7 Oracle Access Management Cluster Compliance Standards

These are the compliance rules for the Oracle Access Management Cluster compliance standards

7.1 Oracle Access Manager Configuration Compliance For Oracle Fusion Applications

The compliance rules for the Oracle Access Manager Configuration Compliance For Oracle Fusion Applications standard follow.

7.1.1 Webgate-Agent Communication Mode

Description: Webgate/Agent communication to Oracle Access Manager servers should be in either SIMPLE or CERT mode.

Severity: Warning

Rationale: Webgate/Agent communication to Oracle Access Manager servers should be in either SIMPLE or CERT mode.

7.1.2 Denyonnotprotected In Webgate Profile

Description: DenyOnNotProtected in Webgate profile should be set to true

Severity: Warning

Rationale: DenyOnNotProtected in Webgate profile should be set to true.

7.1.3 Oam Agent Cache Headers Settings

Description: This rule checks if both Cache Pragma Header and Cache Control Header are deleted for Oracle Fusion Applications.

Severity: Minor Warning

Rationale: Having Cache Pragma Header or Cache Control Header not deleted could potentially affect performance.

7.1.4 Oam Agent Maximum Connections

Description: This rule checks if the Maximum Connections that each OAM Agent establishs with OAM Server is greater than 20 for Oracle Fusion Applications.

Severity: Minor Warning

Rationale: Setting Maximum Connections greater than 20 could potentially affect performance.

7.1.5 Oam Agent Server Maximum Connections

Description: This rule checks if the Maximum Connections that each OAM Agent Server establishs with OAM Server is greater than 10 for Oracle Fusion Applications.

Severity: Minor Warning

Rationale: Setting Maximum Connections greater than 10 could potentially affect performance.

7.1.6 Sso Only Mode

Description: This compliance standard rule verifies if SSO only Mode is set to true for Oracle Fusion Applications.

Severity: Minor Warning

Rationale: This is introduced specially for Fusion Applications. This will eliminate the groups fetch from LDAP during login time. This will disable fine grained authorization feature in Oracle Access Manager currently not used by Fusion Applications.

7.1.7 Webgate To Oracle Access Manager Connectivity Parameters

Description: Webgate to Oracle Access Manager connectivity parameters

Severity: Warning

Rationale: Ensure that Webgate to Oracle Access Manager connectivity parameters are set to proper values.