Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Unencrypted API connection - http not https #155

Open
Laura-Ngo opened this issue Feb 12, 2024 · 2 comments
Open

Unencrypted API connection - http not https #155

Laura-Ngo opened this issue Feb 12, 2024 · 2 comments
Assignees

Comments

@Laura-Ngo
Copy link

Laura-Ngo commented Feb 12, 2024

Would it be possible to use https://api.ontouml.org instead of http://api.ontouml.org?

I'm trying to get Visual Paradigm (enterprise edition) and this plugin installed at my workplace but have fallen foul of the security review as model data (which will include intellectual property) is sent unencrypted to the API, and can theoretically be intercepted. As such I can't install this plugin.

I'm sure other enterprise users will face the same restrictions, which is a shame as I've tested this conceptually and it meets my needs for ontology building.

@matheuslenke
Copy link
Contributor

Hey Laura 👋🏼

I'm helping maintaining OntoUML repos for now. Thanks for pointing the need of changing to https at the plugin. I created an issue at the ontouml-server repository, where we need to first change, and will work on that.

@matheuslenke matheuslenke self-assigned this May 14, 2024
@Laura-Ngo
Copy link
Author

Thank you, @matheuslenke - really appreciate this. It's really difficult for enterprises to take on and maintain anything open source, so I didn't have any success in getting the ontouml-server self-hosted in our enterprise environment. Using https would solve all my issues!

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants