16 - ORB Subsystem - Initializers On

Information

The AS 7 ORB implementation can be secured by enabling SSL encryption in the JacORB subsystem.

Solution

To enable this in JacORB setup the tags security-domain and security:

<subsystem xmlns="urn:jboss:domain:jacorb:1.1">
<orb>
<initializers security="on" transactions="spec"/>
</orb>
<security support-ssl="on" security-domain="ssl-domain"/>
</subsystem>

See Also

https://docs.jboss.org/author/display/AS72/Hardening+Guidelines

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-13

Plugin: Unix

Control ID: 1ccc7fbbacbfbc0f8f483fc5508123d276534584f1e39170d8c1ccac6c8647f0