Is it possible to disable all SiteMinder HTTP Headers?

book

Article ID: 51291

calendar_today

Updated On:

Products

CA Single Sign On Secure Proxy Server (SiteMinder) AXIOMATICS POLICY SERVER CA Single Sign On SOA Security Manager (SiteMinder) CA Single Sign-On

Issue/Introduction

There is no way to disable all SiteMinder HTTP Headers. Some of them are absolutely required in order to complete a transaction.

The following headers are the one you can disable:

  • Authentication source variables: SM_AUTHDIRNAME, SM_AUTHDIRSERVER, SM_AUTHDIRNAMESPACE, SM_AUTHDIROID

  • User Session variables: SM_SERVERSESSIONID, SM_SERVERSESSIONSPEC, SM_SERVERIDENTITYSPEC,SM_SESSIONDRIFT, SM_TIMETOEXPIRE

  • User Name variables: SM_USER, SM_USERDN, SM_DOMINOCN

Environment

Release:
Component: SMAPC