I am operating a easy NodeJS REST API and a ReactJS frontend software and I need them to speak in a safe means over TSL. I’ve efficiently issued a certificates (DNS problem) from Let’s Encrypt and I am presently utilizing it for my IIS web site the place the React software is operating.
I now need to use this certificates with a view to make communication between my frontend and backend (extra) safe.
Each the purchasers the place the frontend might be accessed from and the server the place the backend is operating are in the identical LAN and never publicly accessible. The one factor I need to guarantee is that the information is by some means securely transferred from the purchasers to the server. (You should not be capable of see the password and username simply by urgent F12 in your browser, neither ought to a Man-in-the-Center give you the chance to take action)
I am just about a newbie in the case of community safety/securing communication between shopper and server.