https UAM server - non https chilli

Gunther Mayer gunther.mayer at
Wed Jun 18 15:46:58 UTC 2008

lc wrote:
> Hi,
> I noticed that especially the web-browser of Nokia products keeps 
> complaining about switching from a secured to a non-secured website. 
> This browser behaviour complicates the login for a user since he has 
> to click through the warning message everytime he logs on.
> How do you deal with this? Using a non-https connection to the UAM 
> server is not a real alternative, is it? Are there any known measures 
> to avoid those warning messages?
Thought about how to deal with this problem many times myself. Only 
solution I can think of at this stage is to get a professionally signed 
SSL certificate for your uamip (e.g. and run an ssl 
tunnel in front of your chilli process (e.g. matrixtunnel). This 
requires firmware changes though (if you use coova ap or any other 
embedded platform).


