanguage nl&lt;BR /&gt;#&lt;BR /&gt;# Note 1: The suffix does not have to be the same as the language&lt;BR /&gt;# keyword --- those with documents in Polish (whose net-standard&lt;BR /&gt;# language code is pl) may wish to use "AddLanguage pl .po" to&lt;BR /&gt;# avoid the ambiguity with the common suffix for perl scripts.&lt;BR /&gt;#&lt;BR /&gt;# Note 2: The example entries below illustrate that in some cases &lt;BR /&gt;# the two character 'Language' abbreviation is not identical to &lt;BR /&gt;# the two character 'Country' code for its country,&lt;BR /&gt;# E.g. 'Danmark/dk' versus 'Danish/da'.&lt;BR /&gt;#&lt;BR /&gt;# Note 3: In the case of 'ltz' we violate the RFC by using a three char&lt;BR /&gt;# specifier. There is 'work in progress' to fix this and get&lt;BR /&gt;# the reference data for rfc1766 cleaned up.&lt;BR /&gt;#&lt;BR /&gt;# Catalan (ca) - Croatian (hr) - Czech (cs) - Danish (da) - Dutch (nl)&lt;BR /&gt;# English (en) - Esperanto (eo) - Estonian (et) - French (fr) - German (de)&lt;BR /&gt;# Greek-Modern (el) - Hebrew (he) - Italian (it) - Japanese (ja)&lt;BR /&gt;# Korean (ko) - Luxembourgeois* (ltz) - Norwegian Nynorsk (nn)&lt;BR /&gt;# Norwegian (no) - Polish (pl) - Portugese (pt)&lt;BR /&gt;# Brazilian Portuguese (pt-BR) - Russian (ru) - Swedish (sv)&lt;BR /&gt;# Simplified Chinese (zh-CN) - Spanish (es) - Traditional Chinese (zh-TW)&lt;BR /&gt;#&lt;BR /&gt;AddLanguage ca .ca&lt;BR /&gt;AddLanguage cs .cz .cs&lt;BR /&gt;AddLanguage da .dk&lt;BR /&gt;AddLanguage de .de&lt;BR /&gt;AddLanguage el .el&lt;BR /&gt;AddLanguage en .en&lt;BR /&gt;AddLanguage eo .eo&lt;BR /&gt;AddLanguage es .es&lt;BR /&gt;AddLanguage et .et&lt;BR /&gt;AddLanguage fr .fr&lt;BR /&gt;AddLanguage he .he&lt;BR /&gt;AddLanguage hr .hr&lt;BR /&gt;AddLanguage it .it&lt;BR /&gt;AddLanguage ja .ja&lt;BR /&gt;AddLanguage ko .ko&lt;BR /&gt;AddLanguage ltz .ltz&lt;BR /&gt;AddLanguage nl .nl&lt;BR /&gt;AddLanguage nn .nn&lt;BR /&gt;AddLanguage no .no&lt;BR /&gt;AddLanguage pl .po&lt;BR /&gt;AddLanguage pt .pt&lt;BR /&gt;AddLanguage pt-BR .pt-br&lt;BR /&gt;AddLanguage ru .ru&lt;BR /&gt;AddLanguage sv .sv&lt;BR /&gt;AddLanguage zh-CN .zh-cn&lt;BR /&gt;AddLanguage zh-TW .zh-tw&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# LanguagePriority allows you to give precedence to some languages&lt;BR /&gt;# in case of a tie during content negotiation.&lt;BR /&gt;#&lt;BR /&gt;# Just list the languages in decreasing order of preference. We have&lt;BR /&gt;# more or less alphabetized them here. You probably want to change this.&lt;BR /&gt;#&lt;BR /&gt;LanguagePriority en ca cs da de el eo es et fr he hr it ja ko ltz nl nn no pl pt pt-BR ru sv zh-CN zh-TW&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# ForceLanguagePriority allows you to serve a result page rather than&lt;BR /&gt;# MULTIPLE CHOICES (Prefer) [in case of a tie] or NOT ACCEPTABLE (Fallback)&lt;BR /&gt;# [in case no accepted languages matched the available variants]&lt;BR /&gt;#&lt;BR /&gt;ForceLanguagePriority Prefer Fallback&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# Specify a default charset for all content served; this enables&lt;BR /&gt;# interpretation of all content as UTF-8 by default. To use the &lt;BR /&gt;# default browser choice (ISO-8859-1), or to allow the META tags&lt;BR /&gt;# in HTML content to override this choice, comment out this&lt;BR /&gt;# directive:&lt;BR /&gt;#&lt;BR /&gt;AddDefaultCharset UTF-8&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# AddType allows you to add to or override the MIME configuration&lt;BR /&gt;# file mime.types for specific file types.&lt;BR /&gt;#&lt;BR /&gt;#AddType application/x-tar .tgz&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# AddEncoding allows you to have certain browsers uncompress&lt;BR /&gt;# information on the fly. Note: Not all browsers support this.&lt;BR /&gt;# Despite the name similarity, the following Add* directives have nothing&lt;BR /&gt;# to do with the FancyIndexing customization directives above.&lt;BR /&gt;#&lt;BR /&gt;#AddEncoding x-compress .Z&lt;BR /&gt;#AddEncoding x-gzip .gz .tgz&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;# If the AddEncoding directives above are commented-out, then you&lt;BR /&gt;# probably should define those extensions to indicate media types:&lt;BR /&gt;#&lt;BR /&gt;AddType application/x-compress .Z&lt;BR /&gt;AddType application/x-gzip .gz .tgz&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# MIME-types for downloading Certificates and CRLs&lt;BR /&gt;#&lt;BR /&gt;AddType application/x-x509-ca-cert .crt&lt;BR /&gt;AddType application/x-pkcs7-crl .crl&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# AddHandler allows you to map certain file extensions to "handlers":&lt;BR /&gt;# actions unrelated to filetype. These can be either built into the server&lt;BR /&gt;# or added with the Action directive (see below)&lt;BR /&gt;#&lt;BR /&gt;# To use CGI scripts outside of ScriptAliased directories:&lt;BR /&gt;# (You will also need to add "ExecCGI" to the "Options" directive.)&lt;BR /&gt;#&lt;BR /&gt;#AddHandler cgi-script .cgi&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# For files that include their own HTTP headers:&lt;BR /&gt;#&lt;BR /&gt;#AddHandler send-as-is asis&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# For type maps (negotiated resources):&lt;BR /&gt;# (This is enabled by default to allow the Apache "It Worked" page&lt;BR /&gt;# to be distributed in multiple languages.)&lt;BR /&gt;#&lt;BR /&gt;AddHandler type-map var&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# Filters allow you to process content before it is sent to the client.&lt;BR /&gt;#&lt;BR /&gt;# To parse .shtml files for server-side includes (SSI):&lt;BR /&gt;# (You will also need to add "Includes" to the "Options" directive.)&lt;BR /&gt;#&lt;BR /&gt;AddType text/html .shtml&lt;BR /&gt;AddOutputFilter INCLUDES .shtml&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# Action lets you define media types that will execute a script whenever&lt;BR /&gt;# a matching file is called. This eliminates the need for repeated URL&lt;BR /&gt;# pathnames for oft-used CGI file processors.&lt;BR /&gt;# Format: Action media/type /cgi-script/location&lt;BR /&gt;# Format: Action handler-name /cgi-script/location&lt;BR /&gt;#&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# Customizable error responses come in three flavors:&lt;BR /&gt;# 1) plain text 2) local redirects 3) external redirects&lt;BR /&gt;#&lt;BR /&gt;# Some examples:&lt;BR /&gt;#ErrorDocument 500 "The server made a boo boo."&lt;BR /&gt;#ErrorDocument 404 /missing.html&lt;BR /&gt;#ErrorDocument 404 "/cgi-bin/missing_handler.pl"&lt;BR /&gt;#ErrorDocument 402 &lt;A href="http://www.example.com/subscription_info.html" rel="nofollow noopener noreferrer" style="color: #56a3d9; background: transparent; border: 0px; font-weight: bold; font-size: 14px;"&gt;http://www.example.com/subscription_info.html&lt;/A&gt;&lt;BR /&gt;#&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# Putting this all together, we can internationalize error responses.&lt;BR /&gt;#&lt;BR /&gt;# We use Alias to redirect any /error/HTTP_.html.var response to&lt;BR /&gt;# our collection of by-error message multi-language collections. We use &lt;BR /&gt;# includes to substitute the appropriate text.&lt;BR /&gt;#&lt;BR /&gt;# You can modify the messages' appearance without changing any of the&lt;BR /&gt;# default HTTP_.html.var files by adding the line:&lt;BR /&gt;#&lt;BR /&gt;# Alias /error/include/ "/your/include/path/"&lt;BR /&gt;#&lt;BR /&gt;# which allows you to create your own set of files by starting with the&lt;BR /&gt;# /var/www/error/include/ files and&lt;BR /&gt;# copying them to /your/include/path/, even on a per-VirtualHost basis.&lt;BR /&gt;#&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;Alias /error/ "/var/www/error/"&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;&lt;BR /&gt;AllowOverride None&lt;BR /&gt;Options IncludesNoExec&lt;BR /&gt;AddOutputFilter Includes html&lt;BR /&gt;AddHandler type-map var&lt;BR /&gt;Order allow,deny&lt;BR /&gt;Allow from all&lt;BR /&gt;LanguagePriority en es de fr&lt;BR /&gt;ForceLanguagePriority Prefer Fallback&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;# ErrorDocument 400 /error/HTTP_BAD_REQUEST.html.var&lt;BR /&gt;# ErrorDocument 401 /error/HTTP_UNAUTHORIZED.html.var&lt;BR /&gt;# ErrorDocument 403 /error/HTTP_FORBIDDEN.html.var&lt;BR /&gt;# ErrorDocument 404 /error/HTTP_NOT_FOUND.html.var&lt;BR /&gt;# ErrorDocument 405 /error/HTTP_METHOD_NOT_ALLOWED.html.var&lt;BR /&gt;# ErrorDocument 408 /error/HTTP_REQUEST_TIME_OUT.html.var&lt;BR /&gt;# ErrorDocument 410 /error/HTTP_GONE.html.var&lt;BR /&gt;# ErrorDocument 411 /error/HTTP_LENGTH_REQUIRED.html.var&lt;BR /&gt;# ErrorDocument 412 /error/HTTP_PRECONDITION_FAILED.html.var&lt;BR /&gt;# ErrorDocument 413 /error/HTTP_REQUEST_ENTITY_TOO_LARGE.html.var&lt;BR /&gt;# ErrorDocument 414 /error/HTTP_REQUEST_URI_TOO_LARGE.html.var&lt;BR /&gt;# ErrorDocument 415 /error/HTTP_UNSUPPORTED_MEDIA_TYPE.html.var&lt;BR /&gt;# ErrorDocument 500 /error/HTTP_INTERNAL_SERVER_ERROR.html.var&lt;BR /&gt;# ErrorDocument 501 /error/HTTP_NOT_IMPLEMENTED.html.var&lt;BR /&gt;# ErrorDocument 502 /error/HTTP_BAD_GATEWAY.html.var&lt;BR /&gt;# ErrorDocument 503 /error/HTTP_SERVICE_UNAVAILABLE.html.var&lt;BR /&gt;# ErrorDocument 506 /error/HTTP_VARIANT_ALSO_VARIES.html.var&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# The following directives modify normal HTTP response behavior to&lt;BR /&gt;# handle known problems with browser implementations.&lt;BR /&gt;#&lt;BR /&gt;BrowserMatch "Mozilla/2" nokeepalive&lt;BR /&gt;BrowserMatch "MSIE 4\.0b2;" nokeepalive downgrade-1.0 force-response-1.0&lt;BR /&gt;BrowserMatch "RealPlayer 4\.0" force-response-1.0&lt;BR /&gt;BrowserMatch "Java/1\.0" force-response-1.0&lt;BR /&gt;BrowserMatch "JDK/1\.0" force-response-1.0&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# The following directive disables redirects on non-GET requests for&lt;BR /&gt;# a directory that does not include the trailing slash. This fixes a &lt;BR /&gt;# problem with Microsoft WebFolders which does not appropriately handle &lt;BR /&gt;# redirects for folders with DAV methods.&lt;BR /&gt;# Same deal with Apple's DAV filesystem and Gnome VFS support for DAV.&lt;BR /&gt;#&lt;BR /&gt;BrowserMatch "Microsoft Data Access Internet Publishing Provider" redirect-carefully&lt;BR /&gt;BrowserMatch "MS FrontPage" redirect-carefully&lt;BR /&gt;BrowserMatch "^WebDrive" redirect-carefully&lt;BR /&gt;BrowserMatch "^WebDAVFS/1.[0123]" redirect-carefully&lt;BR /&gt;BrowserMatch "^gnome-vfs/1.0" redirect-carefully&lt;BR /&gt;BrowserMatch "^XML Spy" redirect-carefully&lt;BR /&gt;BrowserMatch "^Dreamweaver-WebDAV-SCM1" redirect-carefully&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# Allow server status reports generated by mod_status,&lt;BR /&gt;&lt;SPAN&gt;# with the URL of &lt;/SPAN&gt;&lt;A class="jive-link-external-small" href="http://servername/server-status" rel="nofollow noopener noreferrer"&gt;http://servername/server-status&lt;/A&gt;&lt;BR /&gt;# Change the ".example.com" to match your domain to enable.&lt;BR /&gt;#&lt;BR /&gt;#&lt;BR /&gt;# SetHandler server-status&lt;BR /&gt;# Order deny,allow&lt;BR /&gt;# Deny from all&lt;BR /&gt;# Allow from .example.com&lt;BR /&gt;#&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# Allow remote server configuration reports, with the URL of&lt;BR /&gt;&lt;SPAN&gt;# &lt;/SPAN&gt;&lt;A class="jive-link-external-small" href="http://servername/server-info" rel="nofollow noopener noreferrer"&gt;http://servername/server-info&lt;/A&gt;&lt;SPAN&gt; (requires that mod_info.c be loaded).&lt;/SPAN&gt;&lt;BR /&gt;# Change the ".example.com" to match your domain to enable.