Siebel Security Guide > About Security for Siebel Business Applications >

About Siebel Open UI


You can optionally deploy Siebel Business Applications using the Siebel Open UI. Siebel Open UI is the most secure Siebel CRM client available and is therefore recommended if your Siebel implementation has high-security requirements.

From a security perspective, there are a number of important differences in the way in which Siebel Open UI functions compared with the Siebel high-interactivity and standard-interactivity user interface modes:

  • Siebel Open UI uses an open architecture that allows you to run Siebel Business Applications on any Web browser that is compliant with the World Wide Web Consortium (W3C) standards. Siebel Open UI also supports a number of operating systems, including Windows, Mac OS, or Linux.

    In contrast, Siebel Business Applications that use high-interactivity and standard-interactivity user interface modes run only in Internet Explorer.

  • The Siebel Open UI client is compatible with any security features supported by the Web browser on which it runs.
  • Siebel Open UI uses only three technologies to render the client code: HTML, CSS, and JavaScript. Because of the small set of underlying technologies that are used to render the client and the absence of third-party plug-ins such as ActiveX and Java, Siebel Open UI provides the smallest possible attack surface.
  • Siebel Open UI clients enforce session security by requiring that session IDs can only be passed in session cookies. For information, see Session Cookie.

For additional information about Siebel Open UI, see Deploying Siebel Open UI and Configuring Siebel Open UI.

NOTE:  The procedures in this guide assume that you do not use left-hand navigation. However, you can set up left-hand navigation if you choose. For information about implementing left-hand navigation, see Siebel Fundamentals for Siebel Open UI.

Siebel Security Guide Copyright © 2014, Oracle and/or its affiliates. All rights reserved. Legal Notices.