SiteMinder policy server vulnerabilities -- Weak Configuration - Insufficient Rate Limiting
search cancel

SiteMinder policy server vulnerabilities -- Weak Configuration - Insufficient Rate Limiting

book

Article ID: 403259

calendar_today

Updated On:

Products

SITEMINDER

Issue/Introduction

Your security team might report vulnerability like "Weak Configuration - Insufficient Rate Limiting"

Resolution

Siteminder product doesn't cover rate limit, it should be done on the Load Balancer/Firewall in front of the siteminder.

And the adminUI should not be exposed to internet.