&lt;BR /&gt;#&lt;BR /&gt;#&lt;BR /&gt;# SetHandler server-info&lt;BR /&gt;# Order deny,allow&lt;BR /&gt;# Deny from all&lt;BR /&gt;# Allow from .example.com&lt;BR /&gt;#&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# Proxy Server directives. Uncomment the following lines to&lt;BR /&gt;# enable the proxy server:&lt;BR /&gt;#&lt;BR /&gt;#&lt;BR /&gt;#ProxyRequests On&lt;BR /&gt;#&lt;BR /&gt;#&lt;BR /&gt;# Order deny,allow&lt;BR /&gt;# Deny from all&lt;BR /&gt;# Allow from .example.com&lt;BR /&gt;#&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# Enable/disable the handling of HTTP/1.1 "Via:" headers.&lt;BR /&gt;# ("Full" adds the server version; "Block" removes all outgoing Via: headers)&lt;BR /&gt;# Set to one of: Off | On | Full | Block&lt;BR /&gt;#&lt;BR /&gt;#ProxyVia On&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# To enable a cache of proxied content, uncomment the following lines.&lt;BR /&gt;# See &lt;A href="http://httpd.apache.org/docs/2.2/mod/mod_cache.html" rel="nofollow noopener noreferrer" style="color: #56a3d9; background: transparent; border: 0px; font-weight: bold; font-size: 14px;"&gt;http://httpd.apache.org/docs/2.2/mod/mod_cache.html&lt;/A&gt; for more details.&lt;BR /&gt;#&lt;BR /&gt;#&lt;BR /&gt;# CacheEnable disk /&lt;BR /&gt;# CacheRoot "/var/cache/mod_proxy"&lt;BR /&gt;#&lt;BR /&gt;#&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# End of proxy directives.&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;### Section 3: Virtual Hosts&lt;BR /&gt;#&lt;BR /&gt;# VirtualHost: If you want to maintain multiple domains/hostnames on your&lt;BR /&gt;# machine you can setup VirtualHost containers for them. Most configurations&lt;BR /&gt;# use only name-based virtual hosts so the server doesn't need to worry about&lt;BR /&gt;# IP addresses. This is indicated by the asterisks in the directives below.&lt;BR /&gt;#&lt;BR /&gt;# Please see the documentation at &lt;BR /&gt;# &lt;BR /&gt;# for further details before you try to setup virtual hosts.&lt;BR /&gt;#&lt;BR /&gt;# You may use the command line option '-S' to verify your virtual host&lt;BR /&gt;# configuration.&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# Use name-based virtual hosting.&lt;BR /&gt;#&lt;BR /&gt;#NameVirtualHost *:80&lt;BR /&gt;#&lt;BR /&gt;# NOTE: NameVirtualHost cannot be used without a port specifier &lt;BR /&gt;# (e.g. :80) if mod_ssl is being used, due to the nature of the&lt;BR /&gt;# SSL protocol.&lt;BR /&gt;#&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# VirtualHost example:&lt;BR /&gt;# Almost any Apache directive may go into a VirtualHost container.&lt;BR /&gt;# The first VirtualHost section is used for requests without a known&lt;BR /&gt;# server name.&lt;BR /&gt;#&lt;BR /&gt;#&lt;BR /&gt;# ServerAdmin &lt;A href="mailto:webmaster@dummy-host.example.com" style="color: #56a3d9; background: transparent; border: 0px; font-weight: bold; font-size: 14px;" rel="nofollow noopener noreferrer"&gt;webmaster@dummy-host.example.com&lt;/A&gt;&lt;BR /&gt;# DocumentRoot /www/docs/dummy-host.example.com&lt;BR /&gt;# ServerName dummy-host.example.com&lt;BR /&gt;# ErrorLog logs/dummy-host.example.com-error_log&lt;BR /&gt;# CustomLog logs/dummy-host.example.com-access_log common&lt;BR /&gt;#&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;ssl.conf&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# This is the Apache server configuration file providing SSL support.&lt;BR /&gt;# It contains the configuration directives to instruct the server how to&lt;BR /&gt;# serve pages over an https connection. For detailing information about these &lt;BR /&gt;# directives see &lt;BR /&gt;# &lt;BR /&gt;# Do NOT simply read the instructions in here without understanding&lt;BR /&gt;# what they do. They're here only as hints or reminders. If you are unsure&lt;BR /&gt;# consult the online docs. You have been warned. &lt;BR /&gt;#&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;LoadModule ssl_module modules/mod_ssl.so&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# When we also provide SSL we have to listen to the &lt;BR /&gt;# the HTTPS port in addition.&lt;BR /&gt;#&lt;BR /&gt;Listen 443&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;##&lt;BR /&gt;## SSL Global Context&lt;BR /&gt;##&lt;BR /&gt;## All SSL configuration in this context applies both to&lt;BR /&gt;## the main server and all SSL-enabled virtual hosts.&lt;BR /&gt;##&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;# Pass Phrase Dialog:&lt;BR /&gt;# Configure the pass phrase gathering process.&lt;BR /&gt;# The filtering dialog program (`builtin' is a internal&lt;BR /&gt;# terminal dialog) has to provide the pass phrase on stdout.&lt;BR /&gt;SSLPassPhraseDialog builtin&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;# Inter-Process Session Cache:&lt;BR /&gt;# Configure the SSL Session Cache: First the mechanism &lt;BR /&gt;# to use and second the expiring timeout (in seconds).&lt;BR /&gt;SSLSessionCache shmcb:/var/cache/mod_ssl/scache(512000)&lt;BR /&gt;SSLSessionCacheTimeout 300&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;# Semaphore:&lt;BR /&gt;# Configure the path to the mutual exclusion semaphore the&lt;BR /&gt;# SSL engine uses internally for inter-process synchronization. &lt;BR /&gt;SSLMutex default&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;# Pseudo Random Number Generator (PRNG):&lt;BR /&gt;# Configure one or more sources to seed the PRNG of the &lt;BR /&gt;# SSL library. The seed data should be of good random quality.&lt;BR /&gt;# WARNING! On some platforms /dev/random blocks if not enough entropy&lt;BR /&gt;# is available. This means you then cannot use the /dev/random device&lt;BR /&gt;# because it would lead to very long connection times (as long as&lt;BR /&gt;# it requires to make more entropy available). But usually those&lt;BR /&gt;# platforms additionally provide a /dev/urandom device which doesn't&lt;BR /&gt;# block. So, if available, use this one instead. Read the mod_ssl User&lt;BR /&gt;# Manual for more details.&lt;BR /&gt;SSLRandomSeed startup file:/dev/urandom 256&lt;BR /&gt;SSLRandomSeed connect builtin&lt;BR /&gt;#SSLRandomSeed startup file:/dev/random 512&lt;BR /&gt;#SSLRandomSeed connect file:/dev/random 512&lt;BR /&gt;#SSLRandomSeed connect file:/dev/urandom 512&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;BR /&gt;# Use "SSLCryptoDevice" to enable any supported hardware&lt;BR /&gt;# accelerators. Use "openssl engine -v" to list supported&lt;BR /&gt;# engine names. NOTE: If you enable an accelerator and the&lt;BR /&gt;# server does not start, consult the error logs and ensure&lt;BR /&gt;# your accelerator is functioning properly. &lt;BR /&gt;#&lt;BR /&gt;SSLCryptoDevice builtin&lt;BR /&gt;#SSLCryptoDevice ubsec&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;##&lt;BR /&gt;## SSL Virtual Host Context&lt;BR /&gt;##&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;# General setup for the virtual host, inherited from global configuration&lt;BR /&gt;#DocumentRoot "/var/www/html"&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;ServerName subdomain.domain.com&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;ServerAlias alfresco.domainname.com&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;# Use separate log files for the SSL virtual host; note that LogLevel&lt;BR /&gt;# is not inherited from httpd.conf.&lt;BR /&gt;ErrorLog logs/ssl_error_log&lt;BR /&gt;TransferLog logs/ssl_access_log&lt;BR /&gt;LogLevel warn&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;# SSL Engine Switch:&lt;BR /&gt;# Enable/Disable SSL for this virtual host.&lt;BR /&gt;SSLEngine on&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;# SSL Protocol support:&lt;BR /&gt;# List the enable protocol levels with which clients will be able to&lt;BR /&gt;# connect. Disable SSLv2 access by default:&lt;BR /&gt;SSLProtocol All -SSLv2 -SSLv3&lt;BR /&gt;SSLHonorCipherOrder On&lt;BR /&gt;JkMount /* tomcat&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;# SSL Cipher Suite:&lt;BR /&gt;# List the ciphers that the client is permitted to negotiate.&lt;BR /&gt;# See the mod_ssl documentation for a complete list.&lt;BR /&gt;SSLCipherSuite ECDHE-RSA-AES256-GCM-SHA384:ECDHE-RSA-AES128-GCM-SHA256&lt;img id="smileyvery-happy" class="emoticon emoticon-smileyvery-happy" src="https://connect.hyland.com/i/smilies/16x16_smiley-very-happy.png" alt="Smiley Very Happy" title="Smiley Very Happy" /&gt;HE-RSA-AES256-GCM-SHA384&lt;img id="smileyvery-happy" class="emoticon emoticon-smileyvery-happy" src="https://connect.hyland.com/i/smilies/16x16_smiley-very-happy.png" alt="Smiley Very Happy" title="Smiley Very Happy" /&gt;HE-RSA-AES128-GCM-SHA256:ECDHE-RSA-AES256-SHA384:ECDHE-RSA-AES128-SHA256:ECDHE-RSA-AES256-SHA:ECDHE-RSA-AES128-SHA&lt;img id="smileyvery-happy" class="emoticon emoticon-smileyvery-happy" src="https://connect.hyland.com/i/smilies/16x16_smiley-very-happy.png" alt="Smiley Very Happy" title="Smiley Very Happy" /&gt;HE-RSA-AES256-SHA256&lt;img id="smileyvery-happy" class="emoticon emoticon-smileyvery-happy" src="https://connect.hyland.com/i/smilies/16x16_smiley-very-happy.png" alt="Smiley Very Happy" title="Smiley Very Happy" /&gt;HE-RSA-AES128-SHA256&lt;img id="smileyvery-happy" class="emoticon emoticon-smileyvery-happy" src="https://connect.hyland.com/i/smilies/16x16_smiley-very-happy.png" alt="Smiley Very Happy" title="Smiley Very Happy" /&gt;HE-RSA-AES256-SHA&lt;img id="smileyvery-happy" class="emoticon emoticon-smileyvery-happy" src="https://connect.hyland.com/i/smilies/16x16_smiley-very-happy.png" alt="Smiley Very Happy" title="Smiley Very Happy" /&gt;HE-RSA-AES128-SHA:ECDHE-RSA-DES-CBC3-SHA:EDH-RSA-DES-CBC3-SHA:AES256-GCM-SHA384:AES128-GCM-SHA256:AES256-SHA256:AES128-SHA256:AES256-SHA:AES128-SHA&lt;img id="smileyvery-happy" class="emoticon emoticon-smileyvery-happy" src="https://connect.hyland.com/i/smilies/16x16_smiley-very-happy.png" alt="Smiley Very Happy" title="Smiley Very Happy" /&gt;ES-CBC3-SHA:HIGH:!aNULL:!eNULL:!EXPORT:!CAMELLIA:!DES:!MD5:!PSK:!RC4&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;# Server Certificate:&lt;BR /&gt;# Point SSLCertificateFile at a PEM encoded certificate. If&lt;BR /&gt;# the certificate is encrypted, then you will be prompted for a&lt;BR /&gt;# pass phrase. Note that a kill -HUP will prompt again. A new&lt;BR /&gt;# certificate can be generated using the genkey(1) command.&lt;BR /&gt;SSLCertificateFile /etc/pki/tls/certs/subdomain.domain.com.crt&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;# Server Private Key:&lt;BR /&gt;# If the key is not combined with the certificate, use this&lt;BR /&gt;# directive to point at the key file. Keep in mind that if&lt;BR /&gt;# you've both a RSA and a DSA private key you can configure&lt;BR /&gt;# both in parallel (to also allow the use of DSA ciphers, etc.)&lt;BR /&gt;SSLCertificateKeyFile /etc/pki/tls/private/subdomain.domain.com.key&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;# Server Certificate Chain:&lt;BR /&gt;# Point SSLCertificateChainFile at a file containing the&lt;BR /&gt;# concatenation of PEM encoded CA certificates which form the&lt;BR /&gt;# certificate chain for the server certificate. Alternatively&lt;BR /&gt;# the referenced file can be the same as SSLCertificateFile&lt;BR /&gt;# when the CA certificates are directly appended to the server&lt;BR /&gt;# certificate for convinience.&lt;BR /&gt;SSLCertificateChainFile /etc/pki/tls/certs/PositiveSSLCA2.crt&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;# Certificate Authority (CA):&lt;BR /&gt;# Set the CA certificate verification path where to find CA&lt;BR /&gt;# certificates for client authentication or alternatively one&lt;BR /&gt;# huge file containing all of them (file must be PEM encoded)&lt;BR /&gt;SSLCACertificateFile /etc/pki/tls/certs/ca-bundle.crt&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;# Client Authentication (Type):&lt;BR /&gt;# Client certificate verification type and depth. Types are&lt;BR /&gt;# none, optional, require and optional_no_ca. Depth is a&lt;BR /&gt;# number which specifies how deeply to verify the certificate&lt;BR /&gt;# issuer chain before deciding the certificate is not valid.