1What's New in This Release

What’s New in Siebel Security Guide, Siebel CRM 18.12 Update

No new features have been added to this guide for this release. This guide has been updated to fix only bugs.

Note: Siebel 2018 is a continuation of the Siebel 8.1/8.2 release.

Table What’s New in Siebel Security Guide, Siebel CRM 18.12 Update

Topic

Description

Communications Encryption

Modified topic. A reverse proxy should be used if HTTPS is disabled.

About Importing Certificates into Keystore and Truststore

New topic. You must give your certificate an alias when importing it into keystore or truststore, and declare the same alias in the server.xml file.

About Implementing Federated Single Sign-On

Modified topic. This topic discusses what is required to integrate Siebel 17.x and 18.x with an external Web SSO solution.

Siebel Application Interface Profile Parameters

Modified topic. Lists the supported security profiles for Siebel 2018 and later releases.

Guidelines for Assigning Ports on Firewalls

Modified topic. Describes how to configure communication ports when setting up firewalls for your Siebel CRM implementation.

Network Zones and Firewalls

Network Configuration for Siebel CRM Deployments

Network Configuration for Large-Scale Siebel CRM Deployments

Modified topics. The figures in these topics have been updated.

Industry Standards for Security

Communications Encryption

Installing Certificate Files on UNIX for Client Authentication

About Configuring Encryption for Siebel Enterprise and Siebel Application Interface

About Configuring Encryption for Web Clients

Configuring Encryption for Mobile Web Client Synchronization

Security-Related Parameters in the Server Profile

Modified topics. RSA encryption is no longer supported for Siebel Remote and Siebel Mobile Web Client connections. TLS is supported for Siebel Remote and Siebel Mobile Web Client connections.

What’s New in Siebel Security Guide, Siebel CRM 18.10 Update

No new features have been added to this guide for this release. This guide has been updated to fix only bugs.

Note: Siebel 2018 is a continuation of the Siebel 8.1/8.2 release.

Table What’s New in Siebel Security Guide, Siebel CRM 18.10 Update

Topic

Description

Modifying Keystore and Truststore Files

Modified topic. You must update the encrypted password in the applicationinterface.properties file, which is located in the application interface layer in the ai\applicationcontainer\webapps folder.

Deploying TLS for Siebel Enterprise or Siebel Server

Modified topic. On the Security Encryption Level or Type screen, select the SISNAPI to use TLS 1.2 option.

If you decide to change to a different Siebel Management Console, then you might need to redeploy the profile.

Configuring TLS Encryption for Siebel Application Interface

Modified topic. The applicationinterface.properties file is located in the application interface layer in the ai\applicationcontainer\webapps folder.

Enabling SSL Acceleration for Application Interface/Enabling HTTP

Modified topic. Disabling HTTPS has been corrected and combined with enabling SSL acceleration. This topic includes details on how to enable HTTP for the application interface.

What’s New in Siebel Security Guide, Siebel CRM 18.9 Update

No new features have been added to this guide for this release. This guide has been updated to fix only bugs.

Note: Siebel 2018 is a continuation of the Siebel 8.1/8.2 release.

Table What’s New in Siebel Security Guide, Siebel CRM 18.9 Update

Topic

Description

Enabling SSL Acceleration for Application Interface/Enabling HTTP

New topic. Describes how to configure SSL acceleration for communications between application interface traffic.

Enabling Support for the Translation of Port Numbers

Modified topic. Describes how to enable support for the translation of port numbers.

What’s New in Siebel Security Guide, Siebel 2018

The following information lists the changes in this revision of the documentation to support this release of the software.

Note: Siebel 2018 is a continuation of the Siebel 8.1/8.2 release.

Table What’s New in Siebel Security Guide, Siebel 2018

Topic

Description

Disabling HTTPS

Modified topic. Disabling HTTPS has been corrected and combined with enabling SSL acceleration. For details on how to enable HTTP for the application interface, see Enabling SSL Acceleration for Application Interface/Enabling HTTP.

What's New in Siebel Security Guide, Siebel Innovation Pack 2017, Rev. A

The following information lists the changes in this revision of the documentation to support this release of the software.

Note: Siebel Innovation Pack 2017 is a continuation of the Siebel 8.1/8.2 release.

