Warning

This document hasn't been checked for compatibility with current versions of Plone. Use at your own risk.

How can I securely manage Plone remotely over SSL?

« Back to Table of Contents

One way is to set your plone installation to run behind apache (over SSL), secure the plone install so that it only listens on non-routable interfaces, and never log in to plone over a non secure connection. So for instance, if you're running linux, you could log into your server using SSH and:
  • install plone using the universal installer (which has one server and two clients)
  • change the client1 and client2 configuration to only listen on the localhost (check the .conf files for how to set this up)
  • set up apache with SSL, mod_rewrite and mod_proxy, see http://plone.org/documentation/how-to/apache-ssl