&lt;BR /&gt;#SSLVerifyClient require&lt;BR /&gt;#SSLVerifyDepth 10&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#JkOptions indicate to send SSL KEY SIZE,&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;JkOptions +ForwardKeySize -ForwardDirectories&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;JkMount /share/* tomcat&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;JkMount /share tomcat&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;JkMount /alfresco tomcat&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;JkMount /alfresco/* tomcat&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;# JkLogFile /var/log/mod_jk.log&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;# JkLogLevel debug&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;# JkLogStampFormat "[%a %b %d %H:%M:%S %Y] "&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;# Access Control:&lt;BR /&gt;# With SSLRequire you can do per-directory access control based&lt;BR /&gt;# on arbitrary complex boolean expressions containing server&lt;BR /&gt;# variable checks and other lookup directives. The syntax is a&lt;BR /&gt;# mixture between C and Perl. See the mod_ssl documentation&lt;BR /&gt;# for more details.&lt;BR /&gt;#&lt;BR /&gt;#SSLRequire ( %{SSL_CIPHER} !~ m/^(EXP|NULL)/ \&lt;BR /&gt;# and %{SSL_CLIENT_S_DN_O} eq "Snake Oil, Ltd." \&lt;BR /&gt;# and %{SSL_CLIENT_S_DN_OU} in {"Staff", "CA", "Dev"} \&lt;BR /&gt;# and %{TIME_WDAY} &amp;gt;= 1 and %{TIME_WDAY} &amp;lt;= 5 \&lt;BR /&gt;# and %{TIME_HOUR} &amp;gt;= 8 and %{TIME_HOUR} &amp;lt;= 20 ) \&lt;BR /&gt;# or %{REMOTE_ADDR} =~ m/^192\.76\.162\.[0-9]+$/&lt;BR /&gt;#&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;# SSL Engine Options:&lt;BR /&gt;# Set various options for the SSL engine.&lt;BR /&gt;# o FakeBasicAuth:&lt;BR /&gt;# Translate the client X.509 into a Basic Authorisation. This means that&lt;BR /&gt;# the standard Auth/DBMAuth methods can be used for access control. The&lt;BR /&gt;# user name is the `one line' version of the client's X.509 certificate.&lt;BR /&gt;# Note that no password is obtained from the user. Every entry in the user&lt;BR /&gt;# file needs this password: `xxj31ZMTZzkVA'.&lt;BR /&gt;# o ExportCertData:&lt;BR /&gt;# This exports two additional environment variables: SSL_CLIENT_CERT and&lt;BR /&gt;# SSL_SERVER_CERT. These contain the PEM-encoded certificates of the&lt;BR /&gt;# server (always existing) and the client (only existing when client&lt;BR /&gt;# authentication is used). This can be used to import the certificates&lt;BR /&gt;# into CGI scripts.&lt;BR /&gt;# o StdEnvVars:&lt;BR /&gt;# This exports the standard SSL/TLS related `SSL_*' environment variables.&lt;BR /&gt;# Per default this exportation is switched off for performance reasons,&lt;BR /&gt;# because the extraction step is an expensive operation and is usually&lt;BR /&gt;# useless for serving static content. So one usually enables the&lt;BR /&gt;# exportation for CGI and SSI requests only.&lt;BR /&gt;# o StrictRequire:&lt;BR /&gt;# This denies access when "SSLRequireSSL" or "SSLRequire" applied even&lt;BR /&gt;# under a "Satisfy any" situation, i.e. when it applies access is denied&lt;BR /&gt;# and no other module can change it.&lt;BR /&gt;# o OptRenegotiate:&lt;BR /&gt;# This enables optimized SSL connection renegotiation handling when SSL&lt;BR /&gt;# directives are used in per-directory context. &lt;BR /&gt;#SSLOptions +FakeBasicAuth +ExportCertData +StrictRequire&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;SSLOptions +StdEnvVars&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;SSLOptions +StdEnvVars&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;# SSL Protocol Adjustments:&lt;BR /&gt;# The safe and default but still SSL/TLS standard compliant shutdown&lt;BR /&gt;# approach is that mod_ssl sends the close notify alert but doesn't wait for&lt;BR /&gt;# the close notify alert from client. When you need a different shutdown&lt;BR /&gt;# approach you can use one of the following variables:&lt;BR /&gt;# o ssl-unclean-shutdown:&lt;BR /&gt;# This forces an unclean shutdown when the connection is closed, i.e. no&lt;BR /&gt;# SSL close notify alert is send or allowed to received. This violates&lt;BR /&gt;# the SSL/TLS standard but is needed for some brain-dead browsers. Use&lt;BR /&gt;# this when you receive I/O errors because of the standard approach where&lt;BR /&gt;# mod_ssl sends the close notify alert.&lt;BR /&gt;# o ssl-accurate-shutdown:&lt;BR /&gt;# This forces an accurate shutdown when the connection is closed, i.e. a&lt;BR /&gt;# SSL close notify alert is send and mod_ssl waits for the close notify&lt;BR /&gt;# alert of the client. This is 100% SSL/TLS standard compliant, but in&lt;BR /&gt;# practice often causes hanging connections with brain-dead browsers. Use&lt;BR /&gt;# this only for browsers where you know that their SSL implementation&lt;BR /&gt;# works correctly. &lt;BR /&gt;# Notice: Most problems of broken clients are also related to the HTTP&lt;BR /&gt;# keep-alive facility, so you usually additionally want to disable&lt;BR /&gt;# keep-alive for those clients, too. Use variable "nokeepalive" for this.&lt;BR /&gt;# Similarly, one has to force some clients to use HTTP/1.0 to workaround&lt;BR /&gt;# their broken HTTP/1.1 implementation. Use variables "downgrade-1.0" and&lt;BR /&gt;# "force-response-1.0" for this.&lt;BR /&gt;SetEnvIf User-Agent ".*MSIE.*" \&lt;BR /&gt;nokeepalive ssl-unclean-shutdown \&lt;BR /&gt;downgrade-1.0 force-response-1.0&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;# Per-Server Logging:&lt;BR /&gt;# The home of a custom SSL log file. Use this when you want a&lt;BR /&gt;# compact non-error SSL logfile on a virtual host basis.&lt;BR /&gt;CustomLog logs/ssl_request_log \&lt;BR /&gt;"%t %h %{SSL_PROTOCOL}x %{SSL_CIPHER}x \"%r\" %b"&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;server.xml&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&amp;lt;?xml version='1.0' encoding='utf-8'?&amp;gt;&lt;BR /&gt;#&lt;BR /&gt;#&lt;BR /&gt;#&lt;BR /&gt;# &lt;BR /&gt;# --&amp;gt;&lt;BR /&gt;# &lt;BR /&gt;# &lt;BR /&gt;# &lt;BR /&gt;# &lt;BR /&gt;# &lt;BR /&gt;# &lt;BR /&gt;# &lt;BR /&gt;#&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;# &lt;BR /&gt;# &lt;BR /&gt;# &lt;BR /&gt;# &lt;BR /&gt;#&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;# &lt;BR /&gt;#&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;# &lt;BR /&gt;# &lt;BR /&gt;# --&amp;gt;&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;# &lt;BR /&gt;# &lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;# &lt;BR /&gt;# &lt;BR /&gt;# --&amp;gt;&lt;BR /&gt;#&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;# &lt;BR /&gt;# --&amp;gt;&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;# &lt;BR /&gt;#&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;# &lt;BR /&gt;# --&amp;gt;&lt;BR /&gt;#&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;# &lt;BR /&gt;# &lt;BR /&gt;# --&amp;gt;&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;# &lt;BR /&gt;# &lt;BR /&gt;# &lt;BR /&gt;# &lt;BR /&gt;#&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;#&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;# &lt;BR /&gt;# &lt;BR /&gt;# --&amp;gt;&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;# &lt;BR /&gt;#&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;# &lt;BR /&gt;# &lt;BR /&gt;# &lt;BR /&gt;#&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;workers.properties&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;worker.list=tomcat&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;worker.tomcat.port=9009&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;worker.tomcat.host=localhost&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;worker.tomcat.type=ajp13&lt;/P&gt;&lt;P style="color: #000000; background: #fafafa; border: 0px; font-size: 14px; margin: 0px 10px 1rem 0px;"&gt;worker.tomcat.lbfactor=1&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 13 Jul 2014 04:26:00 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/setting-up-alfresco-5-with-ssl-and-apache/m-p/285692#M238822</guid>
      <dc:creator>donp</dc:creator>
      <dc:date>2014-07-13T04:26:00Z</dc:date>
    </item>
    <item>
      <title>Re: Setting up Alfresco 5 with SSL and Apache</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/setting-up-alfresco-5-with-ssl-and-apache/m-p/285693#M238823</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;&amp;lt;blockcode&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Server port="8005" shutdown="SHUTDOWN&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;Listener className="org.apache.catalina.core.AprLifecycleListener" SSLEngine="on"&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;Listener className="org.apache.catalina.core.JasperListener"&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;Listener className="org.apache.catalina.mbeans.GlobalResourcesLifecycleListener"&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Connector port="8080" URIEncoding="UTF-8" protocol="HTTP/1.1"&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; connectionTimeout="20000"&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; redirectPort="8443" maxHttpHeaderSize="32768"&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Define an AJP 1.3 Connector on port 8009&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Connector port="8009" URIEncoding="UTF-8" protocol="AJP/1.3" redirectPort="8443"&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;onnector port="8443" URIEncoding="UTF-8" protocol="org.apache.coyote.http11.Http11Protocol" SSLEnabled="true"&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; maxThreads="150" scheme="https" keystoreFile="/opt/alfresco-5.0.a/alf_data/keystore/ssl.keystore" keystorePass="kT9X6oe68t" keystoreType="JCEKS"&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt; secure="true" connectionTimeout="240000" truststoreFile="/opt/alfresco-5.0.a/alf_data/keystore/ssl.truststore" truststorePass="kT9X6oe68t" truststoreType="JCEKS"&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; clientAuth="want" sslProtocol="TLS" allowUnsafeLegacyRenegotiation="true" maxHttpHeaderSize="32768"&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Engine name="Catalina" defaultHost="localhost" jvmRoute="tomcat"&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;lt;blockcode&amp;gt;&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 13 Jul 2014 16:49:38 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/setting-up-alfresco-5-with-ssl-and-apache/m-p/285693#M238823</guid>
      <dc:creator>donp</dc:creator>
      <dc:date>2014-07-13T16:49:38Z</dc:date>
    </item>
    <item>
      <title>Re: Setting up Alfresco 5 with SSL and Apache</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/setting-up-alfresco-5-with-ssl-and-apache/m-p/285694#M238824</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;I also changed the port numbers in share-confif-custom.xml from port 8080 to 80 &lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;A href="http://wiki.alfresco.com/wiki/Changing_Default_Port_Configuration" rel="nofollow noopener noreferrer"&gt;http://wiki.alfresco.com/wiki/Changing_Default_Port_Configuration&lt;/A&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 13 Jul 2014 17:19:36 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/setting-up-alfresco-5-with-ssl-and-apache/m-p/285694#M238824</guid>
      <dc:creator>donp</dc:creator>
      <dc:date>2014-07-13T17:19:36Z</dc:date>
    </item>
    <item>
