You can make the following settings for message and transport security in the Integration Directory:
Limiting Access Using Access Control List
You can use this setting to restrict access to the runtime environment to specific (service) users.
Configuring Principal Propagation