Siebel Security Guide >

What's New in This Release


What's New in Siebel Security Guide, Version 8.1/8.2

Table 1 lists the changes described in this version of the documentation to support this release of the software. The new features described in Table 1 are available in Siebel CRM version 8.1.1.11, Siebel CRM version 8.2.2.4, and later.

Table 1. New Product Features in Siebel Security Guide, Version 8.1/8.2
Topic
Description

Configuring SSL Mutual Authentication

Modified topic. The Transport Layer Security (TLS) protocol is not supported on the UNIX operating system for HTTPS calls to external Web servers.

Directory Servers Supported by Siebel Business Applications

New topic. It describes the directory servers that are supported by the Siebel Lightweight Directory Access Protocol (LDAP) and Active Directory Services Interfaces (ADSI) security adapters.

About Installing LDAP Client Software

Process of Installing and Configuring LDAP Client Software

Modified topics. These topics now describe how to install and configure the Oracle Database Client and Oracle Wallet Manager products, which replace the IBM LDAP Client and IBM GSKit as the default LDAP client software for Siebel Business Applications.

Using IBM LDAP Client Software

New topic. It is recommended that you use Oracle Database Client and Oracle Wallet Manager as your LDAP client software solution. If you choose to use the IBM LDAP Client software, certain restrictions apply.

Parameters for Security Adapter (Profile/Named Subsystem)

Parameters for LDAP or ADSI Authentication

Modified topics. If you are using the Oracle Database Client, then you must change the value of the Security Adapter Dll Name parameter from sscfldap.dll to sscforacleldap.dll.

 

Storing Shared Database Account Credentials as Profile Parameters

Parameters for LDAP or ADSI Authentication

Modified topics. You can store shared database account credentials defined for an Active Directory as profile parameters of the ADSI Security Adapter profile (alias ADSISecAdpt).

Additional Changes

Several topics were revised to improve the technical accuracy of this guide. The following topics provide additional information about Web Single Sign-On:

What's New in Siebel Security Guide, Version 8.1, Rev. D

Table 2 lists the changes in this version of the documentation to support this release of the software.

NOTE:  The functionality described in this topic requires that you install Siebel CRM Release 8.1.1.9 or later. For information, see the applicable Siebel Maintenance Release Guide on My Oracle Support.

Table 2. What's New in Siebel Security Guide, Version 8.1, Rev. D
Topic
Description

About Siebel Open UI

New topic. It describes the security enhancements provided by Siebel Open UI.

Comparison of Authentication Strategies

Modified topic. The Siebel LDAP security adapter supports the password policy draft created by the Internet Engineering Task Force for handling password policy violations and error reporting.

URL Login

Deleted topic. When logging into Siebel Business Applications, users can no longer pass user credentials in the URL.

Logging Out of a Siebel Application

Modified topic. If a user closes the browser window to end a Siebel application session, the session is terminated immediately for high-interactivity applications, and is terminated when the session timeout is reached for standard-interactivity applications.

Session Cookie

Modified topic. If you have implemented Web Single Sign-On user authentication, it is recommended that you set the SessionTracking parameter to either Cookie or Automatic, and not to URL.

If you set the SessionTracking parameter to Cookie, also set the URLSession parameter to FALSE, and set the CookieSession parameter to TRUE.

About Access Control

Modified topic. It now includes additional overview information about the Siebel access-control mechanisms.

Parameters for LDAP or ADSI Authentication

Modified topic. If you use the LDAP security adapter to authenticate against Microsoft Active Directory, or if you are using an ADSI security adapter, then set the value of the Password Attribute Type parameter to unicodePWD.

What's New in Siebel Security Guide, Version 8.2, Rev. B

Table 3 lists the changes in this version of the documentation to support this release of the software.

NOTE:  The functionality described in this topic requires that you install Siebel CRM Release 8.2.2.3 or later. For information, see the applicable Siebel Maintenance Release Guide on My Oracle Support.

Table 3. What's New in Siebel Security Guide, Version 8.2, Rev. B
Topic
Description

Installing the LDAP Client Software on UNIX

Configuring the siebenv.csh and siebenv.sh Scripts for the LDAP Client

Modified topics. The HP-UX operating system is supported in Siebel CRM version 8.2.2.3 and later, as well as in Siebel CRM Release 8.1.

Session Cookie

Modified topic. Cookieless mode is not supported if you have implemented Siebel Open UI. It is recommended that Siebel high-interactivity clients and standard-interactivity clients do not use cookieless mode when possible.

Using Secure Cookies

New topic. Configure the EnableSecureCookie parameter to specify whether or not the Secure attribute is assigned to session cookies. To increase the security of session cookies, Siebel Business Applications assign the Secure attribute to all session cookies by default.

About Manager Access Control

Modified topic. The Visibility Applet Type field specified for a view determines the access control properties for the view. However, if a more restrictive value is specified for the Visibility Applet Type field for another view that is based on the same business component, then the restrictions of this visibility type are applied to all views using the business component.

Siebel Security Guide Copyright © 2013, Oracle and/or its affiliates. All rights reserved. Legal Notices.