Uploaded image for project: 'Apache Ripple'
  1. Apache Ripple
  2. RIPPLE-63

Ripple should default to local proxy, not remote

    XMLWordPrintableJSON

    Details

    • Type: Bug
    • Status: Closed
    • Priority: Major
    • Resolution: Fixed
    • Labels:
      None

      Description

      The default Ripple option is to use a remote proxy, so all calls go through e.g. https://rippleapi.herokuapp.com/xhr_proxy?tinyhippos_apikey=ABC&tinyhippos_rurl=https%3A//login.somehost.net/common/oauth2/token.

      This is a terrible option because the information that user is sending may be extremely security sensitive.

      You can set the proxy to be local, but you’d need to specify that every time you launch Chrome.
      Using local proxy is more common practice, and maybe it should be used by default?

        Attachments

        1. x-domain-proxy-default-brocken.png
          179 kB
          Andreas Gebhardt
        2. x-domain-proxy-default-fixed.png
          153 kB
          Andreas Gebhardt
        3. x-domain-proxy-local.png
          169 kB
          Andreas Gebhardt
        4. x-domain-proxy-remote.png
          178 kB
          Andreas Gebhardt

          Activity

            People

            • Assignee:
              Unassigned
              Reporter:
              vladimir.kotikov Vladimir Kotikov
            • Votes:
              1 Vote for this issue
              Watchers:
              4 Start watching this issue

              Dates

              • Created:
                Updated:
                Resolved: