/
Restricting Access to Specific Hosts
IBM DataPower Operations Dashboard v1.0.23.x
Restricting Access to Specific Hosts
When a user adds a gateway or a cloud agent to DPOD, they can use DPOD to perform initial requests to any server in the organization, by providing its IP address.
Although the user must be an admin user, and although the request body and headers are predefined, and although firewall rules should prevent unauthorized access, this may be considered a security risk (SSRF).
To mitigate this risk, it is possible to restrict access only to specific hosts by configuring a list of allowed hosts using the following system parameter: Allowed Hosts.
, multiple selections available,
Related content
Firewall Requirements for All-in-One
Firewall Requirements for All-in-One
More like this
Web & Admin Consoles Security
Web & Admin Consoles Security
Read with this
Configuring Monitored Gateways
Configuring Monitored Gateways
More like this
Generating MustGather
Generating MustGather
Read with this
REST API Overview
REST API Overview
More like this
REST API Overview
REST API Overview
More like this
Copyright © 2015 MonTier Software (2015) Ltd.