      <title>Re: Setting up Alfresco 5 with SSL and Apache</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/setting-up-alfresco-5-with-ssl-and-apache/m-p/285695#M238825</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;You need to match the connector port in the workers.property&lt;/SPAN&gt;&lt;BR /&gt;&lt;PRE class="language-none line-numbers"&gt;&lt;CODE&gt;&lt;BR /&gt;worker.tomcat.port=8009&lt;BR /&gt;&lt;SPAN class="line-numbers-rows"&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/CODE&gt;&lt;/PRE&gt;&lt;BR /&gt;&lt;SPAN&gt;to the setting in tomcat/conf/server.xml&lt;/SPAN&gt;&lt;BR /&gt;&lt;PRE class="language-none line-numbers"&gt;&lt;CODE&gt;&lt;BR /&gt;&amp;lt;Connector port="8009" URIEncoding="UTF-8" protocol="AJP/1.3" redirectPort="8443" /&amp;gt;&lt;BR /&gt;&lt;SPAN class="line-numbers-rows"&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/CODE&gt;&lt;/PRE&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;You have 9009 in the workers.property but 8009 in the server.xml. Make them the same.&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 14 Jul 2014 01:44:00 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/setting-up-alfresco-5-with-ssl-and-apache/m-p/285695#M238825</guid>
      <dc:creator>michaelk</dc:creator>
      <dc:date>2014-07-14T01:44:00Z</dc:date>
    </item>
    <item>
      <title>Re: Setting up Alfresco 5 with SSL and Apache</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/setting-up-alfresco-5-with-ssl-and-apache/m-p/285696#M238826</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;I made them the same and now I am getting a 502 error a bad gateway. Suggestions?&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 15 Jul 2014 03:58:20 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/setting-up-alfresco-5-with-ssl-and-apache/m-p/285696#M238826</guid>
      <dc:creator>donp</dc:creator>
      <dc:date>2014-07-15T03:58:20Z</dc:date>
    </item>
    <item>
      <title>Re: Setting up Alfresco 5 with SSL and Apache</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/setting-up-alfresco-5-with-ssl-and-apache/m-p/285697#M238827</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;Take a look at this thread and see if you can use any of it.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;A href="https://forums.alfresco.com/comment/145306#comment-145306" rel="nofollow noopener noreferrer"&gt;https://forums.alfresco.com/comment/145306#comment-145306&lt;/A&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 15 Jul 2014 15:24:52 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/setting-up-alfresco-5-with-ssl-and-apache/m-p/285697#M238827</guid>
      <dc:creator>eswbitto</dc:creator>
      <dc:date>2014-07-15T15:24:52Z</dc:date>
    </item>
    <item>
      <title>Re: Setting up Alfresco 5 with SSL and Apache</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/setting-up-alfresco-5-with-ssl-and-apache/m-p/285698#M238828</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;I am now getting Service Temporarily Unavailable. Thank you all for your feedback and comments. I am still tackling it. Is there anyone out there who has experience with this working on centos?&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 15 Jul 2014 20:58:44 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/setting-up-alfresco-5-with-ssl-and-apache/m-p/285698#M238828</guid>
      <dc:creator>donp</dc:creator>
      <dc:date>2014-07-15T20:58:44Z</dc:date>
    </item>
    <item>
      <title>Re: Setting up Alfresco 5 with SSL and Apache</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/setting-up-alfresco-5-with-ssl-and-apache/m-p/285699#M238829</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;This is my error log &lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;tail -f /var/log/httpd/error_log&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;PRE class="language-none line-numbers"&gt;&lt;CODE&gt;&lt;BR /&gt;[Tue Jul 15 22:16:56 2014] [warn] No JkLogFile defined in httpd.conf. Using default /etc/httpd/logs/mod_jk.log&lt;BR /&gt;[Tue Jul 15 22:16:56 2014] [warn] No JkShmFile defined in httpd.conf. Using default /etc/httpd/logs/jk-runtime-status&lt;BR /&gt;[Tue Jul 15 22:16:56 2014] [notice] suEXEC mechanism enabled (wrapper: /usr/sbin/suexec)&lt;BR /&gt;[Tue Jul 15 22:16:56 2014] [warn] No JkLogFile defined in httpd.conf. Using default /etc/httpd/logs/mod_jk.log&lt;BR /&gt;[Tue Jul 15 22:16:56 2014] [warn] No JkShmFile defined in httpd.conf. Using default /etc/httpd/logs/jk-runtime-status&lt;BR /&gt;[Tue Jul 15 22:16:56 2014] [notice] Digest: generating secret for digest authentication …&lt;BR /&gt;[Tue Jul 15 22:16:56 2014] [notice] Digest: done&lt;BR /&gt;[Tue Jul 15 22:16:56 2014] [notice] Apache/2.2.15 (Unix) mod_jk/1.2.40 DAV/2 mod_ssl/2.2.15 OpenSSL/1.0.1e-fips configured – resuming normal operations&lt;BR /&gt;[Tue Jul 15 23:11:35 2014] [error] [client 54.227.195.79] Directory index forbidden by Options directive: /var/www/html/&lt;BR /&gt;[Tue Jul 15 23:57:32 2014] [error] [client 173.21.115.68] Directory index forbidden by Options directive: /var/www/html/&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN class="line-numbers-rows"&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/CODE&gt;&lt;/PRE&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 15 Jul 2014 21:10:32 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/setting-up-alfresco-5-with-ssl-and-apache/m-p/285699#M238829</guid>
      <dc:creator>donp</dc:creator>
      <dc:date>2014-07-15T21:10:32Z</dc:date>
    </item>
    <item>
      <title>Re: Setting up Alfresco 5 with SSL and Apache</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/setting-up-alfresco-5-with-ssl-and-apache/m-p/285700#M238830</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;I have it running on centos 6.5….I'm not really sure how you did your setup, but I provided a link with the same steps I have it running.&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 16 Jul 2014 16:00:17 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/setting-up-alfresco-5-with-ssl-and-apache/m-p/285700#M238830</guid>
      <dc:creator>eswbitto</dc:creator>
      <dc:date>2014-07-16T16:00:17Z</dc:date>
    </item>
    <item>
      <title>Re: Setting up Alfresco 5 with SSL and Apache</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/setting-up-alfresco-5-with-ssl-and-apache/m-p/285701#M238831</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;Did you have it running with port 80? That also what I am trying to do too. &lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 17 Jul 2014 01:51:42 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/setting-up-alfresco-5-with-ssl-and-apache/m-p/285701#M238831</guid>
      <dc:creator>donp</dc:creator>
      <dc:date>2014-07-17T01:51:42Z</dc:date>
    </item>
    <item>
      <title>Re: Setting up Alfresco 5 with SSL and Apache</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/setting-up-alfresco-5-with-ssl-and-apache/m-p/285702#M238832</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;No we're using strictly SSL traffic. I'm not sure why you would want to include port 80 (nonSSL). &lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 17 Jul 2014 19:54:11 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/setting-up-alfresco-5-with-ssl-and-apache/m-p/285702#M238832</guid>
      <dc:creator>eswbitto</dc:creator>
      <dc:date>2014-07-17T19:54:11Z</dc:date>
    </item>
    <item>
      <title>Re: Setting up Alfresco 5 with SSL and Apache</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/setting-up-alfresco-5-with-ssl-and-apache/m-p/285703#M238833</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;Same. I am forcing it to go to SSL if you take a good look at my settings. I want to able to access it via &lt;/SPAN&gt;&lt;A href="http://subdomain.domain.com/share" rel="nofollow noopener noreferrer"&gt;subdomain.domain.com/share&lt;/A&gt;&lt;SPAN&gt; no with :8080&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 17 Jul 2014 21:59:10 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/setting-up-alfresco-5-with-ssl-and-apache/m-p/285703#M238833</guid>
      <dc:creator>donp</dc:creator>
      <dc:date>2014-07-17T21:59:10Z</dc:date>
    </item>
    <item>
      <title>Re: Setting up Alfresco 5 with SSL and Apache</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/setting-up-alfresco-5-with-ssl-and-apache/m-p/285704#M238834</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;Take a look at my share-config-custom.xml and see if you have the same settings.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Note: I changed my actual domain name in the parameters to FQDN for example purposes.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;PRE class="language-none line-numbers"&gt;&lt;CODE&gt;&lt;BR /&gt;&amp;lt;alfresco-config&amp;gt;&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp; &amp;lt;!– Example config to turn off the CSRF filter&lt;BR /&gt;&amp;nbsp;&amp;nbsp; &amp;lt;config evaluator="string-compare" condition="CSRFPolicy" replace="true"&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;filter/&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp; &amp;lt;/config&amp;gt;–&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp; &lt;BR /&gt;&amp;nbsp;&amp;nbsp; &amp;lt;!– Configuration for Apache reverse proxy on localhost:8089 –&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp; &amp;lt;config evaluator="string-compare" condition="CSRFPolicy" replace="true"&amp;gt;&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;!–&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Will be used and exposed to the client side code in Alfresco.contants.CSRF_POLICY.&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Use the Alfresco.util.CSRFPolicy.getHeader() or Alfresco.util.CSRFPolicy.getParameter() with Alfresco.util.CSRFPolicy.getToken()&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; to set the token in custom 3rd party code.&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; –&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;client&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;cookie&amp;gt;Alfresco-CSRFToken&amp;lt;/cookie&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;header&amp;gt;Alfresco-CSRFToken&amp;lt;/header&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;parameter&amp;gt;Alfresco-CSRFToken&amp;lt;/parameter&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/client&amp;gt;&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;!– The first rule with a matching request will get its action invoked, the remaining rules will be ignored. –&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;filter&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;!–&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Certain Surf POST requests form the WebScript console must be allowed to pass without a token since&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; the Surf WebScript console code can't be dependent on a Share specific filter.&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; –&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;rule&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;request&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;method&amp;gt;POST&amp;lt;/method&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;path&amp;gt;^\/page\/caches\/dependency\/clear|^\/page\/index|^\/page\/surfBugStatus|^\/page\/modules\/deploy|^\/page\/modules\/module|^\/page\/api\/javascript\/debugger&amp;lt;/path&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/request&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;action name="assertReferer"&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;param name="always"&amp;gt;false&amp;lt;/param&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;param name="referer"&amp;gt;&lt;A href="https://FQDN/.*" rel="nofollow noopener noreferrer"&gt;https://FQDN/.*&lt;/A&gt;&amp;lt;/param&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/action&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;action name="assertOrigin"&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;param name="always"&amp;gt;false&amp;lt;/param&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;param name="origin"&amp;gt;&lt;A href="https://FQDN" rel="nofollow noopener noreferrer"&gt;https://FQDN&lt;/A&gt;&amp;lt;/param&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/action&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/rule&amp;gt;&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;!