JavaScript allowlist
Advanced Access Control JavaScriptâ„¢ mapping rules and Federation mapping rules call Javaâ„¢ code from JavaScript. The set of classes that can be called is restricted.
Exercise reasonable caution when you call Java code from JavaScript rules to ensure that accidental damage to appliance resources is avoided.
| Common classes allowed in one-time password, OAuth or API protection, dynamic attributes, and JavaScript PIP, federation mapping rules, and access policies. |
|---|
** Inner classes for these classes are not supported. Methods that involve an inner class implementation of an interface are not available. For example, do not use the following methods in
For information about federation mapping rules, see Mapping rules. |
| Additional classes allowed in one-time password, OAuth or API protection mapping rules, federation mapping rules, and access policies |
|---|
* The allow list does not contain any implementation of the interfaces that are defined in the |
| Additional classes allowed in JavaScript PIP |
|---|
For more information about policy information points, see Managing policy information points. |
| Additional classes allowed in mapping rules |
|---|
For information on mapping rules, see: |
| Additional classes to manage server connections |
|---|
For more information, see Managing server connections. |
| Classes to use with InfoMap |
|---|
For more information, see Configuring an Info Map authentication mechanism. |
| Classes to use in Access Policies |
|---|
For more information, see Access policies. |
| Additional classes to customize FIDO2 flows |
|---|
For more information, see FIDO2 Mediation and FIDO Client Manager |
| Additional classes to manage 2FA registrations |
|---|
|