The warnings reported in the log are false positives, so there is no issue to resolve, other than eliminating the reporting of these by suppressing the messages. The only way to do this is to change the setting as directed above. Pega has been working on resolving this at the root level and is in the process of developing a solution for this.
We are seeing the same issue in PEGA 7.3.1 version also, need to know if the following is false positive alarm can we have HFIX at the code level to fix this issue once for all, as the suggested DSS change is not suggested to be used in the production system.
Posted: 4 years ago
Posted: 31 Aug 2018 12:37 EDT
Marty Solomon (SOLOM)
Senior Director Software Security Architecture