– Certain Share POST requests does NOT require a token –&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;rule&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;request&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;method&amp;gt;POST&amp;lt;/method&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;path&amp;gt;^/page/dologin.*|^\/page/site\/[^\/]+\/start-workflow|^\/page/start-workflow&amp;lt;/path&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/request&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;action name="assertReferer"&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;param name="always"&amp;gt;false&amp;lt;/param&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;param name="referer"&amp;gt;&lt;A href="https://FQDN/.*" rel="nofollow noopener noreferrer"&gt;https://FQDN/.*&lt;/A&gt;&amp;lt;/param&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/action&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;action name="assertOrigin"&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;param name="always"&amp;gt;false&amp;lt;/param&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;param name="origin"&amp;gt;&lt;A href="https://FQDN" rel="nofollow noopener noreferrer"&gt;https://FQDN&lt;/A&gt;&amp;lt;/param&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/action&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/rule&amp;gt;&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;!– Clear the token when logging out –&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;rule&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;request&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;method&amp;gt;GET&amp;lt;/method&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;path&amp;gt;^/page/dologout.*&amp;lt;/path&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/request&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;action name="clearToken"&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;param name="session"&amp;gt;Alfresco-CSRFToken&amp;lt;/param&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;param name="cookie"&amp;gt;Alfresco-CSRFToken&amp;lt;/param&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/action&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/rule&amp;gt;&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;!– Make sure the first token is generated –&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;rule&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;request&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;session&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;attribute name="_alf_USER_ID"&amp;gt;.*&amp;lt;/attribute&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;attribute name="Alfresco-CSRFToken"/&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;!– empty attribute element indicates null –&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/session&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/request&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;action name="generateToken"&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;param name="session"&amp;gt;Alfresco-CSRFToken&amp;lt;/param&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;param name="cookie"&amp;gt;Alfresco-CSRFToken&amp;lt;/param&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/action&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/rule&amp;gt;&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;!– Refresh token on new "page" visit when a user is logged in –&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;rule&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;request&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;method&amp;gt;GET&amp;lt;/method&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;path&amp;gt;^/page/.*&amp;lt;/path&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;session&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;attribute name="_alf_USER_ID"&amp;gt;.*&amp;lt;/attribute&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;attribute name="Alfresco-CSRFToken"&amp;gt;.*&amp;lt;/attribute&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/session&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/request&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;action name="generateToken"&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;param name="session"&amp;gt;Alfresco-CSRFToken&amp;lt;/param&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;param name="cookie"&amp;gt;Alfresco-CSRFToken&amp;lt;/param&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/action&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/rule&amp;gt;&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;!– Verify multipart requests contains the token as a parameter and also correct referer &amp;amp; origin header if available –&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;rule&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;request&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;method&amp;gt;POST&amp;lt;/method&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;header name="Content-Type"&amp;gt;^multipart/.*&amp;lt;/header&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;session&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;attribute name="_alf_USER_ID"&amp;gt;.*&amp;lt;/attribute&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/session&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/request&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;action name="assertToken"&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;param name="session"&amp;gt;Alfresco-CSRFToken&amp;lt;/param&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;param name="parameter"&amp;gt;Alfresco-CSRFToken&amp;lt;/param&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/action&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;action name="assertReferer"&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;param name="always"&amp;gt;false&amp;lt;/param&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;param name="referer"&amp;gt;&lt;A href="https://FQDN/.*" rel="nofollow noopener noreferrer"&gt;https://FQDN/.*&lt;/A&gt;&amp;lt;/param&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/action&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;action name="assertOrigin"&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;param name="always"&amp;gt;false&amp;lt;/param&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;param name="origin"&amp;gt;&lt;A href="https://FQDN" rel="nofollow noopener noreferrer"&gt;https://FQDN&lt;/A&gt;&amp;lt;/param&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/action&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/rule&amp;gt;&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;!–&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Verify there is a token in the header for remaining state changing requests and also correct&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; referer &amp;amp; origin headers if available. We "catch" all content types since just setting it to&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; "application/json.*" since a webscript that doesn't require a json request body otherwise would be&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; successfully executed using i.e. "text/plain".&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; –&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;rule&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;request&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;method&amp;gt;POST|PUT|DELETE&amp;lt;/method&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;session&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;attribute name="_alf_USER_ID"&amp;gt;.*&amp;lt;/attribute&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/session&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/request&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;action name="assertToken"&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;param name="session"&amp;gt;Alfresco-CSRFToken&amp;lt;/param&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;param name="header"&amp;gt;Alfresco-CSRFToken&amp;lt;/param&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/action&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;action name="assertReferer"&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;param name="always"&amp;gt;false&amp;lt;/param&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;param name="referer"&amp;gt;&lt;A href="https://FQDN/.*" rel="nofollow noopener noreferrer"&gt;https://FQDN/.*&lt;/A&gt;&amp;lt;/param&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/action&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;action name="assertOrigin"&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;param name="always"&amp;gt;false&amp;lt;/param&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;param name="origin"&amp;gt;&lt;A href="https://FQDN" rel="nofollow noopener noreferrer"&gt;https://FQDN&lt;/A&gt;&amp;lt;/param&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/action&amp;gt;&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/rule&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/filter&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp; &amp;lt;/config&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp; &lt;BR /&gt;&amp;lt;/alfresco-config&amp;gt;&lt;BR /&gt;&lt;SPAN class="line-numbers-rows"&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/CODE&gt;&lt;/PRE&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 18 Jul 2014 15:52:00 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/setting-up-alfresco-5-with-ssl-and-apache/m-p/285704#M238834</guid>
      <dc:creator>eswbitto</dc:creator>
      <dc:date>2014-07-18T15:52:00Z</dc:date>
    </item>
    <item>
