> For the complete documentation index, see [llms.txt](https://docs.editran.onesait.com/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.editran.onesait.com/documentacion-editran/connect-v3.1-en/administradores/faq-administracion.md).

# Frequently Asked Questions about administration

## Web Service

### Do I have to expose the web service to the Internet?

No. The Editran Connect website is an application for **internal management** designed to be used only by internal users of the organization (administrators, operators, signing managers, etc.).

Therefore, **it is neither necessary nor advisable to expose the web service publicly on the Internet**.

It is recommended that access to the web server be limited to:

* Authorized users within the corporate network.
* Connections via VPN or virtual private networks if remote access is needed.
* Segmentation through firewall or network/local access rules (for example, only accessible from certain internal IPs).

> ⚠️ *Important:* Exposing the service on the Internet without additional security measures (such as federated authentication, application firewall, network segmentation, etc.) can pose a serious risk to the organization's security.

### Can I replace the HTTPS certificates used?

Yes, and it is recommended. The Editran Connect web server uses generic certificates and they are defined directly in its configuration file (`nginx.conf`). You can replace the certificates with other custom ones, such as those issued by a certificate authority (CA) or generated by your infrastructure.

Keep in mind that **not all certificates require the same configuration**, so it may be necessary to adapt the SSL directives (`ssl_certificate`, `ssl_certificate_key`, `ssl_ciphers`, `ssl_protocols`, etc.) depending on the type of certificate (RSA, ECDSA, etc.).

For more information about this process, see the page: [Replacing SSL certificates in nginx](https://docs.editran.onesait.com/documentacion-editran/connect-v3.1-en/administradores/pages/baf325fec2ae3a52474eeed9c52fb8145ecf8123#sustitución-de-certificados-ssl-en-nginx)

> ⚠️ *Important:* Editran does not manage or validate these web certificates. The security configuration must be reviewed by the system administrator following the best practices described by nginx or the corresponding CA.


---

# Agent Instructions
This documentation is published with GitBook. GitBook is the documentation platform designed so that both humans and AI agents can read, navigate, and reason over technical content effectively. Learn more at gitbook.com.

## Querying This Documentation
If you need additional information that is not directly available in this page, you can query the documentation dynamically by asking a question.

Perform an HTTP GET request on the current page URL with the `ask` query parameter, and the optional `goal` query parameter:

```
GET https://docs.editran.onesait.com/documentacion-editran/connect-v3.1-en/administradores/faq-administracion.md?ask=<question>&goal=<endgoal>
```

`ask` is the immediate question: it should be specific, self-contained, and written in natural language.
`goal` is optional and describes the broader end goal you are ultimately trying to accomplish on behalf of the user. GitBook uses it to tailor the answer towards what is most useful for that goal.

The response will contain a direct answer to the question and relevant excerpts and sources from the documentation.

Use this mechanism when the answer is not explicitly present in the current page, you need clarification or additional context, or you want to retrieve related documentation sections.
