The domain mode determines default settings regarding security and logging. When configuring a WebLogic domain for use in a production environment, using tools such as the Configuration Wizard, the pack/ unpack commands, WLST, or the WebLogic Server Administration Console, consider the following:Ĭonfigure the domain to run in either production mode or secured production mode. To create a WebLogic domain for production use, consider the environment in which the domain will run, such as whether it will interoperate with other WebLogic domains, and how best to secure the accounts of users who have access to the domain. WebLogic home - Root directory of the WebLogic Server installationĭomain home - Root directory of the WebLogic domain Oracle home - Root directory created for all Oracle Fusion Middleware products on a host computer Restrict the privileges of these user accounts to only the following directories: The user who creates the WebLogic domain and uses Node Manager to start the Administration Server and each Managed Server instance in the domain. The user who installs WebLogic Server only. Create a group to contain only the following user accounts: Limit the number of user accounts on the host machine. Set operating system file access permissions to restrict access to data stored on disk that will be used or managed by WebLogic Server, such as the security LDAP database and directories into which keystores are created and managed. For example, make sure that any file system sharing is secured. Secure networking services and the file system that the operating system provides to prevent unauthorized access. Storing Private Keys, Digital Certificates, and Trusted Certificate Authority Certificatesįor a complete checklist of all components in the WebLogic Server that should be secured in a production environment, including specific tasks recommended for configuring a secure domain, securing the network, files and databases used by WebLogic Server, see Lock Down WebLogic Server in Securing a Production Environment for Oracle WebLogic Server.Īs new patches become available, you should download and install them promptly. Obtaining Private Keys, Digital Certificates, and Trusted Certificate Authority Certificates Securing the Domain After You Have Created It Performing a Secure Installation of WebLogic ServerĬreating a WebLogic Domain for Production Use This chapter includes the following sections: It also includes choosing the security configuration options that are appropriate for the environment in which the domain runs, such as obtaining and storing certificates, protecting user accounts, and securing the network on which the domain runs. Configuring security for an Oracle WebLogic Server environment starts with a creating a secure installation of WebLogic Server.
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |