Skip to main content

20 juin 2025

Internet Engineering Task Force Standards

Connection Server complies with certain Internet Engineering Task Force (IETF) standards.

  • RFC 5746 Transport Layer Security (TLS) – Renegotiation Indication Extension, also known as secure renegotiation, is activated by default.

    Note: Client-initiated renegotiation is deactivated by default on Connection Servers. To activate, edit registry value [HKLM\SOFTWARE\<name>\VDM\plugins\wsnm\TunnelService\Params]JvmOptions and remove -Djdk.tls.rejectClientInitiatedRenegotiation=true from the string.

  • RFC 6797 HTTP Strict Transport Security (HSTS), also known as transport security, is activated by default. This setting cannot be deactivated.

  • RFC 7034 HTTP Header Field X-Frame-Options, also known as counter click-jacking, is activated by default. You can deactivate it by adding the entry x-frame-options=OFF to the file locked.properties. For information about adding properties to the file locked.properties, see Configure HTTP Protection Measures.

    Note: In releases earlier than version 7.2, changing this option did not affect connections to HTML Access.

  • RFC 6454 Origin Checking, which protects against cross-site request forging, is activated by default. You can deactivate it by adding the entry checkOrigin=false to locked.properties. For more information, see Cross-Origin Resource Sharing.

    Note: In earlier releases, this protection was deactivated by default.

Cette page vous a-t-elle été utile ?

Envoyer un commentaire sur cette rubrique

Cette rubrique vous a-t-elle été utile ?

N'indiquez aucune information personnelle ou confidentielle.

Génération du lien…