Limiting access to the Admin configuration pages
It is important to limit access to the Admin pages of the HCL OpenAdmin Tool (OAT) for Informix® because they can be accessed by anyone that can access the OAT Login page. These pages are used to configure OAT, including specifying access to server groups.
To prevent unauthorized access to these pages, use one or both of the following methods:
- Required: Provide password-protection for the Admin pages that configure OAT. See Providing password protection for the Admin configuration pages: Apache example.
- Recommended: Limit access to server groups, including those in read-only groups. See Creating an OAT group with read-only privileges.