<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>question Securing the deployed application in Support Questions</title>
    <link>https://community.cloudera.com/t5/Support-Questions/Securing-the-deployed-application/m-p/410553#M252881</link>
    <description>&lt;P&gt;Dear All,&lt;/P&gt;&lt;P&gt;I hope you are doing well.&lt;/P&gt;&lt;P&gt;I would like your help in understand how I can secure the deployed application.&lt;/P&gt;&lt;UL class="ul"&gt;&lt;LI&gt;&lt;STRONG&gt;Public Applications&lt;/STRONG&gt;&lt;P class="p"&gt;By default, authentication for applications is enforced on all ports and users cannot create public applications. If desired, the Admin user can allow users to create public applications that can be accessed by unauthenticated users.&lt;/P&gt;&lt;DIV class="p"&gt;To allow users to create public applications on an&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="ph"&gt;Cloudera AI Workbench&lt;/SPAN&gt;:&lt;OL class="ol"&gt;&lt;LI&gt;As an Admin user, turn on the feature flag in&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="ph menucascade"&gt;&lt;SPAN class="ph uicontrol"&gt;Admin&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&amp;gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="ph uicontrol"&gt;Security&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;by selecting&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="ph uicontrol"&gt;Allow applications to be configured with unauthenticated access&lt;/SPAN&gt;.&lt;/LI&gt;&lt;LI&gt;When creating a new application, select&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="ph uicontrol"&gt;Enable Unauthenticated Access&lt;/SPAN&gt;.&lt;/LI&gt;&lt;LI&gt;For an existing application, in&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="ph uicontrol"&gt;Settings&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;select&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="ph uicontrol"&gt;Enable Unauthenticated Access&lt;/SPAN&gt;.&lt;/LI&gt;&lt;/OL&gt;&lt;/DIV&gt;&lt;P class="p"&gt;To prevent all users from creating public applications, go to&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="ph menucascade"&gt;&lt;SPAN class="ph uicontrol"&gt;Admin&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&amp;gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="ph uicontrol"&gt;Security&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;and deselect&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="ph uicontrol"&gt;Allow applications to be configured with unauthenticated access&lt;/SPAN&gt;. All existing public applications will immediately stop being publicly accessible.&lt;/P&gt;&lt;/LI&gt;&lt;LI&gt;&lt;STRONG&gt;Transparent Authentication&lt;/STRONG&gt;&lt;P class="p"&gt;&lt;SPAN class="ph"&gt;Cloudera AI&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;can pass user authentication information to an application, if the application expects an authenticated request. The&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;REMOTE-USER&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;and&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;REMOTE-USER-PERM&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;HTTP headers will be injected to the application hosted by the user.&lt;/P&gt;&lt;DIV class="p"&gt;For example:&lt;PRE&gt;Remote-user=&amp;lt;username&amp;gt; 
Remote-user-perm=&amp;lt;RO/RW/Unauthorized&amp;gt;&lt;/PRE&gt;&lt;P&gt;How can I implement and integrate the&amp;nbsp;&lt;STRONG&gt;Transparent Authentication in the deployed application script?&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Best wishes,&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Salim&amp;nbsp;&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;/DIV&gt;&lt;/LI&gt;&lt;/UL&gt;</description>
    <pubDate>Tue, 21 Apr 2026 06:18:43 GMT</pubDate>
    <dc:creator>SalimAlhajri</dc:creator>
    <dc:date>2026-04-21T06:18:43Z</dc:date>
    <item>
      <title>Securing the deployed application</title>
      <link>https://community.cloudera.com/t5/Support-Questions/Securing-the-deployed-application/m-p/410553#M252881</link>
