How to Prevent XML Entity Expansion Attacks (XML Bomb) in OSB

(Doc ID 1557948.1)

Last updated on OCTOBER 05, 2017

Applies to:

Oracle Service Bus - Version 11.1.1.4.0 to 11.1.1.6.0 [Release 11g]
Information in this document applies to any platform.

Goal

Is there any way, using only OSB to prevent Entity Expansions Attacks from external sources in OSB?
 

Solution

Sign In with your My Oracle Support account

Don't have a My Oracle Support account? Click to get started

My Oracle Support provides customers with access to over a
Million Knowledge Articles and hundreds of Community platforms