Enabling HSTS and antiClickJacking in Tomcat affecting display of workflow panels
search cancel

Enabling HSTS and antiClickJacking in Tomcat affecting display of workflow panels

book

Article ID: 386800

calendar_today

Updated On:

Products

CA Automic Workload Automation - Automation Engine

Issue/Introduction

After setting HSTS and antClickJacking settings in web.xml in the Tomcat conf folder, the Workflow panel remains blank (often) and other panels under General are badly displayed (sometimes) or keep loading (sometimes).
This was observed in different browsers(Edge, chrome).

Environment

Tomcat 9.X
Automic Version 21.0.X and 24.X

Cause

It is a known issue with Tomcat V9 with Automic 21.0.x and 24.x

Resolution

We will consider to support Tomcat v10 in the near future and the above security hardening will be added. As it will be part of future enhancements/certification at present we don't have an ETA and the release version.