Need to Validate The Returnurl Supplied to /idp/initiatesso So Only Valid Domains Are Available
Last updated on DECEMBER 12, 2017
Applies to:Oracle Access Manager - Version 22.214.171.124.0 and later
Information in this document applies to any platform.
We want to make sure that the returnurl value only redirects the user to a valid domain. This functionality is available in
Oracle Identity Federation (OIF) 126.96.36.199 under setConfigProperty.
Reference is http://docs.oracle.com/cd/E23549_01/oim.1111/e13400/addlcfg.htm#CHDDEFFB
But our environment is 188.8.131.52.0 and I cannot find reference to equivalent functionality.
Sign In with your My Oracle Support account
Don't have a My Oracle Support account? Click to get started
My Oracle Support provides customers with access to over a
Million Knowledge Articles and hundreds of Community platforms