Security hardening

Security hardening

Hi - my installing will be subject to pen testing so I am looking for information regarding hardening of ADSelfService Plus. I've done the usual stuff from the Admin portal but am now looking at the CIS tomcat benchmark

has anyone had ADSelfService Plus benchmarked?

Does anyone have anything they can share on - e.g. I'd like to use SecurityManager but worry about breaking things - does anyone have a proven policy file?

                New to ADSelfService Plus?