Securing Individual Application Express Application

Hi All,
I would like to secure an individual Application Express application at the Apache level. What I am looking at doing is ensuring that only an individual URL is available on a specific port. I was wondering what is the best way to do this.
Eg:- Users are allow to navigate to
http://mysever.somedomain.com:7799/apex/f?p=101
NOT to http://mysever.somedomain.com.:7799/apex/f?p=4550
Thanks
Brett

My recommendation is to install HTML DB in the instance that has the data you need in your application. We have a test and production database for each "type" of database. Our types of databases are OLTP and Data Warehouse. This results in two test databases and two production databases. We have HTML DB installed in each of these database instances. We use a test Oracle Application Server's HTTP server to serve the 2 test HTML DB installations and a production OAS HTTP server to serve our 2 production HTML DB installations.
Reasons for 4 HTML DB installations
- We wanted the application as close to the data for quickest response time!!
- We wanted to keep it simple by not having to deal with database links. Database links are only used when the application requires the combination of database from different sources.
- We wanted our test/development application work separated from the running production applications.
- We have IT people as well as non-IT people in other departments developing applications, so we wanted the production HTML DB installation controlled by IT people. Non-IT developed applications are migrated into production by IT people. The IT people control all database structure changes as well in the production database.
This is what we went with. Our developers provided this configuration to the DBA to implement. Sometimes there is a battle as to how many HTML DB installations to make. The developers want more and the DBAs want less.
Mike

Similar Messages

  • Can we lock an individual application without Jail break?

    Please assist on the subject: is any app available in istore which can allow us to lock individual applications. Lock Down is available for jailbroken phones but my interest is for non jail broken phone.

    From your iPhone tap "Settings > General > Restrictions > Enable Restrictions > Enter a 4 digit passcode (Not the same as the unlock code if you are giving the iPhone to a different user such as an employee or child) > Applications". If you want a specific third party app to have a restriction you will need to contact the app developer to make the recommendation.
    Also since you have a lot of questions regarding the iPhone 4 here is a useful support page from Apple: http://www.apple.com/support/iphone/ Example: Select "Enterprise" on the left menu to read about setting up secure services such as VPN and restricting services on the iPhone.

  • HT3919 In the past was able to adjust the memory for each individual application, my Illustrator CS5 appears is doesn't have enough memory to complete a particular project. How do I boost the amount of memory that Illustrator uses so I can complete my pro

    In the past I have always been able to adjust the memory of each individual application,
    my Adobe Illustrator CS5 appears that is doesn't have enough memory to complete a particular project.
    How do I boost the amount of memory that Illustrator uses so I can complete my project?

    With OS X, it automatically allocates RAM and it can't be allocated manually.
    What model Mac do you have and what OS X version is it running. Your profile shows a PowerMac and OS 10.6.8. A PowerMac can't run OS 10.6.8. It's max OS is 10.5.x
    How much RAM is installed in your Mac? You need to max out the RAM and close other open apps if you are having problems with Illustrator.
     Cheers, Tom

  • How to provide security to application

    Hai to ALL
    Can any one suggest me for Securites in BPC Application
    How to provide security to application in user, Admin levels,
    what are the privelliages to user, admin
    Cheers
    SRM

    Hi,
    When you talk about application level security, it is nothing but member access profile. This profile determines, whether you will have the authorization to post a value / read a value from a particular member of the dimension or not.
    Hope this helps.

  • Impact of generating a new key for Secure Store Application

    I inherited my development environment from a predecessor, who did not document the secure store pass phrase anywhere. There are a couple of projects doing development on the system that cannot be impacted, but I need to get Project Server running on the
    system, and I cannot get the secure store to accept the credentials I set for the target application. I have recreated the target application several times, but nothing works.
    MossHostSsoHost.GetSecureStoreCredentials: Failed to get credentials from Secure Store. SecureStoreProvider threw a SecureStoreException. Exception: Microsoft.Office.SecureStoreService.Server.SecureStoreServiceException: Access is denied to the Secure Store
    Service.     at Microsoft.Office.SecureStoreService.Server.SecureStoreServiceApplicationProxy.Execute[T](String operationName, Boolean validateCanary, ExecuteDelegate`1 operation)     at Microsoft.Office.SecureStoreService.Server.SecureStoreServiceApplicationProxy.GetCredentials(Guid
    rawPartitionId, String applicationId)     at Microsoft.Office.SecureStoreService.Server.SecureStoreProvider.GetCredentials(String appId)     at Microsoft.Office.Excel.Server.MossHost.MossHostSsoHost.GetSecureStoreCredentials(String
    secureStoreApplicationId)
    So, I am wondering if I need to generate a new key for the secure store application, and what impact that would have on the existing target applications. Can someone please tell me if I generate a new key, will this break the existing applications? Thanks.

