Allowing Oracle Eloqua pages to be embedded in an inline frame
To prevent security vulnerabilities, by default Oracle Eloqua pages cannot be embedded into another HTML page using an inline frame (iframe). However, you can configure exceptions through allowlists. The allowlist consists of pages that can be used in an inline frame. You can build an allowlist of specific pages or use wildcards to include pages that match a wildcard pattern.
Example: If your base URL is https://secure.p01.eloqua.com
, entering the string Main.aspx
in your allowlist would allow https://secure.p01.eloqua.com/Main.aspx
and all of its subdirectories. If you specify the string announcements.aspx
any page with this file name would be allowed. To allow Engage, enter apps/engage
.
To set up the frameable page allowlist:
- Click Settings .
- Click Security in the Users and Security area.
- Click Frameable Page.
- Click to add to the allowlist.
- Enter the filename or wildcard pattern for the page or pages you want to allow and click Save.
Allow Embedding or Framing option for microsites