WebBridge LR Integration Guide



Similar documents
DEPLOYMENT GUIDE Version 1.0. Deploying the BIG-IP LTM with Apache Tomcat and Apache HTTP Server

How to setup HTTP & HTTPS Load balancer for Mediator

Apache JMeter HTTP(S) Test Script Recorder

Host your websites. The process to host a single website is different from having multiple sites.

Deploying the BIG-IP System v10 with Oracle Application Server 10g R2

Spam Marshall SpamWall Step-by-Step Installation Guide for Exchange 5.5

REQUIREMENTS AND INSTALLATION OF THE NEFSIS DEDICATED SERVER

Setting Up Scan to SMB on TaskALFA series MFP s.

HTTPS HTTP. ProxySG Web Server. Client. ProxySG TechBrief Reverse Proxy with SSL. 1 Technical Brief

ViMP 3.0. SSL Configuration in Apache 2.2. Author: ViMP GmbH

Apache and Virtual Hosts Exercises

Installing an SSL certificate on the InfoVaultz Cloud Appliance

Websense Web Security Gateway: What to do when a Web site does not load as expected

DEPLOYMENT GUIDE Version 1.2. Deploying the BIG-IP System v10 with Microsoft IIS 7.0 and 7.5

User s guide. APACHE SSL Linux. Using non-qualified certificates with APACHE SSL Linux. version 1.3 UNIZETO TECHNOLOGIES S.A.

Technical specification

How to Configure Active Directory based User Authentication

How to: Install an SSL certificate

DEPLOYMENT GUIDE Version 1.1. Deploying F5 with Oracle Application Server 10g

1. Open the preferences screen by opening the Mail menu and selecting Preferences...

NetSpective Global Proxy Configuration Guide

Secure Web Appliance. Reverse Proxy

How To Set Up A Virtual Host In Apa On A Linux Box On A Windows Xp Or Ipa On An Ubuntu Box On An Ipa (Windows) Or Ipo (Windows Xp) On A Ubora Box On Your Ubora

Elluminate Live! Access Guide. Page 1 of 7

tpischeduler tpischeduler TotalFBO tpischeduler TotalFBO Initial Installation tpischeduler TotalFBO tpischeduler

Docufide Client Installation Guide for Windows

4 - TexShare and HARLiC CARDS ( Online Application Form) 5 REMOTE ACCESS TO DATABASES

DEPLOYMENT OF I M INTOUCH (IIT) IN TYPICAL NETWORK ENVIRONMENTS. Single Computer running I m InTouch with a DSL or Cable Modem Internet Connection

The PostBase Connectivity Wizard

SecuritySpy Setting Up SecuritySpy Over SSL

Deploying F5 to Replace Microsoft TMG or ISA Server

EQUELLA. Clustering Configuration Guide. Version 6.0

NEFSIS DEDICATED SERVER

How to Secure a Groove Manager Web Site

Lab Configuring Access Policies and DMZ Settings

How to Open HTTP or HTTPS traffic to a webserver behind the NetVanta 2000 Series unit (Enhanced OS)

Connecting your Virtual Machine to the Internet. BT Cloud Compute. The power to build your own cloud solutions to serve your specific business needs

PineApp Surf-SeCure Quick

This presentation covers virtual application shared services supplied with IBM Workload Deployer version 3.1.

Getting Started with Clearlogin A Guide for Administrators V1.01

Configuration Manual

Quick Note 026. Using the firewall of a Digi TransPort to redirect HTTP Traffic to a proxy server. Digi International Technical Support December 2011

How to configure Client side certificate authentication for authorization-only access / Active Sync URL s

Administrator's Guide

Windows Live Mail Setup Guide

NMS300 Network Management System

1. Open the preferences screen by opening the Mail menu and selecting Preferences...

OpenVPN over SSH tunneling

DEPLOYMENT GUIDE Version 1.2. Deploying the BIG-IP system v10 with Microsoft Exchange Outlook Web Access 2007