    Hi Susan,
    Once you decide to generate a new encryption key, you could follow the steps in Generate an encryption Key part in the link below:
    http://technet.microsoft.com/en-us/library/ee806866(v=office.15).aspx
    You should back up the database of the Secure Store Service application before generating a new key. Then refresh the encryption key to propagate the key to all the application servers in the farm.
    Regards,
    Please remember to mark the replies as answers if they help and unmark them if they provide no help. If you have feedback for TechNet Subscriber Support, contact
    [email protected] .
    Rebecca Tu
    TechNet Community Support

  • Shame to remove Get Info option to change language for individual application!

    Its a shame for Apple to remove the Get Info panel option to change language for individual application! For these days I used Leopard, where I had this option, now I bought a brand new mac, for a bunch of money, with Lion, and this option had disappeared. What's that? Apple is working on making more complicated the life of their users?

    Thanks for your tip, but languageswitcher not set the language permanently just for the applications started from that application. Very inelegant and windows like way.
    I used the terminal to set the defaults for individual application, but that is step back to the age of command line.
    I spent with this problem 1 hour instead of 1 minutes.  Big step back.

  • Secure the Application Server  application

    Hello All,
    OS: AIX 5.2
    DB:10.1.0.4.0
    I have secure my application as below:
    To secure the DB Control application, I have follow these steps:
    cd $OARCLE_HOME/bin
    1. Stop the DB Control
    $ emctl stop dbconsole
    2.Secure the DB Control application
    $ emctl secure dbconsole
    3. Start DB Control again
    $ emctl start dbconsole
    after that http become https as below:
    http:hostname.dominname:5501/em/console/logon/logon
    https://http:hostname.dominname:5501/em/console/logon/logon
    Now I need to do this on Application Server.
    OS is SuSE Linux Enterprise Server 9.
    Infrastructure & middle tier installed on the same box.
    Any suggestion will be appriciated.
    cheers,
    DN

    Can't you do the same ? (dbconsole becomes iasconsole)
    http://download-west.oracle.com/docs/cd/B14099_19/core.1012/b13995/em_app.htm#i690069

  • How to deploy Secure ADF applications w/o Fusion Middleware Control

    Just got the team upgraded to the new JDeveloper 11.1.1.1.0 and things have come to a halt because we can't deploy to our test servers.
    The previous process from OTN for 11.1.1.0.2 doesn't seem to work anymore.
    http://www.oracle.com/technology/products/jdev/tips/muench/credmig111100/index.html
    The new on-line docs say the way to deploy Secure ADF Application is either Fusion Middleware Control or WLST command. The instructions for the FMC are there, but not the WLST. (See section 7.2 http://download.oracle.com/docs/cd/E12839_01/core.1111/e10043/addlsecfea.htm#CFHFAIGE)
    Is there a new documented set of instructions for deploying a Secure ADF Application using WLST????
    rodger....
    Edited by: rodger63 on Aug 17, 2009 3:21 PM
    Edited by: rodger63 on Aug 17, 2009 3:22 PM

    Rodger, I'd be interested in hearing any answers you come up with please. If you could post your findings here it would be appreciated.
    Regards,
    CM.

  • How do I secure individual documents in Lion?

    I'm sure this question has been answered but I can't seem to figure out how to secure individual documents in Lion.
    Here is what I'm trying to do;
    I'm scanning or saving from various sources certain forms or files to Lion and keeping in documents. Which works great, but I can't figure out how to secure these documents individually.
    Would someone mind pointing out my error and perhaps recommend a resource where I can learn more of these basic Mac operations?
    Thanks gang,

    Yes Grasshopper.
    (the previous suggestions is good, too)
    1. open automator (it's in applications)
    2. when it asks you what you want to make, pick service.
    3. at the top, where it says "service receives selected", pick files or folders
    4. where it says "in", pick Finder.
    4.1 on the left, under library, select files & folders
    4.2 to the right, pick New Disc Image and drag it over to the right
    5. Size: Size disk image to fit contents
    6. check encrypt
    7. when done: unmount and return the image file
    8. close or save the window; give it a name, like "encrypt".
    9. try it out. Select the file you want to encrypt in the finder; control click on it to open the contextual menu; scroll down to services, and pick the service you just created.
    10. It should make a disc image and ask you to create a password.
    11. when you open the disc image, it will ask for the password, and then a virtual disc (looks like a little generic white drive) will open. In that virtual disc will be the decrypted file.
    12. you can delete the original file and work from the decrypted version in the virtual disc.
    13. When you close the decrypted version and either eject the virual disc (by dragging it to the trash) or restart or shut off your computer, the changes should be saved in the encrypted disc image.
    14. let me know how it works.

  • Securing individual iOS App's with password, how to?

