• Airlock Secure Access Hub
  • About this document
  • About Airlock IAM
  • IAM 8.4 release notes
  • Security best practices
  • Installation and upgrade
  • Operation
  • Initial configuration
  • Configuration management
  • Authentication
  • Self-services
  • Target applications
  • OAuth and OIDC
  • SAML
  • API access control
  • Flows (Airlock IAM concept)
  • Loginapp Configuration
    • Loginapp REST API
    • Loginapp UI
      • Loginapp UI configuration
        • Authentication and authorization flows
        • User self-registration UIs
        • Public self-services
        • Protected self-services
        • OIDC and OAuth
        • Airlock gateway (WAF)
        • SAML
      • Customization with Loginapp Design Kit
      • Content security policy
    • One-Shot authentication
    • OAuth / OIDC
    • HTTP Basic Auth access
    • Event notification
  • Adminapp Configuration
  • Service Container Configuration
  • Transaction Approval Configuration
  • IAM REST APIs
  • Customizing UIs and texts
  • Third-party licenses
  1. Loginapp Configuration
  2. Loginapp UI
  3. Loginapp UI configuration
  4. Airlock gateway (WAF)

Airlock Gateway configuration for the Loginapp UI

 
Risk

The Loginapp REST API must be protected by Airlock Gateway. Never allow direct access to the Loginapp REST API  from untrusted networks.

The Airlock Gateway mapping configuration is described in Airlock Gateway for Airlock IAM configuration.

The Denied Access URL has to be configured as described in Authentication and authorization flows.