VMware Software Manager - Download Service User's Guide

Click Studios. Passwordstate. Installation Instructions

Instructions for Activating and Configuring the SAFARI Montage Managed Home Access Software Module

F-Secure Messaging Security Gateway. Deployment Guide

DEPLOYMENT GUIDE Version 2.1. Deploying F5 with Microsoft SharePoint 2010

Configuring Apache HTTP Server as a Reverse Proxy Server for SAS 9.3 Web Applications Deployed on Oracle WebLogic Server

Android App for SAP Business One. Z3moB1le App Version 1.00 Pagina 1 di 12.

Overview. Author: Seth Scardefield Updated 11/11/2013

Configuration Information

BusinessObjects Enterprise XI Release 2

Facility Connect API: Setup & Troubleshooting. Version 1

Creating Connection with Hive

Using a custom certificate for SSL inspection

BioOne Librarian Tip Sheet Series. Using the Administration Panel

Customer Tips. Configuring Color Access on the WorkCentre 7328/7335/7345 using Windows Active Directory. for the user. Overview

SSL VPN Service. Once you have installed the AnyConnect Secure Mobility Client, this document is available by clicking on the Help icon on the client.

System Area Manager. Remote Management

Setting up Hyper-V for 2X VirtualDesktopServer Manual

Real Vision Software, Inc.

1. Open the Account Settings window by clicking on Account Settings from the Entourage menu.

SOA Software API Gateway Appliance 7.1.x Administration Guide

PRODUCT VERSION: LYNC SERVER 2010, LYNC SERVER 2013, WINDOWS SERVER 2008

Using Public IP Settings

Biznet GIO Cloud Connecting VM via Windows Remote Desktop

Name Services (DNS): This is Quick rule will enable the Domain Name Services on the firewall.

User Guide Zend Server Community 4.0.3

HP ALM. Software Version: External Authentication Configuration Guide

1Intro. Apache is an open source HTTP web server for Unix, Apache

Central Administration QuickStart Guide

WHITE PAPER Citrix Secure Gateway Startup Guide

Plesk 11 Manual. Fasthosts Customer Support

Dramatically simplifying voice and data networking HOW-TO GUIDE. Bundle Quick Start Guide

SITEMINDER SSO FOR EMC DOCUMENTUM REST

Netsweeper Web Filtering Guide Date: March Netsweeper Web Filtering

CO Web Server Administration and Security. By: Szymon Machajewski

LifeSize Transit Deployment Guide June 2011

LOCKSS on LINUX. Installation Manual and the OpenBSD Transition 02/17/2011

Fasthosts Internet Parallels Plesk 10 Manual

Setting up Hyper-V for 2X VirtualDesktopServer Manual

White Paper DEPLOYING WDK APPLICATIONS ON WEBLOGIC AND APACHE WEBSERVER CLUSTER CONFIGURED FOR HIGH AVAILABILITY AND LOAD BALANCE

CONNECTING TO DEPARTMENT OF COMPUTER SCIENCE SERVERS BOTH FROM ON AND OFF CAMPUS USING TUNNELING, PuTTY, AND VNC Client Utilities

Test Case 3 Active Directory Integration

Deploying the Barracuda Load Balancer with Office Communications Server 2007 R2. Office Communications Server Overview.

Forward proxy server vs reverse proxy server

Net Inspector 2015 GETTING STARTED GUIDE. MG-SOFT Corporation. Document published on October 16, (Document Version: 10.6)

Collax Web Security. Howto. This howto describes the setup of a Web proxy server as Web content filter.

Configuring Global Protect SSL VPN with a user-defined port

Requirements Collax Security Gateway Collax Business Server or Collax Platform Server including Collax SSL VPN module

v6.1 Websense Enterprise Reporting Administrator s Guide

BlackBerry Enterprise Service 10. Version: Configuration Guide

Lab - Observing DNS Resolution

Transcription:

Lots of Copies Keep Stuff Safe (LOCKSS) and Innovative Interfaces have made content preserved on LOCKSS Boxes available through OPACs that use the WebBridge LR link resolver. This guide describes the steps required to customize your LOCKSS Box and WebBridge LR instance to integrate seamlessly the content preserved on your LOCKSS Box into the user's online journal searches. Customizing Your LOCKSS Box A LOCKSS Box has an optional Content Server that makes preserved content available from a web browser through OpenURL queries. The SFX LOCKSS target uses OpenURL queries to request content from your local LOCKSS Box. The Content Server is not enabled by default. To make content in your LOCKSS Box available through SFX, use its configuration screens to enable and configure this feature. Enabling the Content Server From the main administration screen of your LOCKSS Box, select Content Access Options. Then select Content Server Options. This will take you to a screen for managing the LOCKSS Box's content servers and proxies. Select Enable content server on port and enter the port number to use for serving preserved content from a web browser. Port numbers below 1024 require the application to run as root and are therefore not available. It is recommended that you choose a port that is close to 8081, the default port used by the administration GUI of of your LOCKSS Box. Port 8082 is used in this example. Finally, select Update Content Servers to finalize this change. The operating system on your LOCKSS Box host may require opening non-standard ports to enable outside access. Consult with the person who administers the host where your LOCKSS Box is running to determine which standard ports are available. To test your Content Server configuration, use your browser to contact the Content Server of your LOCKSS Box which you set up above. By default, the Content Server displays a list of Archival Units (AUs) that are configured. In this example, if your LOCKSS Box administration GUI is accessed at http://lockss.xyz.edu:8081/, your Content Server is at http://lockss.xyz.edu:8082/servecontent. 1

You must ensure that the packet filters (i.e. firewall) configured on your LOCKSS Box allow access to the port you chose for your Content Server. The default packet filter is 8082. Enabling the port for access outside of the network requires administrative privileges, and depends on the operating system running your LOCKSS Box. Ask the systems administrator to do this. Configuring Content Server Access Control Now that you have enabled the Content Server, you'll need to give your user community access to preserved content. To do this, return to the main administration page of your LOCKSS Box and select Content Access Control. You will see two lists side-by-side. The Allow Access list specifies which IP addresses or ranges can access preserved content through the Content Server. The Deny Access list allows you to deny access to specific IP addresses or ranges, typically ones within a wider range specified by the Allow Access list. The default Allow Access list includes two address ranges: the initial network address that was specified when your LOCKSS Box was installed, and those by the LOCKSS organization to provide technical support. 2

Consult your contracts with publishers whose content is preserved on your LOCKSS Box to determine what IP address ranges have access to them. You should configure the Allow Access list to include the same IP address ranges that you supplied to publishers. Note: The simple configuration that is supported by your LOCKSS Box assumes that all publishers support the same IP address ranges. For example, XYZZY University provides the following IP address ranges to its e-pub vendors: IP Address CIDR Prefix Netmask Use 10.12.0.0 /16 255.255.0.0 Dorms 10.64.0.0 /16 255.255.0.0 Main Campus 10.65.0.0 /16 255.255.0.0 Medical Center Your institution's contracts with publishers may exclude certain campus functions. Only those address ranges that are allowed should be included in the Allow Access list. Here is what XYZZY University would add to its list: 10.12.0.0/16 10.64.0.0/16 10.65.0.0/16 Once you are done configuring the access control for your LOCKSS Box, select Update to finalize your configuration. Test your configuration by accessing the Content Server from various allowed and denied hosts within your institution. Using Apache as a Front End to your LOCKSS Content Server The configuration just described gives end users direct access to your LOCKSS Box's Content Server through the port you specified. Some IT organizations limit the use of nonstandard ports for web services because it requires opening additional ports in their institution's firewalls. These organizations may also prefer to administer access using the same web server access controls that they use throughout their institution. If this does not apply to your institution, you can skip this section. One way to accomplish this is to direct users to a web server such as Apache that runs on the standard port 80, and configure the Apache server to act as a proxy. It relays requests to the LOCKSS Box Content Server and returns responses from the LOCKSS Box to the user. This allows the presence of the LOCKSS Box to be hidden, and enables the IT staff to use existing access control configurations on the Apache server to limit access to preserved content, including user authentication using HTTPS and SSL certificates. 3

Load balancing could also be done across several LOCKSS Boxes in a similar way. The Apache instance can be one that is shared by many applications within your institution, or it can be a custom instance that is installed on the same host as the LOCKSS Box. The simplest configuration uses the standard 'mod_proxy' Apache module to forward content server traffic to and from the LOCKSS Box. Here is a typical 'mod_proxy' configuration for an Apache server virtual host at port 80 on the same machine as the LOCKSS Box: <VirtualHost *:80> ServerAdmin lockss-admin@xyzzy.edu DocumentRoot /var/www/html ServerName lockss.xyzzy.edu <IfModule mod_proxy.c> ProxyRequests Off ProxyVia On <Proxy lockss.xyzzy.edu/*> AddDefaultCharset off Order deny,allow Allow from all </ Proxy> ProxyPassMatch ^/((ServeContent images).*)$ http:// localhost:8082/$1 </IfModule> ErrorLog logs/error_log CustomLog logs/access_log common </VirtualHost> If you use this technique, you should omit adding IP addresses to the Content Access Control of your LOCKSS Boxes because it will only be accessed locally by the Apache server. If the Apache server is on a different subnet, you should add only the IP address of that host to the Content Access Control of your LOCKSS Box. You should also add the following special configuration parameter to Expert Config screen of your LOCKSS Box. org.lockss.servecontent.absolutelinks=false This causes Content Server to rewrite links in pages it serves relative to the LOCKSS Box address, which simplifies the 'mod_proxy' configuration. 4

Customizing Your WebBridge LR Interface Once you have configured your LOCKSS Box, the next step is to make its contents available through WebBridge LR. Getting Coverage Information from the LOCKSS Box To find out what journal content has been preserved on a LOCKSS Box, navigate to the Administration page (e.g. http://lockss.xyz.edu/) and click the Title List link in the top right corner. The Title List will be generated as a spreadsheet and can show various types of content. Be sure to click the Collected button in the Show field, the Title Ranges in the Format field, and the TSV button in the Output field. Then click the List Titles button at the bottom of the page. This will generate a Tab Separated Value file which can be opened with any spreadsheet software (i.e. Excel) and will list the Journal Titles preserved on the LOCKSS Box as well as the year ranges of each Title. You will need to prepare the file for the coverage data load process to your Innovative System in the same manner you would prepare any other data file for loading. URL Syntax for Linking to Your LOCKSS Box The LOCKSS Box will accept any URL formatted to the OpenURL standard. The base URL is: http://<yourlockssbox>/servecontent? And a typical link URL for WebBridgeLR might look like this: http://<yourlockssbox>/servecontent? issn=#@issn#&volume=#@volume#&issue=#@issue#&spage=#@spage# Note: The LOCKSS Boxes support both hyphenated and non-hyphenated ISSN formats, support both OpenURL 0.1 and 1.0 syntax, and follow ISO formatting for dates with month and day being optional. Successfully Linking to LOCKSS Content Since the LOCKSS Boxes use OpenURL format, any metadata can be used to link to content: ISSN, Volume, Issue, and Start Page should be the bare minimum metadata necessary to reach a specific article. Note: Other metadata which may assist in reaching a specific article might include Article Title and Article Number, however these metadata are not as widely supported as the Start Page. If any metadata is requested that isn't available, the LOCKSS Box will take the user to a top-level page which lists all of the preserved volumes for a particular Journal Title so that they can navigate by hand from there. 5