Summary of recommended settings
The following table provides an overview of the configuration settings related to security hardening.
Area
Setting
Recommended value
Authorization
Enable authorization
Yes
Reporting
HTML encoding
Yes
HTML expression sanitizing
Yes
Security
Password strength
Level 4 (Strong)
Planon app — Automatic access keys
Off
SQL validation
On
File locations
Allowed file types
Restricted list (see earlier)
Allow user-defined path
No
Planon managed
Yes
Web application
Enable web service console
No
Environment management gadget
SSO (Keycloak)
Enabled
Privacy sandbox compatibility
Configured
OpenID Connect
Enabled where possible