General Security Settings
...
- Changes in Server-config.properties file (Installation\ConnectServer\AdeptiaServer\ServerKernel\etc\server-configure.properties)
- Set property application.security to “true”
- Set property abpm.server.side.entity.validation to to “true”true”
- Set property abpm.gui.error.message.enable to " to “false”
- Changes in auth.properties file (Installation\ConnectServer\AdeptiaServer\ServerKernel\etc\auth.properties)
- Change the value of app.connect.jwt.token.expire.time and app.connect.jwt.token.expire.timeunit property to the value you need the session to be active. For example, if you want your session to be active for 1 hour then set
app.connect.jwt.token.expire.time=1
and
app.connect.jwt.token.expire.timeunit = HOURS
...
SAML Strict Security Validation Settings
Changes in Connect Portal files
- Change in securityContext.xml (C:\SingleInstaller\AdeptiaConnect-2.9\ConnectPortal\resources_config\saml\securityContext.xml)
- Add line <property name="strictMessageSignatureValidation" value="true"/> in webSSOprofileConsumer bean tag.
...