How to restrict such that endusers will not able to view workflows

Question asked by Usha Rani on Oct 17, 2018



Back ground:

We have RSA appliance installed in one RHEL server (let’s say IP - The application is accessible over Now, we have configured Apache HTTPD in another RHEL server (let’s say IP - and HTTPD is communicating with application server and application is accessible over apache server IP. The URL is redirecting (proxying) internally and showing application pages and modules perfectly. FQDN is registered for this apache server to access RSA application with So, users are accessing the RSA application over is communicating with over 8080 port. Virtual host configuration in as below -



ProxyPass "/" "" retry=0 acquire=3000 timeout=1200 Keepalive=On

ProxyPassReverse "/" "" timeout=1200

SetEnv proxy-nokeepalive 1


The application is accessible and all modules working as expected (including change requests processing and all). Have tried adding another proxy and proxy bypass with 8443 port as well but failed (8080 and 8443 both the ports open from web server to app server)


After making changes in proxy configuration file and unprotect the aveksaWFArchitect URL, the users with admin rights and endusers also able to view workflow.


We want to restrict end users to not view workflows, can you please suggest how to do this.