Table of Contents Table of Contents Title and Copyright Information Preface Purpose Audience Scope Documentation Accessibility Critical Patches Diversity and Inclusion Related Resources Conventions Acronyms and Abbreviations 1 Prerequisite 1.1 Operating Environment Security 1.2 Network Security 1.3 Oracle Database Secuirty 1.3.1 Oracle Banking Microservices Architecture Recommended configuration 1.4 Application Server Security 1.5 SSL Support 1.5.1 SSL Setup 1.5.2 Choice of the SSL cipher suite 1.5.3 Product configurations for SSL 1.6 Securing the Oracle Banking Microservices Architecture Application 1.6.1 Online Web Application 1.6.2 API Security 1.6.3 Two-way SSL Connection 2 Securing the Oracle Banking Microservices Architecture Application 2.1 Desktop Security 2.2 Oracle Banking Microservices Architecture Controls 2.2.1 Overview 2.2.2 Disable Logging 2.2.3 Sign-on Messages 2.2.4 Authentication and Authorization 2.2.5 Role Based Access Controls 2.2.6 Access Controls - Branch Level 2.2.7 Maker - Checker 2.2.8 Access Enforcement 2.2.9 Password Management 3 General Information 3.1 Cryptography 3.2 Security patch 3.3 Oracle Database Security Suggestions 3.4 Oracle Software Security Assurance - Standards 4 References Index