Virtual proxies

One or more virtual proxies run on each Qlik Sense Proxy Service (QPS), making it possible to support several sets of site authentication, session handling, and load balancing strategies on a single proxy node.

The Virtual proxies overview lists all the available virtual proxies. The following table presents the available fields and buttons. By default, only some of the fields are displayed. You can use the column selector (') to add fields.

Tip: You can adjust the column width by dragging the header border.
Description The description of the virtual proxy.
Prefix The path name in the proxy’s URI that defines each additional path.
Session cookie header name The name of the HTTP header used for the session cookie.
Is default virtual proxy

Status values: Yes or No.

Authentication method
  • Ticket: a ticket is used for authentication.
  • Header authentication static user directory: allows static header authentication, where the user directory is set in the QMC.
  • Header authentication dynamic user directory: allows dynamic header authentication, where the user directory is fetched from the header.
  • SAML: SAML2 is used for authentication.
Linked to proxy service

Status values: Yes or No.

Tags The QMC tags that are connected to the virtual proxy.
Header authentication static user directory

The name of the user directory where additional information can be fetched for header authenticated users.

Header authentication dynamic user directory

The pattern used for identification of the user directory where additional information can be fetched for header authenticated users.

Anonymous access mode

Three possible values:

  • No anonymous user
  • Allow anonymous user

  • Always anonymous user
Windows authentication pattern

The chosen authentication pattern for logging in. If the User-Agent header contains the Windows authentication pattern string, Windows authentication is used. If there is no matching string, form authentication is used.

Session cookie domain

By default the session cookie is valid only for the machine that the proxy is installed on. This (optional) property allows you to increase its validity to a larger domain. Example:

Additional response headers

Headers added to all HTTP responses back to the client. Example:

Header1: value1

Header2: value2

Session inactivity timeout (minutes)

The maximum period of time with inactivity before timeout. After this, the session is invalid and the user is logged out from the system.

Extended security environment

Status values: Yes or No.

Yes: The following information about the client environment is sent in the security header: OS, device, browser, and IP.

No: The user can run the same engine session simultaneously on multiple devices.

SAML Metadata IdP

The metadata from the IdP, used to configure the service provider. Must exist for SAML authentication to work.

SAML entity ID

ID to identify the service provider. The ID must be unique.

SAML attribute for user ID The SAML attribute name for the attribute describing the user ID.
SAML attribute for user directory

The SAML attribute name for the attribute describing the user directory.

SAML attribute signing algorithm

The hash algorithm used for signing SAML requests. In order to use SHA-256, a third-party certificate is required, where the associated private key has the provider "Microsoft Enhanced RSA and AES Cryptographic Provider".

ID The ID of the virtual proxy.
Created The date and time when the virtual proxy was created.
Last modified The date and time when the virtual proxy was last modified.
Modified by By whom the virtual proxy was modified.
<Custom properties> Custom properties, if any, are listed here.

Sort the list ascending or descending. Some columns do not support sorting.


Type a string to filter on, or, when available, select a predefined value. All rows that match your filter criteria are displayed. You can filter on multiple columns simultaneously to narrow your search. If a filter is applied to a column, . is displayed.

To remove your criteria, click Actions in the table header bar and select Clear filters and search.

You can combine filtering with searching.

See: Searching and filtering in the QMC


Options for clearing filter and search, selecting and deselecting all rows, and toggling wrapping.

Note: The option Select all rows is applied to the rows that are currently displayed. Any rows that have been filtered out before selecting all rows are disregarded, even if they were selected. The option Deselect all rows is applied to all rows, including those that were filtered out.
' Column selector: Select which columns to display in the overview. Click B to reset to the default columns.

Search – both basic and more advanced searches.

See: Searching and filtering in the QMC


Refresh the page.

Edit Edit the selected virtual proxies.
Delete Delete the selected virtual proxies.
Download SP metadata Download user configuration data from the identity provider. The information is available as IdP metadata that users can download and provide the service provider (Qlik Sense) with. The metadata is uploaded from the QMC and stored in the database (VirtualProxyConfig table) as a text field (samlMetadataIdP).
P Create new Create a new virtual proxy.
Show more The overview shows a set number of items, by default. To show more items, scroll to the end of the list and click Show more. Searching, sorting, and filtering of items is always done on the full database list of items, not only the items that are displayed.
Tip: Double-click an item in the overview to open the resource's edit page. For multiple selections, hold down Ctrl while clicking the items, or drag over the items.