Forum Discussion
Philipp_Stadler
Nimbostratus
May 30, 2014apm sso inline javascript
Hi all,
I'm trying to implement APM+SSO (form-based client-initiated) on a web-application.
The form detection seems to work fine, because I can see injected Javascript in the page source on cli...
kunjan
Nimbostratus
May 30, 2014For Firefox, you can disable content security policy.. of course it brings down the security.
In address bar, type about:config and search for security.mixed_content.block_active_content. Double-click it and change its value to false.
Or you can try Form based SSO, instead of the client initiated Form SSO.
Philipp_Stadler
Nimbostratus
Jun 02, 2014I already tried form based SSO, but I could catch the logon form by URI, with client-initiated form-based I did it by header field (Referrer), which worked ok.
I think turning of security isn't a way to go for a public application.
regards,
Philipp
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects