How Do You Disable Hybris Backoffice Cockpits' Pre-Populated Logins and Default Passwords?

Prior to moving your  Hybris Commerce implementation into production, it's important to disable the login auto-fill feature and the default passwords for the backoffice cockpits.

To eliminate this potential security risk, set the pre-populated values to empty in the local.properties file.

###############################################################
# The following disables default user/password for login cockpit pages and hmc
###############################################################
productcockpit.default.login=
productcockpit.default.password=
cmscockpit.default.login=
cmscockpit.default.password=
cscockpit.default.login=
cscockpit.default.password=
hmc.default.login=
hmc.default.password=

Marc Raygoza

Marc is the Founder of HybrisArchitect.com.
He enjoys helping others learn more about SAP Commerce Cloud (Hybris). Marc is a SAP Commerce Certified Professional and has held the role of SAP Commerce Cloud Architect at Deloitte, PwC, Brillio (a Bain Company), and Nasty Gal. Marc holds an M.S. Software Engineering from Carnegie Mellon University and a B.S. in Accountancy from California State University, Fresno. He can be reached at: mraygoza@hybrisarchitect.com

You may also like...

Popular Posts