Audience Manager security best practices
This topic describes the best practices concerning security for Audience Manager and Outbound E-mail.
- Synchronization webpage
-
Audience Manager provides a web page for synchronizing Contact and Segment data between the Content Manager Server and Presentation Server. The synchronization webpage should only be accessed by the Synchronization service, because the data that is returned is sensitive.
It is recommended to tightly secure the synchronization webpages, for example as follows:Security measure Description Restricted by IP range only allow access from your Content Manager server(s) Restricted by user only allow access by a specific user as configured on the Synchronization Target Behind a firewall Place the synchronization webpages inside the firewall (but with access to the databases used) - Password encryption
-
Encrypt passwords used in configuration files on the Content Manager (
OutboundEmail.xml) and on Content Delivery (cd_audience_manager_conf.xml) using the encryption tools provided.