---
sourceDocument: Australia Platform security
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/de-DE/platform-security

 Release :

    - australia

ft:locale :

    - de-DE

ft:publication_title :

    - Australia Platform security

ft:clusterId :

    - psec

bundleId :

    - psec

workflow :

    - Platform


---

# Baseline version 6.0

# New hardening settings for baseline version 6.0 {#ariaid-title1}

* Freigeben Version: Australia
* 
* Aktualisiert 12. März 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 Minute Lesedauer

New hardening settings have been released with Security Center baseline version 6.0.

* [Enforce application specific ACLs only for application data](https://servicenow-prod.fluidtopics.net/1oTPmNuxRzIObOFzh9G8~A "Avoid unauthorized or undesired access to application data by enforcing application-specific access control lists (ACLs) only for application data.")
* [Disable legacy JQuery UI usage](https://servicenow-prod.fluidtopics.net/I7LiugNU48EnkKG8YuYe~Q "Avoid the introduction of unpatched vulnerabilities in the library by disabling legacy JQuery UI usage.")
* [Display recommendations for high risk UI pages](https://servicenow-prod.fluidtopics.net/fx~hDtz6k4m1Ed8JVj01NQ "Decrease the likelihood of authorization errors, and unintended information disclosure by displaying recommendations for high risk UI pages.")
* [Enforce current password policy compliance requirements on login](https://servicenow-prod.fluidtopics.net/9gWLNcCGl_WnCwBWhHxxdQ "Reduce the risk of brute force account login by enforcing current password policy compliance requirements on login.")
* [Prevent Users From Accepting Warning To Bypass CSRF Validation \[Updated in Security Center 1.3 and 1.5\]](Z5GsDZSNPcMjr5Wprc_oCw "Use the glide.security.csrf.strict.validation.mode property to enable CSRF token strict validation. If the CSRF token doesn't match, it prevents resubmission of the request.")
* [Require Minimum and Maximum Password Length \[Updated in Security center 2.2\]](2hCoW1BPKJjrvo4JovXKUQ "Set minimum and maximum password lengths to avoid compliance issues and reduce the risk of a successful brute force attack")
* [Limit session length for high assurance sessions](https://servicenow-prod.fluidtopics.net/wd0S4vi3A9lacO_zX6d4NQ "Reduce the risk of account takeover in high assurance sessions by limiting session length")
* [Disable deprecated TLS versions](https://servicenow-prod.fluidtopics.net/_DwzETucXlKJotPgca6NIA "Avoid loss or leakage of sensitive data by disabling deprecated TLS versions.")
* [Disable local login for users with Single Sign-On (SSO) enabled](https://servicenow-prod.fluidtopics.net/k828Px1pWq5_RUzaZp31gw "Update user records to disable local login for users with Single Sign-On (SSO) enabled.")
* [Reduce allowed bypasses for multifactor setup](https://servicenow-prod.fluidtopics.net/IvVPqgkZk8JSxKGxTRtdUA "Decrease the window of time an account is at risk of compromise by reducing allowed bypasses for multifactor setup.")
* [Prevent impersonating user from viewing application data](https://servicenow-prod.fluidtopics.net/PaAV8qpd5WjYcGmRFYT0hA "Use system properties to prevent an impersonating user from viewing application data.")
* [Prevent verbose HTTP request logging](https://servicenow-prod.fluidtopics.net/NQMG5hRGCuJOJ7mH_Q19Dg "Help prevent access to sensitive information by reducing verbose HTTP request logging.")
* [Enable relay state in SAML requests to prevent replay attacks](https://servicenow-prod.fluidtopics.net/WUObTAFd_LMR~VY6zPDnMg "Reduce the risk of replay attacks by enabling relay state in SAML requests to help prevent replay attacks.")
* [Minimize failed login attempts for high assurance sessions](https://servicenow-prod.fluidtopics.net/hPfLXDnDNvCY2tbGr6wjug "Decrease the likelihood of a brute force attack by minimizing failed login attempts for high assurance sessions.")
* [Apply continuous authentication policies to mobile sessions](https://servicenow-prod.fluidtopics.net/exGxJuWlvriWSRUsszEUPQ "Reduce the risk of session hijacking by applying continuous authentication policies to mobile sessions.")
* [Disable use of TripleDES/3DES encryption algorithm](https://servicenow-prod.fluidtopics.net/4VpDhZDdHowUjt6kwmUUTQ "Avoid the security risks of outdated encryption methods by disabling the use of the TripleDES/3DES encryption algorithm.")
{#new-hardening-settings-for-baseline-six__ul_f4q_lgv_bfc}

