<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>question Re: [NIFI] Authentication Proxy Server not trusted in Support Questions</title>
    <link>https://community.cloudera.com/t5/Support-Questions/NIFI-Authentication-Proxy-Server-not-trusted/m-p/395192#M248880</link>
    <description>&lt;P&gt;&lt;a href="https://community.cloudera.com/t5/user/viewprofilepage/user-id/118392"&gt;@afidos&lt;/a&gt;,&amp;nbsp;Welcome to our community! To help you get the best possible answer, I have tagged in our NiFi experts&amp;nbsp;&lt;a href="https://community.cloudera.com/t5/user/viewprofilepage/user-id/80381"&gt;@SAMSAL&lt;/a&gt;&amp;nbsp;&lt;a href="https://community.cloudera.com/t5/user/viewprofilepage/user-id/35454"&gt;@MattWho&lt;/a&gt;&amp;nbsp;&amp;nbsp;who may be able to assist you further.&lt;BR /&gt;&lt;BR /&gt;Please feel free to provide any additional information or details about your query, and we hope that you will find a satisfactory solution to your question.&lt;/P&gt;</description>
    <pubDate>Tue, 15 Oct 2024 05:34:38 GMT</pubDate>
    <dc:creator>VidyaSargur</dc:creator>
    <dc:date>2024-10-15T05:34:38Z</dc:date>
    <item>
      <title>[NIFI] Authentication Proxy Server not trusted</title>
      <link>https://community.cloudera.com/t5/Support-Questions/NIFI-Authentication-Proxy-Server-not-trusted/m-p/395123#M248869</link>
      <description>&lt;P&gt;I made a docker compose to deploy nifi in cluster on my server.&lt;BR /&gt;I get the error Authentication Proxy Server not trusted&lt;BR /&gt;Here are my configurations&lt;BR /&gt;docker-compose&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;&lt;DIV&gt;&lt;PRE&gt;&lt;SPAN&gt;version&lt;/SPAN&gt;: &lt;SPAN&gt;'3.8'&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;x-common-nifi&lt;/SPAN&gt;:&lt;BR /&gt;  &lt;SPAN&gt;environment&lt;/SPAN&gt;: &amp;amp;&lt;SPAN&gt;nifi-env&lt;BR /&gt;&lt;/SPAN&gt;    &lt;SPAN&gt;NIFI_WEB_HTTPS_PORT&lt;/SPAN&gt;: 8443&lt;BR /&gt;    &lt;SPAN&gt;NIFI_CLUSTER_IS_NODE&lt;/SPAN&gt;: &lt;SPAN&gt;"true"&lt;BR /&gt;&lt;/SPAN&gt;    &lt;SPAN&gt;NIFI_CLUSTER_NODE_PROTOCOL_PORT&lt;/SPAN&gt;: 11444&lt;BR /&gt;    &lt;SPAN&gt;NIFI_ZK_CONNECT_STRING&lt;/SPAN&gt;: zookeeper:2181&lt;BR /&gt;    &lt;SPAN&gt;NIFI_ELECTION_MAX_WAIT&lt;/SPAN&gt;: 1 min&lt;BR /&gt;    &lt;SPAN&gt;NIFI_ZK_ROOT_NODE&lt;/SPAN&gt;: /nifi&lt;BR /&gt;    &lt;SPAN&gt;NIFI_SENSITIVE_PROPS_KEY&lt;/SPAN&gt;: ${KEY_SENSITIVE}&lt;BR /&gt;    &lt;SPAN&gt;NIFI_VARIABLE_REGISTRY_PROPERTIES&lt;/SPAN&gt;: http://nifi-registry:18080&lt;BR /&gt;    &lt;SPAN&gt;AUTH&lt;/SPAN&gt;: ldap&lt;BR /&gt;    &lt;SPAN&gt;INITIAL_ADMIN_IDENTITY&lt;/SPAN&gt;: &lt;SPAN&gt;'uid=admin,ou=admins,dc=myhost,dc=dev'&lt;BR /&gt;&lt;/SPAN&gt;    &lt;SPAN&gt;#LDAP_AUTHENTICATION_STRATEGY: 'LDAPS'&lt;BR /&gt;&lt;/SPAN&gt;    &lt;SPAN&gt;LDAP_AUTHENTICATION_STRATEGY&lt;/SPAN&gt;: &lt;SPAN&gt;'SIMPLE'&lt;BR /&gt;&lt;/SPAN&gt;    &lt;SPAN&gt;LDAP_MANAGER_DN&lt;/SPAN&gt;: &lt;SPAN&gt;'cn=admin,dc=myhost,dc=dev'&lt;BR /&gt;&lt;/SPAN&gt;    &lt;SPAN&gt;LDAP_MANAGER_PASSWORD&lt;/SPAN&gt;: ${ADMIN_PASSWORD}&lt;BR /&gt;    &lt;SPAN&gt;LDAP_URL&lt;/SPAN&gt;: &lt;SPAN&gt;'ldap://openldap'&lt;BR /&gt;&lt;/SPAN&gt;    &lt;SPAN&gt;LDAP_USER_SEARCH_BASE&lt;/SPAN&gt;: &lt;SPAN&gt;'dc=myhost,dc=dev'&lt;BR /&gt;&lt;/SPAN&gt;    &lt;SPAN&gt;LDAP_USER_SEARCH_FILTER&lt;/SPAN&gt;: &lt;SPAN&gt;'uid={0}'&lt;BR /&gt;&lt;/SPAN&gt;    &lt;SPAN&gt;LDAP_IDENTITY_STRATEGY&lt;/SPAN&gt;: &lt;SPAN&gt;'USE_DN'&lt;BR /&gt;&lt;/SPAN&gt;    &lt;SPAN&gt;KEYSTORE_TYPE&lt;/SPAN&gt;: JKS&lt;BR /&gt;    &lt;SPAN&gt;KEYSTORE_PASSWORD&lt;/SPAN&gt;: ${KEY_STORE}&lt;BR /&gt;    &lt;SPAN&gt;KEYSTORE_PATH&lt;/SPAN&gt;: /opt/certs/keystore.jks&lt;BR /&gt;    &lt;SPAN&gt;TRUSTSTORE_PATH&lt;/SPAN&gt;: /opt/certs/truststore.jks&lt;BR /&gt;    &lt;SPAN&gt;TRUSTSTORE_PASSWORD&lt;/SPAN&gt;: ${KEY_STORE}&lt;BR /&gt;    &lt;SPAN&gt;TRUSTSTORE_TYPE&lt;/SPAN&gt;: JKS&lt;BR /&gt;    &lt;SPAN&gt;NIFI_WEB_PROXY_HOST&lt;/SPAN&gt;: &lt;SPAN&gt;"web.nifiapp.myhost.dev,*.nifiapp.myhost.dev"&lt;BR /&gt;&lt;/SPAN&gt;    &lt;SPAN&gt;NIFI_JVM_HEAP_INIT&lt;/SPAN&gt;: 512m&lt;BR /&gt;    &lt;SPAN&gt;NIFI_JVM_HEAP_MAX&lt;/SPAN&gt;: 512m&lt;BR /&gt;    &lt;SPAN&gt;#NODE_IDENTITY: 'CN=*.nifiapp.myhost.dev'&lt;BR /&gt;&lt;/SPAN&gt;  &lt;SPAN&gt;networks&lt;/SPAN&gt;: &amp;amp;&lt;SPAN&gt;nifi-net&lt;BR /&gt;&lt;/SPAN&gt;    - nifi_network&lt;BR /&gt;  &lt;SPAN&gt;depends_on&lt;/SPAN&gt;: &amp;amp;&lt;SPAN&gt;nifi-dep&lt;BR /&gt;&lt;/SPAN&gt;    - openldap&lt;BR /&gt;  &lt;SPAN&gt;entrypoint&lt;/SPAN&gt;: &amp;amp;&lt;SPAN&gt;nifi-entry&lt;BR /&gt;&lt;/SPAN&gt;    - &lt;SPAN&gt;"/bin/bash"&lt;BR /&gt;&lt;/SPAN&gt;    - &lt;SPAN&gt;"-c"&lt;BR /&gt;&lt;/SPAN&gt;    - &lt;SPAN&gt;"sed -i 's|&amp;lt;appender-ref ref=\"USER_FILE\"/&amp;gt;|&amp;lt;appender-ref ref=\"CONSOLE\"/&amp;gt;|' conf/logback.xml; ../scripts/start.sh"&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;services&lt;/SPAN&gt;:&lt;BR /&gt;  &lt;SPAN&gt;zookeeper&lt;/SPAN&gt;:&lt;BR /&gt;    &lt;SPAN&gt;image&lt;/SPAN&gt;: confluentinc/cp-zookeeper:latest&lt;BR /&gt;    &lt;SPAN&gt;hostname&lt;/SPAN&gt;: zookeeper&lt;BR /&gt;    &lt;SPAN&gt;environment&lt;/SPAN&gt;:&lt;BR /&gt;      &lt;SPAN&gt;ZOOKEEPER_SERVER_ID&lt;/SPAN&gt;: 1&lt;BR /&gt;      &lt;SPAN&gt;ZOOKEEPER_SERVERS&lt;/SPAN&gt;: server.1=zookeeper:2888:3888&lt;BR /&gt;      &lt;SPAN&gt;ZOOKEEPER_CLIENT_PORT&lt;/SPAN&gt;: 2181&lt;BR /&gt;      &lt;SPAN&gt;JVMFLAGS&lt;/SPAN&gt;: -Xmx512m -Xms512m&lt;BR /&gt;    &lt;SPAN&gt;ports&lt;/SPAN&gt;:&lt;BR /&gt;      - &lt;SPAN&gt;"7481:2181"&lt;BR /&gt;&lt;/SPAN&gt;      - &lt;SPAN&gt;"7499:8080"&lt;BR /&gt;&lt;/SPAN&gt;    &lt;SPAN&gt;volumes&lt;/SPAN&gt;:&lt;BR /&gt;      - zookeeper_data:/data&lt;BR /&gt;      - zookeeper_datalog:/datalog&lt;BR /&gt;    &lt;SPAN&gt;networks&lt;/SPAN&gt;:&lt;BR /&gt;      - nifi_network&lt;BR /&gt;&lt;BR /&gt;  &lt;SPAN&gt;nifi1&lt;/SPAN&gt;:&lt;BR /&gt;    &lt;SPAN&gt;image&lt;/SPAN&gt;: apache/nifi:latest&lt;BR /&gt;    &lt;SPAN&gt;hostname&lt;/SPAN&gt;: n1.nifiapp.myhost.dev&lt;BR /&gt;    &lt;SPAN&gt;entrypoint&lt;/SPAN&gt;: *&lt;SPAN&gt;nifi-entry&lt;BR /&gt;&lt;/SPAN&gt;    &lt;SPAN&gt;ports&lt;/SPAN&gt;:&lt;BR /&gt;      - &lt;SPAN&gt;"7498:8443"&lt;BR /&gt;&lt;/SPAN&gt;      - &lt;SPAN&gt;"7400-7425:7400-7425"&lt;BR /&gt;&lt;/SPAN&gt;    &lt;SPAN&gt;environment&lt;/SPAN&gt;:&lt;BR /&gt;      &lt;SPAN&gt;&amp;lt;&amp;lt;&lt;/SPAN&gt;: *&lt;SPAN&gt;nifi-env&lt;BR /&gt;&lt;/SPAN&gt;      &lt;SPAN&gt;NIFI_WEB_HTTPS_HOST&lt;/SPAN&gt;: n1.nifiapp.myhost.dev&lt;BR /&gt;      &lt;SPAN&gt;NIFI_NODE_IDENTITY&lt;/SPAN&gt;: nifi1&lt;BR /&gt;    &lt;SPAN&gt;networks&lt;/SPAN&gt;: *&lt;SPAN&gt;nifi-net&lt;BR /&gt;&lt;/SPAN&gt;    &lt;SPAN&gt;depends_on&lt;/SPAN&gt;: *&lt;SPAN&gt;nifi-dep&lt;BR /&gt;&lt;/SPAN&gt;    &lt;SPAN&gt;volumes&lt;/SPAN&gt;:&lt;BR /&gt;      - nifi1_logs:/opt/nifi/nifi-current/logs&lt;BR /&gt;      - nifi1_state:/opt/nifi/nifi-current/state&lt;BR /&gt;      - nifi1_conf:/opt/nifi/nifi-current/conf&lt;BR /&gt;      - nifi1_database_repository:/opt/nifi/nifi-current/database_repository&lt;BR /&gt;      - nifi1_flowfile_repository:/opt/nifi/nifi-current/flowfile_repository&lt;BR /&gt;      - nifi1_content_repository:/opt/nifi/nifi-current/content_repository&lt;BR /&gt;      - nifi1_provenance_repository:/opt/nifi/nifi-current/provenance_repository&lt;BR /&gt;      - ./exports:/opt/certs&lt;BR /&gt;&lt;BR /&gt;  &lt;SPAN&gt;nifi2&lt;/SPAN&gt;:&lt;BR /&gt;    &lt;SPAN&gt;image&lt;/SPAN&gt;: apache/nifi:latest&lt;BR /&gt;    &lt;SPAN&gt;hostname&lt;/SPAN&gt;: n2.nifiapp.myhost.dev&lt;BR /&gt;    &lt;SPAN&gt;entrypoint&lt;/SPAN&gt;: *&lt;SPAN&gt;nifi-entry&lt;BR /&gt;&lt;/SPAN&gt;    &lt;SPAN&gt;ports&lt;/SPAN&gt;:&lt;BR /&gt;      - &lt;SPAN&gt;"7497:8443"&lt;BR /&gt;&lt;/SPAN&gt;      - &lt;SPAN&gt;"7426-7451:7426-7451"&lt;BR /&gt;&lt;/SPAN&gt;    &lt;SPAN&gt;environment&lt;/SPAN&gt;:&lt;BR /&gt;      &lt;SPAN&gt;&amp;lt;&amp;lt;&lt;/SPAN&gt;: *&lt;SPAN&gt;nifi-env&lt;BR /&gt;&lt;/SPAN&gt;      &lt;SPAN&gt;NIFI_WEB_HTTPS_HOST&lt;/SPAN&gt;: n2.nifiapp.myhost.dev&lt;BR /&gt;      &lt;SPAN&gt;NIFI_NODE_IDENTITY&lt;/SPAN&gt;: nifi2&lt;BR /&gt;    &lt;SPAN&gt;networks&lt;/SPAN&gt;: *&lt;SPAN&gt;nifi-net&lt;BR /&gt;&lt;/SPAN&gt;    &lt;SPAN&gt;depends_on&lt;/SPAN&gt;: *&lt;SPAN&gt;nifi-dep&lt;BR /&gt;&lt;/SPAN&gt;    &lt;SPAN&gt;volumes&lt;/SPAN&gt;:&lt;BR /&gt;      - nifi2_logs:/opt/nifi/nifi-current/logs&lt;BR /&gt;      - nifi2_state:/opt/nifi/nifi-current/state&lt;BR /&gt;      - nifi2_conf:/opt/nifi/nifi-current/conf&lt;BR /&gt;      - nifi2_database_repository:/opt/nifi/nifi-current/database_repository&lt;BR /&gt;      - nifi2_flowfile_repository:/opt/nifi/nifi-current/flowfile_repository&lt;BR /&gt;      - nifi2_content_repository:/opt/nifi/nifi-current/content_repository&lt;BR /&gt;      - nifi2_provenance_repository:/opt/nifi/nifi-current/provenance_repository&lt;BR /&gt;      - ./exports:/opt/certs&lt;BR /&gt;&lt;BR /&gt;  &lt;SPAN&gt;nifi3&lt;/SPAN&gt;:&lt;BR /&gt;    &lt;SPAN&gt;image&lt;/SPAN&gt;: apache/nifi:latest&lt;BR /&gt;    &lt;SPAN&gt;hostname&lt;/SPAN&gt;: n3.nifiapp.myhost.dev&lt;BR /&gt;    &lt;SPAN&gt;entrypoint&lt;/SPAN&gt;: *&lt;SPAN&gt;nifi-entry&lt;BR /&gt;&lt;/SPAN&gt;    &lt;SPAN&gt;ports&lt;/SPAN&gt;:&lt;BR /&gt;      - &lt;SPAN&gt;"7496:8443"&lt;BR /&gt;&lt;/SPAN&gt;      - &lt;SPAN&gt;"7452-7475:7452-7475"&lt;BR /&gt;&lt;/SPAN&gt;    &lt;SPAN&gt;networks&lt;/SPAN&gt;: *&lt;SPAN&gt;nifi-net&lt;BR /&gt;&lt;/SPAN&gt;    &lt;SPAN&gt;depends_on&lt;/SPAN&gt;: *&lt;SPAN&gt;nifi-dep&lt;BR /&gt;&lt;/SPAN&gt;    &lt;SPAN&gt;environment&lt;/SPAN&gt;:&lt;BR /&gt;      &lt;SPAN&gt;&amp;lt;&amp;lt;&lt;/SPAN&gt;: *&lt;SPAN&gt;nifi-env&lt;BR /&gt;&lt;/SPAN&gt;      &lt;SPAN&gt;NIFI_WEB_HTTPS_HOST&lt;/SPAN&gt;: n3.nifiapp.myhost.dev&lt;BR /&gt;      &lt;SPAN&gt;NIFI_NODE_IDENTITY&lt;/SPAN&gt;: nifi3&lt;BR /&gt;    &lt;SPAN&gt;volumes&lt;/SPAN&gt;:&lt;BR /&gt;      - nifi3_logs:/opt/nifi/nifi-current/logs&lt;BR /&gt;      - nifi3_state:/opt/nifi/nifi-current/state&lt;BR /&gt;      - nifi3_conf:/opt/nifi/nifi-current/conf&lt;BR /&gt;      - nifi3_database_repository:/opt/nifi/nifi-current/database_repository&lt;BR /&gt;      - nifi3_flowfile_repository:/opt/nifi/nifi-current/flowfile_repository&lt;BR /&gt;      - nifi3_content_repository:/opt/nifi/nifi-current/content_repository&lt;BR /&gt;      - nifi3_provenance_repository:/opt/nifi/nifi-current/provenance_repository&lt;BR /&gt;      - ./exports:/opt/certs&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;  &lt;SPAN&gt;nifi-registry&lt;/SPAN&gt;:&lt;BR /&gt;    &lt;SPAN&gt;image&lt;/SPAN&gt;: apache/nifi-registry:latest&lt;BR /&gt;    &lt;SPAN&gt;ports&lt;/SPAN&gt;:&lt;BR /&gt;      - &lt;SPAN&gt;"7495:18080"&lt;BR /&gt;&lt;/SPAN&gt;    &lt;SPAN&gt;volumes&lt;/SPAN&gt;:&lt;BR /&gt;      - nifi-registry-data:/opt/nifi-registry/data&lt;BR /&gt;      - nifi-registry-conf:/opt/nifi-registry/conf&lt;BR /&gt;      - nifi-registry-logs:/opt/nifi-registry/logs&lt;BR /&gt;    &lt;SPAN&gt;networks&lt;/SPAN&gt;:&lt;BR /&gt;      - nifi_network&lt;BR /&gt;    &lt;SPAN&gt;depends_on&lt;/SPAN&gt;:&lt;BR /&gt;      - openldap&lt;BR /&gt;&lt;BR /&gt;  &lt;SPAN&gt;openldap&lt;/SPAN&gt;:&lt;BR /&gt;    &lt;SPAN&gt;image&lt;/SPAN&gt;: osixia/openldap:1.5.0&lt;BR /&gt;    &lt;SPAN&gt;hostname&lt;/SPAN&gt;: openldap&lt;BR /&gt;    &lt;SPAN&gt;environment&lt;/SPAN&gt;:&lt;BR /&gt;      &lt;SPAN&gt;LDAP_ORGANISATION&lt;/SPAN&gt;: MY ORG&lt;BR /&gt;      &lt;SPAN&gt;LDAP_DOMAIN&lt;/SPAN&gt;: myhost.dev&lt;BR /&gt;      &lt;SPAN&gt;LDAP_ADMIN_PASSWORD&lt;/SPAN&gt;: &lt;SPAN&gt;"${ADMIN_PASSWORD}"&lt;BR /&gt;&lt;/SPAN&gt;      &lt;SPAN&gt;LDAP_CONFIG_PASSWORD&lt;/SPAN&gt;: &lt;SPAN&gt;"${ADMIN_PASSWORD}"&lt;BR /&gt;&lt;/SPAN&gt;      &lt;SPAN&gt;LDAP_ADMIN_CN&lt;/SPAN&gt;: admin&lt;BR /&gt;      &lt;SPAN&gt;LDAP_TLS_VERIFY_CLIENT&lt;/SPAN&gt;: allow&lt;BR /&gt;      &lt;SPAN&gt;LDAP_TLS&lt;/SPAN&gt;: &lt;SPAN&gt;"false"&lt;BR /&gt;&lt;/SPAN&gt;      &lt;SPAN&gt;LDAP_BASE_DN&lt;/SPAN&gt;: dc=myhost,dc=dev&lt;BR /&gt;    &lt;SPAN&gt;ports&lt;/SPAN&gt;:&lt;BR /&gt;      - &lt;SPAN&gt;"389:389"  &lt;/SPAN&gt;&lt;SPAN&gt;# Port LDAP&lt;BR /&gt;&lt;/SPAN&gt;    &lt;SPAN&gt;volumes&lt;/SPAN&gt;:&lt;BR /&gt;      - openldap-data:/var/lib/ldap&lt;BR /&gt;      - openldap-config:/etc/ldap/slapd.d&lt;BR /&gt;    &lt;SPAN&gt;networks&lt;/SPAN&gt;:&lt;BR /&gt;      - nifi_network&lt;BR /&gt;    &lt;SPAN&gt;command&lt;/SPAN&gt;: [&lt;SPAN&gt;"--loglevel"&lt;/SPAN&gt;, &lt;SPAN&gt;"debug"&lt;/SPAN&gt;,&lt;SPAN&gt;"--copy-service"&lt;/SPAN&gt;]&lt;BR /&gt;&lt;BR /&gt;  &lt;SPAN&gt;ldap-user-manager&lt;/SPAN&gt;:&lt;BR /&gt;    &lt;SPAN&gt;image&lt;/SPAN&gt;: wheelybird/ldap-user-manager:v1.5&lt;BR /&gt;    &lt;SPAN&gt;environment&lt;/SPAN&gt;:&lt;BR /&gt;      - LDAP_URI=ldap://openldap&lt;BR /&gt;      - LDAP_BASE_DN=dc=myhost,dc=dev&lt;BR /&gt;      - LDAP_ADMIN_BIND_DN=cn=admin,dc=myhost,dc=dev&lt;BR /&gt;      - LDAP_ADMIN_BIND_PWD=${ADMIN_PASSWORD}&lt;BR /&gt;      - LDAP_ADMINS_GROUP=cn=admin,ou=MY ORG,dc=myhost,dc=dev&lt;BR /&gt;      - LDAP_REQUIRE_STARTTLS=FALSE&lt;BR /&gt;    &lt;SPAN&gt;ports&lt;/SPAN&gt;:&lt;BR /&gt;      - &lt;SPAN&gt;"7494:80"&lt;BR /&gt;&lt;/SPAN&gt;      - &lt;SPAN&gt;"7493:443"&lt;BR /&gt;&lt;/SPAN&gt;    &lt;SPAN&gt;depends_on&lt;/SPAN&gt;:&lt;BR /&gt;      - openldap&lt;BR /&gt;    &lt;SPAN&gt;networks&lt;/SPAN&gt;:&lt;BR /&gt;      - nifi_network&lt;BR /&gt;    &lt;SPAN&gt;platform&lt;/SPAN&gt;: linux/amd64&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;networks&lt;/SPAN&gt;:&lt;BR /&gt;  &lt;SPAN&gt;nifi_network&lt;/SPAN&gt;:&lt;BR /&gt;    &lt;SPAN&gt;name&lt;/SPAN&gt;: &lt;SPAN&gt;'nifi_tls_network'&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;volumes&lt;/SPAN&gt;:&lt;BR /&gt;  &lt;SPAN&gt;nifi1_logs&lt;/SPAN&gt;:&lt;BR /&gt;  &lt;SPAN&gt;nifi1_state&lt;/SPAN&gt;:&lt;BR /&gt;  &lt;SPAN&gt;nifi1_conf&lt;/SPAN&gt;:&lt;BR /&gt;  &lt;SPAN&gt;nifi1_database_repository&lt;/SPAN&gt;:&lt;BR /&gt;  &lt;SPAN&gt;nifi1_flowfile_repository&lt;/SPAN&gt;:&lt;BR /&gt;  &lt;SPAN&gt;nifi1_content_repository&lt;/SPAN&gt;:&lt;BR /&gt;  &lt;SPAN&gt;nifi1_provenance_repository&lt;/SPAN&gt;:&lt;BR /&gt;  &lt;SPAN&gt;nifi2_logs&lt;/SPAN&gt;:&lt;BR /&gt;  &lt;SPAN&gt;nifi2_state&lt;/SPAN&gt;:&lt;BR /&gt;  &lt;SPAN&gt;nifi2_conf&lt;/SPAN&gt;:&lt;BR /&gt;  &lt;SPAN&gt;nifi2_database_repository&lt;/SPAN&gt;:&lt;BR /&gt;  &lt;SPAN&gt;nifi2_flowfile_repository&lt;/SPAN&gt;:&lt;BR /&gt;  &lt;SPAN&gt;nifi2_content_repository&lt;/SPAN&gt;:&lt;BR /&gt;  &lt;SPAN&gt;nifi2_provenance_repository&lt;/SPAN&gt;:&lt;BR /&gt;  &lt;SPAN&gt;nifi3_logs&lt;/SPAN&gt;:&lt;BR /&gt;  &lt;SPAN&gt;nifi3_state&lt;/SPAN&gt;:&lt;BR /&gt;  &lt;SPAN&gt;nifi3_conf&lt;/SPAN&gt;:&lt;BR /&gt;  &lt;SPAN&gt;nifi3_database_repository&lt;/SPAN&gt;:&lt;BR /&gt;  &lt;SPAN&gt;nifi3_flowfile_repository&lt;/SPAN&gt;:&lt;BR /&gt;  &lt;SPAN&gt;nifi3_content_repository&lt;/SPAN&gt;:&lt;BR /&gt;  &lt;SPAN&gt;nifi3_provenance_repository&lt;/SPAN&gt;:&lt;BR /&gt;  &lt;SPAN&gt;zookeeper_data&lt;/SPAN&gt;:&lt;BR /&gt;  &lt;SPAN&gt;zookeeper_datalog&lt;/SPAN&gt;:&lt;BR /&gt;  &lt;SPAN&gt;nifi-registry-data&lt;/SPAN&gt;:&lt;BR /&gt;  &lt;SPAN&gt;nifi-registry-conf&lt;/SPAN&gt;:&lt;BR /&gt;  &lt;SPAN&gt;nifi-registry-logs&lt;/SPAN&gt;:&lt;BR /&gt;  &lt;SPAN&gt;openldap-data&lt;/SPAN&gt;:&lt;BR /&gt;  &lt;SPAN&gt;openldap-config&lt;/SPAN&gt;:&lt;BR /&gt;  &lt;SPAN&gt;postgres_data&lt;/SPAN&gt;:&lt;BR /&gt;&lt;BR /&gt;&lt;/PRE&gt;&lt;/DIV&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;on my server I use a Nginx that configure below&lt;/P&gt;&lt;DIV&gt;&lt;PRE&gt;&lt;SPAN&gt;upstream nifibalancer &lt;/SPAN&gt;{&lt;BR /&gt;    ip_hash;&lt;BR /&gt;    &lt;SPAN&gt;server &lt;/SPAN&gt;localhost:7498;&lt;BR /&gt;    &lt;SPAN&gt;server &lt;/SPAN&gt;localhost:7497;&lt;BR /&gt;    &lt;SPAN&gt;server &lt;/SPAN&gt;localhost:7486;&lt;BR /&gt;}&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;server &lt;/SPAN&gt;{&lt;BR /&gt;    &lt;SPAN&gt;listen &lt;/SPAN&gt;443 &lt;SPAN&gt;ssl&lt;/SPAN&gt;;&lt;BR /&gt;    &lt;SPAN&gt;server_name &lt;/SPAN&gt;~^p(?&amp;lt;port&amp;gt;\d+)\.nifiapp.myhost\.dev$;&lt;BR /&gt;    &lt;SPAN&gt;ignore_invalid_headers off&lt;/SPAN&gt;;&lt;BR /&gt;&lt;BR /&gt;    &lt;SPAN&gt;# Vérification de l'intervalle de ports autorisés (de 8900 à 8999)&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;&lt;BR /&gt;&lt;/SPAN&gt;    &lt;SPAN&gt;location &lt;/SPAN&gt;/ {&lt;BR /&gt;        &lt;SPAN&gt;proxy_set_header Host &lt;/SPAN&gt;$host;&lt;BR /&gt;        &lt;SPAN&gt;proxy_set_header &lt;/SPAN&gt;X-Real-IP $remote_addr;&lt;BR /&gt;        &lt;SPAN&gt;proxy_set_header &lt;/SPAN&gt;X-Forwarded-For $proxy_add_x_forwarded_for;&lt;BR /&gt;        &lt;SPAN&gt;proxy_set_header &lt;/SPAN&gt;X-Forwarded-Proto $scheme;&lt;BR /&gt;        &lt;SPAN&gt;if &lt;/SPAN&gt;($port ~* "^(74[0-8]{1}[0-9]{1})$") {&lt;BR /&gt;            &lt;SPAN&gt;proxy_pass &lt;/SPAN&gt;http://localhost:$port;&lt;BR /&gt;        }&lt;BR /&gt;        &lt;SPAN&gt;return &lt;/SPAN&gt;403;  &lt;SPAN&gt;# Refuse