This chapter discusses security considerations for immediate post-installation configuration of Oracle Commerce Platform. It particularly concentrates on login, SSL, and inter-application communication issues. These considerations are largely invisible to end users, but are critical for application security.

Each section in this chapter provides a brief overview of the security issue under consideration, and provides pointers for more detailed information regarding that issue.

This chapter includes the following sections:

Securing RMI Communications

Enabling SSL on Oracle Commerce Service Center Applications

Guarding Against Attacks Through Request-Handling Pipeline Configuration

Setting Access Levels for Properties Files

Encrypting Credit Card Numbers in CRS

Hashing Passwords in LDAP Profile Repositories

Securing LDAP Repositories

Encrypted Properties in Nucleus Components

Single Sign-On for External CRM Applications

Enabling Java Security Manager for Applications


Copyright © 1997, 2017 Oracle and/or its affiliates. All rights reserved. Legal Notices