Configuring the WebSphere LTPA cookie

The Lightweight Third Party Authentication (LTPA) mechanism is associated with roles and authentication throughout your login session. If an intruder is able to intecept the LTPA cookie then they can impersonate you. To protect against this, you must ensure that the LTPA cookie is transmitted only over SSL.

  1. Click Security > Global security.
  2. Click Authentication > Web security > Single sign-on (SSO).
  3. Click Requires SSL.
  4. Click OK.
  5. Restart the Dashboard Application Services Hub server.