Table What’s New in Siebel Security Guide, Siebel Innovation Pack 2017, Rev. A

Topic

Description

Communications Encryption

Modified topic. A Web server is required to integrate Single Sign-On (SSO) with Siebel. See step 1 in the figure in the topic for information on how to integrate SSO with a third-party Web server and Siebel Application Interface.

About Configuring Encryption for Siebel Enterprise and Siebel Application Interface

Modified topic. TLS is supported and recommended to encrypt communications on Siebel server at the server and component level. RSA does not work for Siebel Remote and Mobile Web Client connections. TLS is supported for Siebel Remote and Mobile Web Client connections.

About Key Exchange for TLS Encryption

Modified topic. TLS encryption is supported for Mobile Web Client connections and the Siebel Remote component.

Installing the Oracle LDAP Client Software on Windows

Installing the Oracle LDAP Client Software on UNIX

Modified topics. The Oracle LDAP Client is now installed as part of the Oracle Database Client, which you must download separately from Oracle Software Delivery Cloud.

Authentication Parameters in Siebel Application Interface Profile

Modified topic. Configure the new Active Session Timeout Warning Value parameter as follows:

  • Set Active Session Timeout Warning Value to, for example, 60 (default value) if you want users to receive a session timeout warning message.

  • Set Active Session Timeout Warning Value to zero (0) if you do not want users to receive a session timeout warning message.

Additional Changes

This guide has been updated to correct or remove obsolete product and component terms.

What’s New in Siebel Security Guide, Siebel Innovation Pack 2017

The following information lists the changes in this revision of the documentation to support this release of the software.

Note: Siebel Innovation Pack 2017 is a continuation of the Siebel 8.1/8.2 release.

Table What’s New in Siebel Security Guide, Siebel Innovation Pack 2017

Topic

Description

Encrypted Passwords in Siebel Application Interface Profile Configuration

Modified topic. Describes the password encryption that is involved in Siebel Application Interface configuration.

Changing Encrypted Passwords Using the Siebel Management Console

Modified topic. Shows you how to use the Siebel Management Console to change encrypted passwords.

About Encryption of Siebel Gateway Password Parameters

Modified topic. For Innovation Pack 2017, the Siebel Gateway registry is used to store operational and connectivity information as well as configuration information for the Siebel Enterprise and Siebel Servers, not the Siebns.dat file.

Certificate Requirements for Communications

New topic. Siebel installer for Siebel CRM enforces HTTPS during installation. This topic describes the client certificate authentication requirements for communications.

Disabling Certificate Based Mutual Authentication

New topic. Describes how to disable client certificate based authentication and run all components over HTTPS.

Disabling HTTPS

Modified topic. Disabling HTTPS has been corrected and combined with enabling SSL acceleration. For details on how to enable HTTP for the application interface, see Enabling SSL Acceleration for Application Interface/Enabling HTTP.

About Generating Keystore and Truststore Files

New topic. Provides some important information about generating the keystore and truststore files.

Configuring TLS Mutual Authentication for SHA-2 Certificates Using EAI HTTP Transport

Modified topic. Client authentication is now supported on SHA-2 (TLS v1.2).

Encrypting Columns in a Business Component

New topic. Provides an example showing how to create a new encrypted field or column for a business component.

Configuring Security Adapters Using the Siebel Management Console

Modified topic. Describes how to configure a Database, LDAP, or Custom security adapter using the Siebel Management Console after you have installed Siebel CRM.

Troubleshooting Secure Parameter Settings

New topic. Describes how to resolve a problem related to the Enable XSS Filter parameter setting.

Configuration Parameters Related to Authentication

Modified topic. The application configurations formerly defined in the eapps.cfg file and associated with virtual directories on the Web server are now managed by the Siebel Management Console and stored in the Siebel Gateway registry.

Enabling Transport Layer Security for Oracle BI Publisher Running on Oracle WebLogic Server

Enabling TLS Acceleration for Web Server and Web Client Communications

Enabling TLS Acceleration for Web Server and Web Client Communications

Obsolete topics. These topics have moved to Siebel Reports Guide.

Siebel Security Hardening

New topic. Describes Siebel Security Hardening implementation and administration. This information was formerly in Siebel Security Hardening Guide.