Skip Headers
Oracle® Retail POS Suite Security Guide
Release 14.1
E54480-01
  Go To Table Of Contents
Contents

Previous
Previous
 
Next
Next
 

C Appendix: Secure JMS

Securing JMS communication varies based on the vendor. For information on securing JMS for the Oracle WebLogic Applilcation Server, see the following web sites:


Caution:

Never set the user name and password to the connection factory settings.

Doing this gives any user with JNDI read-access, full access to all JMS destinations. It also increases the risk of exposure if the serializable connection factory contains the user name and password. The client, or the client context, should always provide the user name and password for authentication. Therefore, it is not necessary to supply those in the connection factory.