Previous Topic: Enable Single Use Session Cookies

Next Topic: Prevent Session Cookie Creation or Updates

Validate a Session Cookie Domain

You can reduce the risk that unauthorized users may hijack and attempt to reuse SiteMinder session cookies by having SiteMinder validate the domain of a session cookie with the following parameter:

To have SiteMinder validate the domain of a session cookie, set the value of the TrackSessionDomain parameter to yes.


Copyright © 2010 CA. All rights reserved. Email CA about this topic