PeopleTools and Lifecycle Management - PSFT (MOSC)

MOSC Banner

How to add security headers in HTTP response through Weblogic?

edited Sep 8, 2020 5:02AM in PeopleTools and Lifecycle Management - PSFT (MOSC) 2 commentsAnswered

We are using PeopleSoft HCM 9.2 PeopleTools 8.57.05 application. There are WebLogic Vulnerabilities detected which requires security headers in HTTP response and

WebLogic not providing HTTP response security headers. Now I think WebLogic does not include these headers and they are incorporated once the application reads the information from the web profile and\or from our front end servers with IIS. Issue is when WebLogic Vulnerability scan runs, they are looking at the https port for WebLogic and pull the default page there are no security headers. How can we fix it through WebLogic?

WebLogic version - 12.2.1.3

Headers needs in response -

Cache-Control

Tagged:

Howdy, Stranger!

Log In

To view full details, sign in to My Oracle Support Community.

Register

Don't have a My Oracle Support Community account? Click here to get started.

Category Leaderboard

Top contributors this month

New to My Oracle Support Community? Visit our Welcome Center

MOSC Help Center