Siebel Open UI portlets must be configured differently depending on whether the application is hosted in HTTP and in HTTPS. The recommended configuration guidelines are as follows:
HTTP. Implement SSO and access Siebel CRM over HTTP or HTTPS, depending on the requirement.
HTTPS. Implement SSO and enable SSL for Siebel CRM.
Caution: You should never pass user IDs and passwords in the HTTP request to a Siebel
portlet. Passing user IDs and passwords exposes authentication details to the end user.