      <description>&lt;P&gt;Dear All,&lt;/P&gt;&lt;P&gt;I hope you are doing well.&lt;/P&gt;&lt;P&gt;I would like your help in understand how I can secure the deployed application.&lt;/P&gt;&lt;UL class="ul"&gt;&lt;LI&gt;&lt;STRONG&gt;Public Applications&lt;/STRONG&gt;&lt;P class="p"&gt;By default, authentication for applications is enforced on all ports and users cannot create public applications. If desired, the Admin user can allow users to create public applications that can be accessed by unauthenticated users.&lt;/P&gt;&lt;DIV class="p"&gt;To allow users to create public applications on an&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="ph"&gt;Cloudera AI Workbench&lt;/SPAN&gt;:&lt;OL class="ol"&gt;&lt;LI&gt;As an Admin user, turn on the feature flag in&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="ph menucascade"&gt;&lt;SPAN class="ph uicontrol"&gt;Admin&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&amp;gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="ph uicontrol"&gt;Security&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;by selecting&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="ph uicontrol"&gt;Allow applications to be configured with unauthenticated access&lt;/SPAN&gt;.&lt;/LI&gt;&lt;LI&gt;When creating a new application, select&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="ph uicontrol"&gt;Enable Unauthenticated Access&lt;/SPAN&gt;.&lt;/LI&gt;&lt;LI&gt;For an existing application, in&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="ph uicontrol"&gt;Settings&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;select&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="ph uicontrol"&gt;Enable Unauthenticated Access&lt;/SPAN&gt;.&lt;/LI&gt;&lt;/OL&gt;&lt;/DIV&gt;&lt;P class="p"&gt;To prevent all users from creating public applications, go to&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="ph menucascade"&gt;&lt;SPAN class="ph uicontrol"&gt;Admin&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&amp;gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="ph uicontrol"&gt;Security&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;and deselect&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="ph uicontrol"&gt;Allow applications to be configured with unauthenticated access&lt;/SPAN&gt;. All existing public applications will immediately stop being publicly accessible.&lt;/P&gt;&lt;/LI&gt;&lt;LI&gt;&lt;STRONG&gt;Transparent Authentication&lt;/STRONG&gt;&lt;P class="p"&gt;&lt;SPAN class="ph"&gt;Cloudera AI&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;can pass user authentication information to an application, if the application expects an authenticated request. The&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;REMOTE-USER&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;and&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;REMOTE-USER-PERM&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;HTTP headers will be injected to the application hosted by the user.&lt;/P&gt;&lt;DIV class="p"&gt;For example:&lt;PRE&gt;Remote-user=&amp;lt;username&amp;gt; 
Remote-user-perm=&amp;lt;RO/RW/Unauthorized&amp;gt;&lt;/PRE&gt;&lt;P&gt;How can I implement and integrate the&amp;nbsp;&lt;STRONG&gt;Transparent Authentication in the deployed application script?&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Best wishes,&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Salim&amp;nbsp;&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;/DIV&gt;&lt;/LI&gt;&lt;/UL&gt;</description>
      <pubDate>Tue, 21 Apr 2026 06:18:43 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/Securing-the-deployed-application/m-p/410553#M252881</guid>
      <dc:creator>SalimAlhajri</dc:creator>
      <dc:date>2026-04-21T06:18:43Z</dc:date>
    </item>
    <item>
      <title>Re: Securing the deployed application</title>
      <link>https://community.cloudera.com/t5/Support-Questions/Securing-the-deployed-application/m-p/413505#M254098</link>
      <description>&lt;P&gt;Hello&amp;nbsp;&lt;a href="https://community.cloudera.com/t5/user/viewprofilepage/user-id/127301"&gt;@SalimAlhajri&lt;/a&gt;,&amp;nbsp;&lt;/P&gt;&lt;P&gt;The Transparent Authentication is built-in Cloudera AI.&amp;nbsp;&lt;BR /&gt;When the application is started, it will inject the&amp;nbsp;REMOTE-USER and REMOTE-USER-PERM HTTP headers automatically, this is why it is transparent, no manual intervention is needed.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://docs.cloudera.com/machine-learning/1.5.5/applications/topics/ml-securing-applications.html" target="_blank"&gt;https://docs.cloudera.com/machine-learning/1.5.5/applications/topics/ml-securing-applications.html&lt;/A&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 04 Feb 2026 17:02:39 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/Securing-the-deployed-application/m-p/413505#M254098</guid>
      <dc:creator>vafs</dc:creator>
      <dc:date>2026-02-04T17:02:39Z</dc:date>
    </item>
  </channel>
</rss>

