๐๏ธ Password Configuration
This topic explains how to change the encryption key password and the admin user's password in Release.
๐๏ธ Enable Encrypted Passwords in Configuration Files
Release provides a mechanism to automatically encrypt passwords and enables you to refer to them, so you do not need to store third-party passwords in plain text in configuration files.
๐๏ธ Configure the Release Server Certificate
The Release Setup Wizard can generate a self-signed digital certificate for secure communications.
๐๏ธ Configure the Deploy Server Certificate
This topics provides information about creating and configuring a truststore, importing certificates, and adjusting Release settings to ensure secure communication with the Deploy server.
๐๏ธ Configure SSL Options for HttpRequest
This topic covers SSL options for HttpRequest, which are settings that enable secure communication between clients and servers.
๐๏ธ Configure HTTP Host Header Protection
To improve security, Digital.ai Release 23.1 and later, includes measures to prevent HTTP Host Header Injection attacks from causing random redirects. You can now add the white-listed host names to the hostnames key in the xl-release.conf file.
๐๏ธ Configure Atlassian Crowd Security for Release
This topic describes how to configure Release to use an Atlassian Crowd to authenticate users and retrieve role (group) membership. In Release, Atlassian Crowd users and groups become principals that you can assign to roles. Global permissions are assigned at the role level.
๐๏ธ Configure HTTP CSRF Protection
This topic covers Cross-Site Request Forgery (CSRF), a class of attack that forces an authenticated end user to execute unwanted actions on an application. You can configure CSRF protection in Release.
๐๏ธ Configure HTTP sameSite Cookie Configuration
This topic explains the sameSite attribute for session cookies in Digital.ai Release 22.1 and later, enhancing security by restricting cookies to first-party or same-site contexts.
๐๏ธ Configure Session Timeout
This topic outlines how to configure session timeout and session storage settings in Release.
๐๏ธ Configure Pendo Analytics and Guidance
Pendo.io is a Product Analytics platform used in Release to enrich the product experience and provide insights to the product management team.