Guide to Locking Down Oracle Access Manager (OAM)
(Doc ID 2172671.1)
Last updated on JUNE 12, 2024
Applies to:
Oracle Access Manager - Version 11.1.2.3.0 to 11.1.2.3.210611 [Release 11g]Information in this document applies to any platform.
Oracle is not responsible for instructions/information from 3rd party sites that may be contained in this KM note.
Goal
OAM Lockdown is a specific type of hardening, which refers to securing the Authentication, Authorization and Audit Services that comprise Web SSO. In contrast, infrastructure hardening is more general and involves doing a security survey to determine the threat model that may impact your site, and identifying all aspects of your environment that could be insecure. For an in-depth discussion of infrastructure hardening, please see:
Solution
To view full details, sign in with your My Oracle Support account. |
|
Don't have a My Oracle Support account? Click to get started! |
In this Document
Goal |
Solution |
Securing the OAM Server Host |
Securing the OAM Protected Applications |
Control connections to the OAM Server |