Previous Topic: Enforcing One Time Use of AssertionsNext Topic: New Setting to Secure the IdP Discovery Target


SiteMinder JSP Pages that Check for Cross-site Scripting

SiteMinder provides several JSP pages for use with SiteMinder federation functionality. These JSP pages check characters in a request to be sure that unsafe information in the output stream is not displayed in the browser. This check prevents against cross-site scripting attacks.

For more information, see the Federation Security Services Guide.