My Oracle Support Banner

Guide to Locking Down Oracle Access Manager (OAM) (Doc ID 2172671.1)

Last updated on MAY 05, 2023

Applies to:

Oracle Access Manager - Version 11.1.2.3.0 and later
Information in this document applies to any platform.
Oracle is not responsible for instructions/information from 3rd party sites that may be contained in this KM note.

Goal

OAM Lockdown is a specific type of hardening, which refers to securing the Authentication, Authorization and Audit Services that comprise Web SSO. In contrast, infrastructure hardening is more general and involves doing a security survey to determine the threat model that may impact your site, and identifying all aspects of your environment that could be insecure. For an in-depth discussion of infrastructure hardening, please see:

Oracle® Fusion Middleware Security Overview 11g Release 1 (11.1.1)E12889-02, Chapter 4 Infrastructure Hardening

 

Solution

To view full details, sign in with your My Oracle Support account.

Don't have a My Oracle Support account? Click to get started!


In this Document
Goal
Solution
 Securing the OAM Server Host
 Securing the OAM Protected Applications
 Control connections to the OAM Server

My Oracle Support provides customers with access to over a million knowledge articles and a vibrant support community of peers and Oracle experts.