Security best practices for publishing Tessitura on the go

We are about to publish Tessitura on The Go outside of our network.  We have a dedicated instance of the REST application with TOG for this.  Of course we want to keep the REST resources private for security reasons, while publishing TOG to the outside.  

Can anyone point me to any documentation or discussion around locking down REST with an open TOG app? 

We can think of several options, but they all seem too fussy, we're looking for the simple solution.  

Thanks,
Mark

Parents Reply
  • Hi Mark - I'm going to assume you are placing a TOTG server in a DMZ for external access. On that server, you would just install the Tessitura Web (On The Go) portion of TIM. Installing Tessitura Service (REST) is not a prerequisite and is not required for installing Tessitura Web.

    Once you do that, you can pinhole from that server to REST services you host on the inside via your firewall or something to that effect.

    I hope that helps... 

    Thanks,
    David

Children