I'm using Oracle SSO, so far I have test it in Lab environment which is using AIO, which has OUD, OIM, Oracle DB, Weblogic, Webgate all running on a single machine. But for Production system, I want to know how can I secure the operational environment e.g interaction with other components.
I have seen more practical implementations using a reverse proxy mode , instead of having OIAM agents on multiple web application servers. What do you suggest?