

CA Identity Manager Configuration Guide › CA Identity Manager Protection › Protection from CSRF Attacks
Protection from CSRF Attacks
CA Identity Manager is enhanced to improve the resistance to Cross-Site Request Forgery (CSRF) attacks. By default, the enhancement is disabled in CA Identity Manager.
To enable the enhancement:
- Open the web.xml file located in the following location:
application-server/iam_im.ear/user_console.war/WEB-INF
- Find the <context-param> element with <param-name> csrf-prevention-on.
- Set the <param-value> to true.
- Restart the application server.
Copyright © 2014 CA.
All rights reserved.
 
|
|