Securing Operational Decision Manager
Operational Decision Manager provides
servers and components for use in IT environments for software development, testing, and production.
Securing these applications and their data is important to meeting your organization's compliance
and security requirements.
Security architecture
You must identify the components and their shared network connections to understand the security architecture of Operational Decision Manager .
Configuring servers
After installing Operational Decision Manager , you configure the components on an application server to secure the communications with all potential clients.
Configuring clients
After installing Operational Decision Manager , you must configure the client side to secure the communications with the servers.
Additional server configurations
There are other configurations that you need to consider on the server side.
Protecting decision services
Your client calls a decision service through the REST API or the SOAP API of Operational Decision Manager . You can secure the decision service with basic authentication so that anyone calling the decision service must first authenticate themselves.
Configuring for OpenID Connect
Operational Decision Manager supports OpenID Connect.
Configuring compliance settings
Regularly check compliance with security configuration goals to help you identify configuration issues.
Security and Privacy by Design
Security and Privacy by Design (SPbD) at IBM® is an agile set of focused security and privacy practices, including threat models, privacy assessments, security testing, and vulnerability management.