Search Results

Sort By
Capability
Feature
Deployment Approach
AIX License Deployment Issue
authorEmailAddress: brett.ripley@liferay.com, authorName: Brett Ripley, content: When using the AIX operating system with Liferay Portal 6.1, a license may fail to deploy, giving the output: License is in use by another instance. Resolution This license issue is due to a known issue with AIX, in...
Message Boards Issue When Configuring With HTML and Creating Hyperlinks With the 'Other' Designation
authorEmailAddress: brian.suh@liferay.com, authorName: Brian Suh, content: This article documents a known behavior where Message Boards' CKEditor—when configured to HTML—will have text stripped from hyperlinks after a post. This is usually observed after setting the protocol to Other. Resolution...
Liferay's permissions.inline.sql.check.enabled property
authorEmailAddress: jira_integration_6b0c73@jira.zendesk-integrations.com, authorName: Liferay Support, content: When searching, guest users are able to see highlighted folders, categories, and threads when they have no permission to view them. Resolution During search, Liferay runs a permission...
Liferay Portal Activation Key Deployment Instructions for versions 5.2 SP5 to 6.0.X
authorEmailAddress: jira_integration_6b0c73@jira.zendesk-integrations.com, authorName: Liferay Support, content: Activation Key deployment for Liferay Portal versions 5.2.9 (Service Pack 5) to 6.0.x is different from key deployment for Liferay versions 5.2 SP4 and earlier. Activation keys are no...
Elasticsearch and Liferay Enterprise Search Security Advisory: CVE-2018-3831
authorEmailAddress: tibor.lipusz@liferay.com, authorName: Tibor Lipusz, content: CVE-2018-3831 reports that, "Elasticsearch Alerting and Monitoring in versions before 6.4.1 or 5.6.12 have an information disclosure issue when secrets are configured via the API. The Elasticsearch _cluster/settings...
Excluding User Groups Not Part of the BaseDN In LDAP Import
authorEmailAddress: christopher.lui@liferay.com, authorName: Christopher Lui, content: This article is a legacy article. It applies to previous versions of the Liferay product. While the article is no longer maintained, the information may still be applicable. In older versions of Liferay Portal...
Apache Struts 2 Vulnerability: CVE-2017-9805 and CVE-2017-12611 - REST XStream FreeMarker
authorEmailAddress: tibor.lipusz@liferay.com, authorName: Tibor Lipusz, content: The following Common Vulnerabilities and Exposures (CVE) have been reported for Apache Struts 2: CVE-2017-9805 CVE-2017-12611 CVE-2018-1327 - REST XStream FreeMarker CVE-2018-11776 How are Liferay DXP (both 7.0 and...
JSESSIONID Changes as Part of Liferay Security
authorEmailAddress: justin.choi@liferay.com, authorName: Justin Choi, content: This article documents Liferay's position regarding the Session Identifier (JSESSIONID), including how and why a new JSESSIONID is generated.  Resolution Customers doing their own security scan of the Liferay platform...