E-PIA/SEC: How to log client ip address and user authentication result for external PIA sites
(Doc ID 2508148.1)
Last updated on JANUARY 04, 2022
Applies to:
PeopleSoft Enterprise PT PeopleTools - Version 8.4 and laterInformation in this document applies to any platform.
Goal
Customer Security wants to log the ip address and as well a good or bad authentication result for lets say users accessing PIA from Internet.
For such goal a customization can be used to implement a custom table log for external sites.
Please note this is a “working in progress” document while this exercise doesn’t cover all implementations, and also was not tested in all possible customer scenarios. However it can give a new flavor to implementer dealing with a similar task. Please consider as well engaging your security team when dealing with such custom security code modifications. Also please consider the IP of client would be the one that the network is "aware of", and this might not be relevant for all use cases: e.g. when client is behind a firewall/proxy, and as well in the IP spoofing scenarios.
Solution
To view full details, sign in with your My Oracle Support account. |
|
Don't have a My Oracle Support account? Click to get started! |
In this Document
Goal |
Solution |