      <title>Re: Setting up Alfresco 5 with SSL and Apache</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/setting-up-alfresco-5-with-ssl-and-apache/m-p/285705#M238835</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;This is mine. Should I replace it with yours?&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;lt;code&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;lt;alfresco-config&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &amp;lt;!– Global config section –&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &amp;lt;config replace="true"&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;flags&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;!–&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Developer debugging setting to turn on DEBUG mode for client scripts in the browser&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; –&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;client-debug&amp;gt;false&amp;lt;/client-debug&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;!–&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; LOGGING can always be toggled at runtime when in DEBUG mode (Ctrl, Ctrl, Shift, Shift).&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; This flag automatically activates logging on page load.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; –&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;client-debug-autologging&amp;gt;false&amp;lt;/client-debug-autologging&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/flags&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &amp;lt;/config&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &amp;lt;config evaluator="string-compare" condition="WebFramework"&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;web-framework&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;!– SpringSurf Autowire Runtime Settings –&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;!– &lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Developers can set mode to 'development' to disable; SpringSurf caches,&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; FreeMarker template caching and Rhino JavaScript compilation.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; –&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;autowire&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;!– Pick the mode: "production" or "development" –&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;mode&amp;gt;production&amp;lt;/mode&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/autowire&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;!– Allows extension modules with &amp;lt;auto-deploy&amp;gt; set to true to be automatically deployed –&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;module-deployment&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;mode&amp;gt;manual&amp;lt;/mode&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;enable-auto-deploy-modules&amp;gt;true&amp;lt;/enable-auto-deploy-modules&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/module-deployment&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/web-framework&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &amp;lt;/config&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &amp;lt;!– Disable the CSRF Token Filter –&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &amp;lt;!–&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &amp;lt;config evaluator="string-compare" condition="CSRFPolicy" replace="true"&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;filter/&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &amp;lt;/config&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; –&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &amp;lt;!–&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; To run the CSRF Token Filter behind 1 or more proxies that do not rewrite the Origin or Referere headers:&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 1. Copy the "CSRFPolicy" default config in share-security-config.xml and paste it into this file.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 2. Replace the old config by setting the &amp;lt;config&amp;gt; element's "replace" attribute to "true" like below:&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;config evaluator="string-compare" condition="CSRFPolicy" replace="true"&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 3. To every &amp;lt;action name="assertReferer"&amp;gt; element add the following child element&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;param name="referer"&amp;gt;&lt;/SPAN&gt;&lt;A href="http://www.proxy1.com/.*|http://www.proxy2.com/.*" rel="nofollow noopener noreferrer"&gt;http://www.proxy1.com/.*|http://www.proxy2.com/.*&lt;/A&gt;&lt;SPAN&gt;&amp;lt;/param&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 4. To every &amp;lt;action name="assertOrigin"&amp;gt; element add the following child element&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;param name="origin"&amp;gt;&lt;/SPAN&gt;&lt;A href="http://www.proxy1.com|http://www.proxy2.com" rel="nofollow noopener noreferrer"&gt;http://www.proxy1.com|http://www.proxy2.com&lt;/A&gt;&lt;SPAN&gt;&amp;lt;/param&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; –&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &amp;lt;!–&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Remove the default wildcard setting and use instead a strict whitelist of the only domains that shall be allowed&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; to be used inside iframes (i.e. in the WebView dashlet on the dashboards)&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; –&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &amp;lt;!–&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &amp;lt;config evaluator="string-compare" condition="IFramePolicy" replace="true"&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;cross-domain&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;url&amp;gt;&lt;/SPAN&gt;&lt;A href="http://www.trusted-domain-1.com/" rel="nofollow noopener noreferrer"&gt;http://www.trusted-domain-1.com/&lt;/A&gt;&lt;SPAN&gt;&amp;lt;/url&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;url&amp;gt;&lt;/SPAN&gt;&lt;A href="http://www.trusted-domain-2.com/" rel="nofollow noopener noreferrer"&gt;http://www.trusted-domain-2.com/&lt;/A&gt;&lt;SPAN&gt;&amp;lt;/url&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/cross-domain&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &amp;lt;/config&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; –&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &amp;lt;!– Turn off header that stops Share from being displayed in iframes on pages from other domains –&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &amp;lt;!–&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &amp;lt;config evaluator="string-compare" condition="SecurityHeadersPolicy"&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;headers&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;header&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;name&amp;gt;X-Frame-Options&amp;lt;/name&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;enabled&amp;gt;false&amp;lt;/enabled&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/header&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/headers&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &amp;lt;/config&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; –&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &amp;lt;!– Prevent browser communication over HTTP (for HTTPS servers) –&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &amp;lt;!–&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &amp;lt;config evaluator="string-compare" condition="SecurityHeadersPolicy"&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;headers&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;header&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;name&amp;gt;Strict-Transport-Security&amp;lt;/name&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;value&amp;gt;max-age=31536000&amp;lt;/value&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/header&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/headers&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &amp;lt;/config&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; –&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &amp;lt;config evaluator="string-compare" condition="Replication"&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;share-urls&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;!–&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; To discover a Repository Id, browse to the remote server's CMIS landing page at:&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;A _jive_internal="true" href="https://community.alfresco.com/{server}:{port}/alfresco/service/cmis/index.html" rel="nofollow noopener noreferrer"&gt;http://{server}:{port}/alfresco/service/cmis/index.html&lt;/A&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; The Repository Id field is found under the "CMIS Repository Information" expandable panel.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Example config entry:&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;share-url repositoryId="622f9533-2a1e-48fe-af4e-ee9e41667ea4"&amp;gt;&lt;/SPAN&gt;&lt;A href="http://new-york-office:8080/share/" rel="nofollow noopener noreferrer"&gt;http://new-york-office:8080/share/&lt;/A&gt;&lt;SPAN&gt;&amp;lt;/share-url&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; –&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/share-urls&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &amp;lt;/config&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &amp;lt;!– Document Library config section –&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &amp;lt;config evaluator="string-compare" condition="DocumentLibrary" replace="true"&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;tree&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;!–&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Whether the folder Tree component should enumerate child folders or not.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; This is a relatively expensive operation, so should be set to "false" for Repositories with broad folder structures.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; –&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;evaluate-child-folders&amp;gt;false&amp;lt;/evaluate-child-folders&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;!–&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Optionally limit the number of folders shown in treeview throughout Share.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; –&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;maximum-folder-count&amp;gt;1000&amp;lt;/maximum-folder-count&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;!–&amp;nbsp; &lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Default timeout in milliseconds for folder Tree component to recieve response from Repository&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; –&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;timeout&amp;gt;7000&amp;lt;/timeout&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/tree&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;!–&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Used by the "Manage Aspects" action&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; For custom aspects, remember to also add the relevant i18n string(s)&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; cm_myaspect=My Aspect&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; –&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;aspects&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;!– Aspects that a user can see –&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;visible&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;aspect name="cm:generalclassifiable" /&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;aspect name="cm:complianceable" /&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;aspect name="cm:dublincore" /&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;aspect name="cm:effectivity" /&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;aspect name="cm:summarizable" /&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;aspect name="cm:versionable" /&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;aspect name="cm:templatable" /&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;aspect name="cm:emailed" /&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;aspect name="emailserver:aliasable" /&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;aspect name="cm:taggable" /&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;aspect name="app:inlineeditable" /&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;aspect name="gd:googleEditable" /&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;aspect name="cm:geographic" /&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;aspect name="exif:exif" /&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;aspect name="audio:audio" /&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;aspect name="cm:indexControl" /&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;aspect name="dp:restrictable" /&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/visible&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;!– Aspects that a user can add. Same as "visible" if left empty –&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;addable&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/addable&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;!