Guidelines for Providing Additional Security for Oracle BI Publisher
To provide additional security for Oracle BI Publisher, the following steps are also recommended:
Change default ports to nonstandard ports. As with other components, the Oracle BI Publisher installation is configured to run on a default set of ports.
Implement operating system-level encryption to dynamically encrypt Oracle BI Publisher configuration files. Encrypting the configuration files protects them from being read by every user who has access to the BI Publisher Server.