les requêtes en dehors de cet intervalle&lt;BR /&gt;&lt;/SPAN&gt;    }&lt;BR /&gt;    &lt;SPAN&gt;access_log &lt;/SPAN&gt;/var/log/nginx/nifiapp-listener-app-access.log;&lt;BR /&gt;    &lt;SPAN&gt;error_log &lt;/SPAN&gt;/var/log/nginx/nifiapp-listener-app-error.log;&lt;BR /&gt;    &lt;SPAN&gt;ssl_certificate &lt;/SPAN&gt;/etc/letsencrypt/live/nifiapp.myhost.dev/fullchain.pem;&lt;BR /&gt;    &lt;SPAN&gt;ssl_certificate_key &lt;/SPAN&gt;/etc/letsencrypt/live/nifiapp.myhost.dev/privkey.pem;&lt;BR /&gt;}&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;server &lt;/SPAN&gt;{&lt;BR /&gt;    &lt;SPAN&gt;listen &lt;/SPAN&gt;443 &lt;SPAN&gt;ssl&lt;/SPAN&gt;;&lt;BR /&gt;    &lt;SPAN&gt;server_name &lt;/SPAN&gt;web.nifiapp.myhost.dev;&lt;BR /&gt;    &lt;SPAN&gt;ignore_invalid_headers off&lt;/SPAN&gt;;&lt;BR /&gt;&lt;BR /&gt;    &lt;SPAN&gt;location &lt;/SPAN&gt;/ {&lt;BR /&gt;       &lt;SPAN&gt;proxy_pass &lt;/SPAN&gt;https://nifibalancer/;&lt;BR /&gt;       &lt;SPAN&gt;proxy_set_header Host &lt;/SPAN&gt;$host;&lt;BR /&gt;       &lt;SPAN&gt;proxy_set_header &lt;/SPAN&gt;X-Real-IP $remote_addr;&lt;BR /&gt;       &lt;SPAN&gt;proxy_set_header &lt;/SPAN&gt;X-Forwarded-Host $host;&lt;BR /&gt;       &lt;SPAN&gt;proxy_set_header &lt;/SPAN&gt;X-Forwarded-For $proxy_add_x_forwarded_for;&lt;BR /&gt;       &lt;SPAN&gt;proxy_set_header &lt;/SPAN&gt;X-Forwarded-Proto $scheme;&lt;BR /&gt;       &lt;SPAN&gt;proxy_set_header &lt;/SPAN&gt;X-Original-URI $request_uri;&lt;BR /&gt;&lt;BR /&gt;       &lt;SPAN&gt;proxy_set_header &lt;/SPAN&gt;X-ProxyScheme $scheme;&lt;BR /&gt;       &lt;SPAN&gt;proxy_set_header &lt;/SPAN&gt;X-ProxyHost $host;&lt;BR /&gt;       &lt;SPAN&gt;proxy_set_header &lt;/SPAN&gt;X-ProxyPort $port;&lt;BR /&gt;       &lt;SPAN&gt;#proxy_set_header X-ProxyContextPath /;&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;       # Add ProxiedEntitiesChain using client certificate's distinguished name (DN)&lt;BR /&gt;&lt;/SPAN&gt;       &lt;SPAN&gt;proxy_set_header &lt;/SPAN&gt;X-ProxiedEntitiesChain $ssl_client_s_dn;&lt;BR /&gt;    }&lt;BR /&gt;    &lt;SPAN&gt;access_log &lt;/SPAN&gt;/var/log/nginx/nifiapp-app-access.log;&lt;BR /&gt;    &lt;SPAN&gt;error_log &lt;/SPAN&gt;/var/log/nginx/nifiapp-app-error.log;&lt;BR /&gt;    &lt;SPAN&gt;ssl_certificate &lt;/SPAN&gt;/etc/letsencrypt/live/nifiapp.myhost.dev/fullchain.pem;&lt;BR /&gt;    &lt;SPAN&gt;ssl_certificate_key &lt;/SPAN&gt;/etc/letsencrypt/live/nifiapp.myhost.dev/privkey.pem;&lt;BR /&gt;}&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;server &lt;/SPAN&gt;{&lt;BR /&gt;    &lt;SPAN&gt;listen &lt;/SPAN&gt;443 &lt;SPAN&gt;ssl&lt;/SPAN&gt;;&lt;BR /&gt;    &lt;SPAN&gt;server_name &lt;/SPAN&gt;zookeeper.nifiapp.myhost.dev;&lt;BR /&gt;    &lt;SPAN&gt;ignore_invalid_headers off&lt;/SPAN&gt;;&lt;BR /&gt;&lt;BR /&gt;    &lt;SPAN&gt;location &lt;/SPAN&gt;/ {&lt;BR /&gt;        &lt;SPAN&gt;proxy_pass &lt;/SPAN&gt;http://localhost:7499;&lt;BR /&gt;        &lt;SPAN&gt;proxy_set_header Host &lt;/SPAN&gt;$host;&lt;BR /&gt;        &lt;SPAN&gt;proxy_set_header &lt;/SPAN&gt;X-Real-IP $remote_addr;&lt;BR /&gt;        &lt;SPAN&gt;proxy_set_header &lt;/SPAN&gt;X-Forwarded-Host $host;&lt;BR /&gt;        &lt;SPAN&gt;proxy_set_header &lt;/SPAN&gt;X-Forwarded-For $proxy_add_x_forwarded_for;&lt;BR /&gt;        &lt;SPAN&gt;proxy_set_header &lt;/SPAN&gt;X-Forwarded-Proto $scheme;&lt;BR /&gt;        &lt;SPAN&gt;proxy_set_header &lt;/SPAN&gt;X-Original-URI $request_uri;&lt;BR /&gt;    }&lt;BR /&gt;&lt;BR /&gt;    &lt;SPAN&gt;error_page &lt;/SPAN&gt;404 =200 /index.html;&lt;BR /&gt;    &lt;SPAN&gt;access_log &lt;/SPAN&gt;/var/log/nginx/nifiapp-zookeeper-app-access.log;&lt;BR /&gt;    &lt;SPAN&gt;error_log &lt;/SPAN&gt;/var/log/nginx/nifiapp-zookeeper-app-error.log;&lt;BR /&gt;    &lt;SPAN&gt;ssl_certificate &lt;/SPAN&gt;/etc/letsencrypt/live/nifiapp.myhost.dev/fullchain.pem;&lt;BR /&gt;    &lt;SPAN&gt;ssl_certificate_key &lt;/SPAN&gt;/etc/letsencrypt/live/nifiapp.myhost.dev/privkey.pem;&lt;BR /&gt;}&lt;/PRE&gt;&lt;/DIV&gt;&lt;P&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 14 Oct 2024 14:49:13 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/NIFI-Authentication-Proxy-Server-not-trusted/m-p/395123#M248869</guid>
      <dc:creator>afidos</dc:creator>
      <dc:date>2024-10-14T14:49:13Z</dc:date>
    </item>
    <item>
      <title>Re: [NIFI] Authentication Proxy Server not trusted</title>
      <link>https://community.cloudera.com/t5/Support-Questions/NIFI-Authentication-Proxy-Server-not-trusted/m-p/395192#M248880</link>
      <description>&lt;P&gt;&lt;a href="https://community.cloudera.com/t5/user/viewprofilepage/user-id/118392"&gt;@afidos&lt;/a&gt;,&amp;nbsp;Welcome to our community! To help you get the best possible answer, I have tagged in our NiFi experts&amp;nbsp;&lt;a href="https://community.cloudera.com/t5/user/viewprofilepage/user-id/80381"&gt;@SAMSAL&lt;/a&gt;&amp;nbsp;&lt;a href="https://community.cloudera.com/t5/user/viewprofilepage/user-id/35454"&gt;@MattWho&lt;/a&gt;&amp;nbsp;&amp;nbsp;who may be able to assist you further.&lt;BR /&gt;&lt;BR /&gt;Please feel free to provide any additional information or details about your query, and we hope that you will find a satisfactory solution to your question.&lt;/P&gt;</description>
      <pubDate>Tue, 15 Oct 2024 05:34:38 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/NIFI-Authentication-Proxy-Server-not-trusted/m-p/395192#M248880</guid>
      <dc:creator>VidyaSargur</dc:creator>
      <dc:date>2024-10-15T05:34:38Z</dc:date>
    </item>
    <item>
      <title>Re: [NIFI] Authentication Proxy Server not trusted</title>
      <link>https://community.cloudera.com/t5/Support-Questions/NIFI-Authentication-Proxy-Server-not-trusted/m-p/395245#M248901</link>
      <description>&lt;P&gt;I create my first user with this script&lt;/P&gt;&lt;DIV&gt;&lt;PRE&gt;&lt;SPAN&gt;#!/bin/bash&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;group&lt;/SPAN&gt;=&lt;SPAN&gt;'admins'&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;username&lt;/SPAN&gt;=&lt;SPAN&gt;'admin'&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;uidNumber&lt;/SPAN&gt;=&lt;SPAN&gt;1001&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;gidNumber&lt;/SPAN&gt;=&lt;SPAN&gt;1001&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;firstName&lt;/SPAN&gt;=&lt;SPAN&gt;'My First'&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;lastName&lt;/SPAN&gt;=&lt;SPAN&gt;"My Last"&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;password&lt;/SPAN&gt;=&lt;SPAN&gt;"password"&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;ldapadd &lt;/SPAN&gt;-x -D &lt;SPAN&gt;"cn=admin,dc=myhost,dc=dev" &lt;/SPAN&gt;-w &lt;SPAN&gt;$password &lt;/SPAN&gt;&amp;lt;&amp;lt;&lt;SPAN&gt;EOF&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;dn: ou=$group,dc=myhost,dc=dev&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;objectClass: organizationalUnit&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;ou: $group&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;EOF&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;cat &lt;/SPAN&gt;&amp;lt;&amp;lt;&lt;SPAN&gt;EOF&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;     dn: uid=$username,ou=$group,dc=myhost,dc=dev&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;     objectClass: inetOrgPerson&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;     objectClass: posixAccount&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;     uid: $username&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;     cn: $username&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;     sn: $lastName&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;     givenName: $firstName&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;     uidNumber: $uidNumber&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;     gidNumber: $gidNumber&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;     homeDirectory: /home/$username&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;     loginShell: /bin/bash&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;     userPassword: $(slappasswd -s $password)&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;EOF&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;# Ajouter l'utilisateur via ldapadd&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;ldapadd &lt;/SPAN&gt;-x -D &lt;SPAN&gt;"cn=admin,dc=myhost,dc=dev" &lt;/SPAN&gt;-w &lt;SPAN&gt;$password &lt;/SPAN&gt;&amp;lt;&amp;lt;&lt;SPAN&gt;EOF&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;dn: uid=$username,ou=$group,dc=myhost,dc=dev&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;objectClass: inetOrgPerson&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;objectClass: posixAccount&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;uid: $username&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;cn: $username&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;sn: $lastName&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;givenName: $firstName&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;uidNumber: $uidNumber&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;gidNumber: $gidNumber&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;homeDirectory: /home/$username&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;loginShell: /bin/bash&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;userPassword: $(slappasswd -s $password)&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;EOF&lt;BR /&gt;&lt;/SPAN&gt;&lt;/PRE&gt;&lt;/DIV&gt;&lt;DIV class="message-pane hidden"&gt;&lt;DIV class="message-pane-message-box"&gt;&lt;DIV class="message-pane-content"&gt;Authentication Proxy Server not trusted&lt;BR /&gt;&lt;BR /&gt;&lt;/DIV&gt;&lt;DIV class="message-pane-content"&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV class="message-pane-content"&gt;&amp;nbsp;&lt;/DIV&gt;&lt;/DIV&gt;&lt;/DIV&gt;</description>
      <pubDate>Tue, 15 Oct 2024 15:25:44 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/NIFI-Authentication-Proxy-Server-not-trusted/m-p/395245#M248901</guid>
      <dc:creator>afidos</dc:creator>
      <dc:date>2024-10-15T15:25:44Z</dc:date>
    </item>
  </channel>
</rss>