– Aspects that a user can remove. Same as "visible" if left empty –&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;removeable&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/removeable&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/aspects&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;!–&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Used by the "Change Type" action&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Define valid subtypes using the following example:&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;type name="cm:content"&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;subtype name="cm:mysubtype" /&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/type&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Remember to also add the relevant i18n string(s):&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; cm_mysubtype=My SubType&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; –&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;types&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;type name="cm:content"&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/type&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;type name="cm:folder"&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/type&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;type name="trx:transferTarget"&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;subtype name="trx:fileTransferTarget" /&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/type&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/types&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;!–&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; If set, will present a WebDAV link for the current item on the Document and Folder details pages.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Also used to generate the "View in Alfresco Explorer" action for folders.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; –&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;repository-url&amp;gt;&lt;/SPAN&gt;&lt;A href="http://localhost:80/alfresco" rel="nofollow noopener noreferrer"&gt;http://localhost:80/alfresco&lt;/A&gt;&lt;SPAN&gt;&amp;lt;/repository-url&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;!–&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Google Docs™ integration&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; –&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;google-docs&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;!–&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Enable/disable the Google Docs UI integration (Extra types on Create Content menu, Google Docs actions).&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; –&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;enabled&amp;gt;false&amp;lt;/enabled&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;!–&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; The mimetypes of documents Google Docs allows you to create via the Share interface.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; The I18N label is created from the "type" attribute, e.g. google-docs.doc=Google Docs&amp;amp;trade; Document&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; –&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;creatable-types&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;creatable type="doc"&amp;gt;application/msword&amp;lt;/creatable&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;creatable type="xls"&amp;gt;application/vnd.ms-excel&amp;lt;/creatable&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;creatable type="ppt"&amp;gt;application/vnd.ms-powerpoint&amp;lt;/creatable&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/creatable-types&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/google-docs&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;!–&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; File upload configuration&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; –&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;file-upload&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;!–&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Adobe Flash™&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; In certain environments, an HTTP request originating from Flash cannot be authenticated using an existing session.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; See: &lt;/SPAN&gt;&lt;A href="http://bugs.adobe.com/jira/browse/FP-4830" rel="nofollow noopener noreferrer"&gt;http://bugs.adobe.com/jira/browse/FP-4830&lt;/A&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; For these cases, it is useful to disable the Flash-based uploader for Share Document Libraries.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; –&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;adobe-flash-enabled&amp;gt;true&amp;lt;/adobe-flash-enabled&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/file-upload&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &amp;lt;/config&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &amp;lt;!– Custom DocLibActions config section –&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &amp;lt;config evaluator="string-compare" condition="DocLibActions"&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;actionGroups&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;actionGroup id="document-browse"&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;!– Simple Repo Actions –&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;!–&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;action index="340" id="document-extract-metadata" /&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;action index="350" id="document-increment-counter" /&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; –&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;!– Dialog Repo Actions –&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;!–&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;action index="360" id="document-transform" /&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;action index="370" id="document-transform-image" /&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;action index="380" id="document-execute-script" /&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; –&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/actionGroup&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/actionGroups&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &amp;lt;/config&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &amp;lt;!– Global folder picker config section –&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &amp;lt;config evaluator="string-compare" condition="GlobalFolder"&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;siteTree&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;container type="cm:folder"&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;!– Use a specific label for this container type in the tree –&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;rootLabel&amp;gt;location.path.documents&amp;lt;/rootLabel&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;!– Use a specific uri to retreive the child nodes for this container type in the tree –&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;uri&amp;gt;slingshot/doclib/treenode/site/{site}/{container}{path}?children={evaluateChildFoldersSite}&amp;amp;amp;max={maximumFolderCountSite}&amp;lt;/uri&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/container&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/siteTree&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &amp;lt;/config&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &amp;lt;!– Repository Library config section –&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &amp;lt;config evaluator="string-compare" condition="RepositoryLibrary" replace="true"&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;!–&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Root nodeRef or xpath expression for top-level folder.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; e.g. alfresco://user/home, /app:company_home/st:sites/cm:site1&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; If using an xpath expression, ensure it is properly ISO9075 encoded here.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; –&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;root-node&amp;gt;alfresco://company/home&amp;lt;/root-node&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;tree&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;!–&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Whether the folder Tree component should enumerate child folders or not.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; This is a relatively expensive operation, so should be set to "false" for Repositories with broad folder structures.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; –&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;evaluate-child-folders&amp;gt;false&amp;lt;/evaluate-child-folders&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;!–&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Optionally limit the number of folders shown in treeview throughout Share.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; –&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;maximum-folder-count&amp;gt;500&amp;lt;/maximum-folder-count&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/tree&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;!–&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Whether the link to the Repository Library appears in the header component or not.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; –&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;visible&amp;gt;true&amp;lt;/visible&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &amp;lt;/config&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &amp;lt;!– Kerberos settings –&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &amp;lt;!– To enable kerberos rename this condition to "Kerberos" –&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &amp;lt;config evaluator="string-compare" condition="KerberosDisabled" replace="true"&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;kerberos&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;!–&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Password for HTTP service account.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; The account name *must* be built from the HTTP server name, in the format :&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; HTTP/&amp;lt;server_name&amp;gt;@&amp;lt;realm&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; (NB this is because the web browser requests an ST for the&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; HTTP/&amp;lt;server_name&amp;gt; principal in the current realm, so if we're to decode&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; that ST, it has to match.)&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; –&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;password&amp;gt;secret&amp;lt;/password&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;!–&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Kerberos realm and KDC address.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; –&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;realm&amp;gt;ALFRESCO.ORG&amp;lt;/realm&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;!–&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Service Principal Name to use on the repository tier.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; This must be like: HTTP/host.name@REALM&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; –&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;endpoint-spn&amp;gt;&lt;/SPAN&gt;&lt;A class="jive-link-email-small" href="mailto:HTTP/repository.server.com@ALFRESCO.ORG" rel="nofollow noopener noreferrer"&gt;HTTP/repository.server.com@ALFRESCO.ORG&lt;/A&gt;&lt;SPAN&gt;&amp;lt;/endpoint-spn&amp;gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;!