    Hi there,
    this could be a strange question in this section, but I couldn't find a section regarding only the usage of iOS.
    So my question is about, if there is a way to lock individual applications with an other application from the Appstore, or using the iPhone configuration tool, or similar way with a password. It's not only to keep friends and other rubberneck's from my photo app, but to block also the Appstore and iTunes App on my iOS devices, without going all the way into settings -> general -> restrictions -> and so on. That's extremely annoying if I have to do this 20x a day. If someone haves a suggestion and/or solution, that would be great.
    Thanks in advance,
    b3tico

    There is no way to lock individual applications except through Restrictions, unless the app offers this feature.

  • 10.1.3.4 securing ADF application

    We have created 2 simple ADF based jsps. I want to secure them so that users are authenticated against our Ms Active Directory and based on their group membership they get access to 1 or both pages.
    I tried the examples under http://www.oracle.com/technology/products/jdev/howtos/1013/adfsecurity/adfsecurity_10132.html, but i can make it work using file based jazn provider. I am not sure how to make it work against external LDAP like AD. any idea what needs to be done for setting up security using this option ?
    I also tried another example based on the 3rdPartyLDAP example in metalink. There i am getting a little further, I am getting the login page (I am using FORM based auth) and seems to authenticate against my LDAP, but instead of taking me to the page I am trying to go to, it gives me a 404 and the url is .../faces/j_security_check. If i type in the url again in the browser window, the page is displayed.
    any idea how I can achieve this ? the first example seems more relevant since it gives me the facilities to control the access between pages. But its not clear what is required to make it work against external LDAP.

    Ok try this link
    first
    http://technology.amis.nl/blog/1426/implement-jaas-based-authentication-and-authorization-for-adf-faces-applications-on-oc4j-1013
    After you do this try this
    http://technology.amis.nl/blog/1462/create-a-webapplication-secured-with-custom-jaas-database-loginmodule-deploy-on-jdeveloper-1013-embedded-oc4j-stand-alone-oc4j-and-opmn-managed-oc4j-10g-as
    Regards
    rohit

  • Error While Login ADF Security Sample Application

    Hi All,
    Jdevloper Version : 11.1.1.5.0
    we are Creating ADF Login Application contains login.jspx and main.jspx pages.
    we define ADF Security on this Sample Application.
    when we provide valid credentials to login(username and password) it shows Error:
    Error 404--Not Found
    From RFC 2068 Hypertext Transfer Protocol -- HTTP/1.1:
    10.4.5 404 Not Found
    The server has not found anything matching the Request-URI. No indication is given of whether the condition is temporary or permanent.
    If the server does not wish to make this information available to the client, the status code 403 (Forbidden) can be used instead.
    The 410 (Gone) status code SHOULD be used if the server knows, through some internally configurable mechanism,
    that an old resource is permanently unavailable and has no forwarding address. 
    ManagedBean(BackingbeanScope) doLogin():
             public String doLogin() {
            String un = _userName;
            byte[] pw = _password.getBytes();
            FacesContext ctx = FacesContext.getCurrentInstance();
            HttpServletRequest request =(HttpServletRequest)ctx.getExternalContext().getRequest();
            try {
                Subject subject =Authentication.login(new URLCallbackHandler(un, pw));
                weblogic.servlet.security.ServletAuthentication.runAs(subject,request);
                String loginUrl = "/adfAuthentication?success_url=/faces/main.jspx";
                HttpServletResponse response =(HttpServletResponse)ctx.getExternalContext().getResponse();
                RequestDispatcher dispatcher =request.getRequestDispatcher(loginUrl);
         ctx.responseComplete();
        catch (FailedLoginException fle)
                    FacesMessage msg =new FacesMessage(FacesMessage.SEVERITY_ERROR, "Incorrect Username or Password", "An incorrect Username or Password was specified");
                    ctx.addMessage(null, msg);
            return null;
    In ADF Security We Define :
    User : admin1
    Enterprise Role  : ManagerGroup(added user admin1 to this EnterpriseRole)
    Application Role : Manager
    Resource Grants  : Resource Type : Web Page
                               login page
                              main  page -  Granted Role(Manager)
    jazn-data.xml file
    <?xml version = '1.0' encoding = 'UTF-8' standalone = 'yes'?>
    <jazn-data xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance"
               xsi:noNamespaceSchemaLocation="http://xmlns.oracle.com/oracleas/schema/jazn-data-11_0.xsd">
      <jazn-realm default="jazn.com">
        <realm>
          <name>jazn.com</name>
          <users>
            <user>
              <name>admmin1</name>
              <display-name>admmin1</display-name>
              <credentials>{903}y2I4TDwMavn90VxJJfPfgxtBsRnF0qiaMoxzP93XF74=</credentials>
            </user>
          </users>
          <roles>
            <role>
              <name>ManagerGroup</name>
              <display-name>ManagerGroup</display-name>
              <members>
                <member>
                  <type>user</type>
                  <name>admmin1</name>
                </member>
              </members>
            </role>
          </roles>
        </realm>
      </jazn-realm>
      <policy-store>
        <applications>
          <application>
            <name>ADFLogin</name>
            <app-roles>
              <app-role>
                <name>Manager</name>
                <class>oracle.security.jps.service.policystore.ApplicationRole</class>
                <display-name>Manager</display-name>
                <members>
                  <member>
                    <name>ManagerGroup</name>
                    <class>oracle.security.jps.internal.core.principals.JpsXmlEnterpriseRoleImpl</class>
                  </member>
                </members>
              </app-role>
            </app-roles>
            <jazn-policy>
              <grant>
                <grantee>
                  <principals>
                    <principal>
                      <name>Manager</name>
                      <class>oracle.security.jps.service.policystore.ApplicationRole</class>
                    </principal>
                  </principals>
                </grantee>
                <permissions>
                  <permission>
                    <class>oracle.adf.share.security.authorization.RegionPermission</class>
                    <name>multiofonds.adf.common.view.pageDefs.mainPageDef</name>
                    <actions>view</actions>
                  </permission>
                </permissions>
              </grant>
            </jazn-policy>
          </application>
        </applications>
      </policy-store>
    </jazn-data>
    Please help us how to resolve it.
    Thanks,
    kumar

    A best practice in this situation is to check on a running sample e.g. Oracle ADF: Security for Everyone
    I guess your resource grants are not set correctly.
    Timo

  • Securing Web Applications by HTTP Basic Authentication

    We are working on providing security for web applications in Webdynpro.We downloaded the material from net regarding this.In that it was mentioned to open the webdynpro project's web.xml file in the Netweaver Developer Studio.In the material,we are asked to click the General  TAb and check "Login Configuration".But there is no such checkbox in our general tab screen.Also many tabs are missing like Context,Resources,mapping,Environment,EJB's,Web objects.How to enable/display these tabs?Is there any means of setting properties in the server to get these tabs?
    regards,
    J.Iswaryal
    K.Brinda

    Hi J.Iswaryal,
    I guess two things based on your post.
    1. You have created one wer service and you want to make secure this web service using HTTP basic authentication.
    2. You have such wweb service and you want to consume this web service lets say in webdynpro application.
    <b>For, point one,</b>
    After creating web service goto webservice perspective in NWDS. there, choose your web service project.
    Now, open Web service configuration file recided in your project.
    Here, go under config1-> security and double click on it.
    It will display security options for this web service.
    Choose transport protocol as HTTP, Authentication mechanism as HTTP authentication and choose Basic radio button.
    Now, save this, rebuild this and deploy on server.
    <b>For point 2,</b>
    Make model for your web service.
    before calling your web service, set your username and password in code as shown below.
    wdContext.current<web service model node>element().modelobject()._setusername(<username>);
    wdContext.current<web service model node>element().modelobject()._setPassword(<password>);
    Rehards,
    Bhavik

  • Different levels of security in  application

    Hi, this is the problem:
    We want to create a web application that allows navigation througth "parts" with different security configuration.
    Any idea about how to create and configurate each "part"?
    Ex.
    Sould we create a different web project for each "part"(then configuring web.xml)?
    If yes, can we communicate those projects? How?
    Thanks.
    David.

    Topomorto is entirely right that the only effect that will even things out is the use of compression.  That's what compression is for--normalising just boosts the entire file to peak at the amount you've preset but does not change the balance between quiet and loud.
    However, I have to say that part of your problem is your specification that you don't want to "manually increase or decrease volume".  Although applying some compression (and you'll have to teach yourself how to drive it) is a good idea, for professional results you still have to manually adjust/mix your audio.  Every TV show, radio show or film you watch has had somebody going through this process because only your ears can decide what's right on every second of the file.
    I encourage you to have a play with the volume envelope function of Audition--you'll be amazed at how quick you can get at making the adjustments--and how much better the results will be than relying on any automatic effect.

  • How to secure Oracle Applications?

    i have implemented security mechanisms in the database,but i would like to know how to implement security in an application rather than doing so through the database?
    Thank you

    Hi Kiranjaly!
    Basically there are some things to keep in mind:
    When you put security in the application you still need to protect the data - as somebody could choose not to use the application to get access to the data (eg using SQLPlus).
    Furthermore it would be a great idea to have a link between authentication and authorisation. My bet is to place the authorisation information in the OID (LDAP) as this is used for the authentication as well (SSO).
    And of course you need auditing in the database, the application server and in the application.
    cu
    Andreas

Maybe you are looking for