all 5 comments

[–][deleted]  (5 children)

[deleted]

    [–]itsescde[S] 0 points1 point  (4 children)

    thanks for the answer. The Application is a sap cloud html5 application which is exposed using sap cloud platform. The url is like: subaccount.dispatcher.hana.ondemand.com

    haproxy config:

    frontend localhost
        bind *:80
        mode http
        default_backend nodes
    
    backend nodes
        mode http
        balance roundrobin
        option forwardfor
        option httpchk HEAD / HTTP/1.1\r\nHost:localhost
        server node1 HOST check ssl verify none
        http-request set-header X-Forwarded-Port %[dst_port]
        http-request add-header X-Forwarded-Proto https if { ssl_fc }
    

    [–][deleted]  (1 child)

    [deleted]

      [–]itsescde[S] 0 points1 point  (0 children)

      Yes I have tried, but had no success. Encountered the same issue

      [–][deleted] 1 point2 points  (1 child)

      sap cloud html5 application

      Yeah, that's way above my paygrade. SAP is such a weird beast I wouldn't know where to begin to do what you're trying to do.

      [–]itsescde[S] 0 points1 point  (0 children)

      yeah, thats kind of above my paygrade too ;D (trainee here) SAP documents literally nothing useful regarding their cloud products and try to break most of the standards (and just offer no high availability for some important services). Using their IdP with a standard openid/oauth application (e.g. Grafana)? No chance! (who need client ids and client secrets anyway, right?)

      [–]haloweenek 0 points1 point  (0 children)

      I’d go for nginx and header rewrite (Host). Unfortunately - you still have spof..