–&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; JAAS login configuration entry name.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; –&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;config-entry&amp;gt;ShareHTTP&amp;lt;/config-entry&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/kerberos&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &amp;lt;/config&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &amp;lt;!– Uncomment and modify the URL to Activiti Admin Console if required. –&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &amp;lt;!–&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &amp;lt;config evaluator="string-compare" condition="ActivitiAdmin" replace="true"&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;activiti-admin-url&amp;gt;&lt;/SPAN&gt;&lt;A href="http://localhost:8080/alfresco/activiti-admin" rel="nofollow noopener noreferrer"&gt;http://localhost:8080/alfresco/activiti-admin&lt;/A&gt;&lt;SPAN&gt;&amp;lt;/activiti-admin-url&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &amp;lt;/config&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; –&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &amp;lt;config evaluator="string-compare" condition="Remote"&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;remote&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;endpoint&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;id&amp;gt;alfresco-noauth&amp;lt;/id&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;name&amp;gt;Alfresco - unauthenticated access&amp;lt;/name&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;description&amp;gt;Access to Alfresco Repository WebScripts that do not require authentication&amp;lt;/description&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;connector-id&amp;gt;alfresco&amp;lt;/connector-id&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;endpoint-url&amp;gt;&lt;/SPAN&gt;&lt;A href="http://localhost:80/alfresco/s" rel="nofollow noopener noreferrer"&gt;http://localhost:80/alfresco/s&lt;/A&gt;&lt;SPAN&gt;&amp;lt;/endpoint-url&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;identity&amp;gt;none&amp;lt;/identity&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/endpoint&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;endpoint&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;id&amp;gt;alfresco&amp;lt;/id&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;name&amp;gt;Alfresco - user access&amp;lt;/name&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;description&amp;gt;Access to Alfresco Repository WebScripts that require user authentication&amp;lt;/description&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;connector-id&amp;gt;alfresco&amp;lt;/connector-id&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;endpoint-url&amp;gt;&lt;/SPAN&gt;&lt;A href="http://localhost:80/alfresco/s" rel="nofollow noopener noreferrer"&gt;http://localhost:80/alfresco/s&lt;/A&gt;&lt;SPAN&gt;&amp;lt;/endpoint-url&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;identity&amp;gt;user&amp;lt;/identity&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/endpoint&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;endpoint&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;id&amp;gt;alfresco-feed&amp;lt;/id&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;name&amp;gt;Alfresco Feed&amp;lt;/name&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;description&amp;gt;Alfresco Feed - supports basic HTTP authentication via the EndPointProxyServlet&amp;lt;/description&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;connector-id&amp;gt;http&amp;lt;/connector-id&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;endpoint-url&amp;gt;&lt;/SPAN&gt;&lt;A href="http://localhost:80/alfresco/s" rel="nofollow noopener noreferrer"&gt;http://localhost:80/alfresco/s&lt;/A&gt;&lt;SPAN&gt;&amp;lt;/endpoint-url&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;basic-auth&amp;gt;true&amp;lt;/basic-auth&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;identity&amp;gt;user&amp;lt;/identity&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/endpoint&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;!– &lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;endpoint&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;id&amp;gt;activiti-admin&amp;lt;/id&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;name&amp;gt;Activiti Admin UI - user access&amp;lt;/name&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;description&amp;gt;Access to Activiti Admin UI, that requires user authentication&amp;lt;/description&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;connector-id&amp;gt;activiti-admin-connector&amp;lt;/connector-id&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;endpoint-url&amp;gt;&lt;/SPAN&gt;&lt;A href="http://localhost:8080/alfresco/activiti-admin" rel="nofollow noopener noreferrer"&gt;http://localhost:8080/alfresco/activiti-admin&lt;/A&gt;&lt;SPAN&gt;&amp;lt;/endpoint-url&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;identity&amp;gt;user&amp;lt;/identity&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/endpoint&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; –&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/remote&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &amp;lt;/config&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &amp;lt;!– &lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Overriding endpoints to reference an Alfresco server with external SSO enabled&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; NOTE: If utilising a load balancer between web-tier and repository cluster, the "sticky&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; sessions" feature of your load balancer must be used.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; NOTE: If alfresco server location is not localhost:8080 then also combine changes from the&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; "example port config" section below.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; *Optional* keystore contains SSL client certificate + trusted CAs.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Used to authenticate share to an external SSO system such as CAS&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Remove the keystore section if not required i.e. for NTLM.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; NOTE: For Kerberos SSO rename the "KerberosDisabled" condition above to "Kerberos"&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; NOTE: For external SSO, switch the endpoint connector to "AlfrescoHeader" and set&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; the userHeader to the name of the HTTP header that the external SSO&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; uses to provide the authenticated user name.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; –&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &amp;lt;!–&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &amp;lt;config evaluator="string-compare" condition="Remote"&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;remote&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;keystore&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;path&amp;gt;alfresco/web-extension/alfresco-system.p12&amp;lt;/path&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;type&amp;gt;pkcs12&amp;lt;/type&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;password&amp;gt;alfresco-system&amp;lt;/password&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/keystore&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;connector&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;id&amp;gt;alfrescoCookie&amp;lt;/id&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;name&amp;gt;Alfresco Connector&amp;lt;/name&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;description&amp;gt;Connects to an Alfresco instance using cookie-based authentication&amp;lt;/description&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;class&amp;gt;org.alfresco.web.site.servlet.SlingshotAlfrescoConnector&amp;lt;/class&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/connector&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;connector&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;id&amp;gt;alfrescoHeader&amp;lt;/id&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;name&amp;gt;Alfresco Connector&amp;lt;/name&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;description&amp;gt;Connects to an Alfresco instance using header and cookie-based authentication&amp;lt;/description&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;class&amp;gt;org.alfresco.web.site.servlet.SlingshotAlfrescoConnector&amp;lt;/class&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;userHeader&amp;gt;SsoUserHeader&amp;lt;/userHeader&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/connector&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;endpoint&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;id&amp;gt;alfresco&amp;lt;/id&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;name&amp;gt;Alfresco - user access&amp;lt;/name&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;description&amp;gt;Access to Alfresco Repository WebScripts that require user authentication&amp;lt;/description&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;connector-id&amp;gt;alfrescoCookie&amp;lt;/connector-id&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;endpoint-url&amp;gt;&lt;/SPAN&gt;&lt;A href="http://localhost:8080/alfresco/wcs" rel="nofollow noopener noreferrer"&gt;http://localhost:8080/alfresco/wcs&lt;/A&gt;&lt;SPAN&gt;&amp;lt;/endpoint-url&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;identity&amp;gt;user&amp;lt;/identity&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;external-auth&amp;gt;true&amp;lt;/external-auth&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/endpoint&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/remote&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &amp;lt;/config&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; –&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;lt;/alfresco-config&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 20 Jul 2014 17:02:28 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/setting-up-alfresco-5-with-ssl-and-apache/m-p/285705#M238835</guid>
      <dc:creator>donp</dc:creator>
      <dc:date>2014-07-20T17:02:28Z</dc:date>
    </item>
    <item>
      <title>Re: Setting up Alfresco 5 with SSL and Apache</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/setting-up-alfresco-5-with-ssl-and-apache/m-p/285706#M238836</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;What do I need to keep and what do I need to remove what is not necessary?&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 20 Jul 2014 17:03:35 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/setting-up-alfresco-5-with-ssl-and-apache/m-p/285706#M238836</guid>
      <dc:creator>donp</dc:creator>
      <dc:date>2014-07-20T17:03:35Z</dc:date>
    </item>
    <item>
      <title>Re: Setting up Alfresco 5 with SSL and Apache</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/setting-up-alfresco-5-with-ssl-and-apache/m-p/285707#M238837</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;Sorry I have been gone for the last two weeks on vacation. You can try mine just make sure you edit the entries for your fqdn…&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 05 Aug 2014 16:54:58 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/setting-up-alfresco-5-with-ssl-and-apache/m-p/285707#M238837</guid>
      <dc:creator>eswbitto</dc:creator>
      <dc:date>2014-08-05T16:54:58Z</dc:date>
    </item>
  </channel>
</rss>

