{"id":1151,"date":"2023-10-20T13:49:30","date_gmt":"2023-10-20T08:19:30","guid":{"rendered":"https:\/\/www.techandtrain.com\/blog\/?p=1151"},"modified":"2025-10-22T14:52:14","modified_gmt":"2025-10-22T09:22:14","slug":"security-cookie-links-www-liferay-com-part-1","status":"publish","type":"post","link":"https:\/\/www.techandtrain.com\/blog\/2023\/10\/security-cookie-links-www-liferay-com-part-1\/","title":{"rendered":"Security &amp; Cookie links @ www.Liferay.com &#8211; Part 1"},"content":{"rendered":"\n<p id=\"ember22853\">List of Liferay security &amp; cookie related links which includes Cookies, XSS, CSRF, OWASP, CORS, SSO, IAM, Service Action Policies and more:<\/p>\n\n\n\n<ol class=\"wp-block-list\">\n<li>Known vulnerabilities:&nbsp;<a href=\"https:\/\/liferay.dev\/portal\/security\/known-vulnerabilities\">Known Vulnerabilities &#8211; Liferay<\/a><\/li>\n\n\n\n<li>Security statement:&nbsp;<a href=\"https:\/\/www.liferay.com\/en-AU\/security-statement\">Security Statement | Liferay<\/a><\/li>\n\n\n\n<li>LXC Cloud security:&nbsp;<a href=\"https:\/\/www.liferay.com\/en-AU\/products\/dxp-cloud\/security\">DXP Cloud Security | Liferay<\/a><\/li>\n\n\n\n<li>Securing Liferay page:&nbsp;<a href=\"https:\/\/learn.liferay.com\/w\/dxp\/installation-and-upgrades\/securing-liferay\">Securing Liferay &#8211; Liferay Learn<\/a><\/li>\n\n\n\n<li>Help center DXP 7.0:&nbsp;<a href=\"https:\/\/help.liferay.com\/hc\/en-us\/articles\/360018175371-Liferay-DXP-Security-Overview\">Liferay DXP Security Overview \u2013 Liferay Help Center<\/a><\/li>\n\n\n\n<li>Help center DXP 7.1:&nbsp;<a href=\"https:\/\/help.liferay.com\/hc\/en-us\/articles\/360017897072-Introduction-to-Securing-Liferay-DXP\">Introduction to Securing Liferay DXP \u2013 Liferay Help Center<\/a><\/li>\n\n\n\n<li>Administration security:&nbsp;<a href=\"https:\/\/learn.liferay.com\/w\/courses\/liferay-administrator\/security\">Security &#8211; Liferay Learn<\/a><\/li>\n\n\n\n<li>Search security DXP 7.2:&nbsp;<a href=\"https:\/\/help.liferay.com\/hc\/en-us\/articles\/360028711172-Installing-Liferay-Enterprise-Search-Security\">Installing Liferay Enterprise Search Security \u2013 Liferay Help Center<\/a><\/li>\n\n\n\n<li>Search security DXP 7.1:&nbsp;<a href=\"https:\/\/help.liferay.com\/hc\/en-us\/articles\/360022516591-Installing-Liferay-Enterprise-Search-Security\">Installing Liferay Enterprise Search Security \u2013 Liferay Help Center<\/a><\/li>\n\n\n\n<li>Securing ElasticSearch DXP 7.3\/7.4:&nbsp;<a href=\"https:\/\/learn.liferay.com\/w\/dxp\/using-search\/installing-and-upgrading-a-search-engine\/elasticsearch\/securing-elasticsearch\">Securing Elasticsearch &#8211; Liferay Learn<\/a><\/li>\n\n\n\n<li>Reporting security issues:&nbsp;<a href=\"https:\/\/liferay.dev\/portal\/security\/reporting\">Reporting Security Issues &#8211; Liferay<\/a><\/li>\n\n\n\n<li>Liferay product cookies:&nbsp;<a href=\"https:\/\/help.liferay.com\/hc\/en-us\/articles\/20176940917517-Liferay-Product-Cookies#:~:text=Liferay%20DXP%20%20%20%20Cookie%20name%20,%20%20%20%208%20more%20rows%20\">Liferay Product Cookies \u2013 Liferay Help Center<\/a><\/li>\n\n\n\n<li>Cookie list:&nbsp;<a href=\"https:\/\/help.liferay.com\/hc\/en-us\/articles\/4409704510733-Cookies-list-that-could-be-found-in-a-Liferay-Portal-and-their-usage-\">Cookies list that could be found in a Liferay Portal and their usage \u2013 Liferay Help Center<\/a><\/li>\n\n\n\n<li>Login cookies:&nbsp;<a href=\"https:\/\/help.liferay.com\/hc\/en-us\/articles\/360018144732-List-of-Cookies-That-Are-Affected-at-Liferay-Login\">List of Cookies That Are Affected at Liferay Login \u2013 Liferay Help Center<\/a><\/li>\n\n\n\n<li>Liferay cloud cookies:&nbsp;<a href=\"https:\/\/help.liferay.com\/hc\/en-us\/articles\/360044777651-Liferay-Cloud-cookies\">Liferay Cloud cookies \u2013 Liferay Help Center<\/a><\/li>\n<\/ol>\n\n\n\n<p id=\"ember22855\">Email me:&nbsp;<a href=\"mailto:Neil@HarwaniSystems.in\">Neil@HarwaniSystems.in<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>List of Liferay security &amp; cookie related links which includes Cookies, XSS, CSRF, OWASP, CORS, SSO, IAM, Service Action Policies [&hellip;]<\/p>\n","protected":false},"author":2,"featured_media":1152,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"nf_dc_page":"","site-sidebar-layout":"default","site-content-layout":"","ast-site-content-layout":"default","site-content-style":"default","site-sidebar-style":"default","ast-global-header-display":"","ast-banner-title-visibility":"","ast-main-header-display":"","ast-hfb-above-header-display":"","ast-hfb-below-header-display":"","ast-hfb-mobile-header-display":"","site-post-title":"","ast-breadcrumbs-content":"","ast-featured-img":"","footer-sml-layout":"","ast-disable-related-posts":"","theme-transparent-header-meta":"","adv-header-id-meta":"","stick-header-meta":"","header-above-stick-meta":"","header-main-stick-meta":"","header-below-stick-meta":"","astra-migrate-meta-layouts":"default","ast-page-background-enabled":"default","ast-page-background-meta":{"desktop":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"tablet":{"background-color":"","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"mobile":{"background-color":"","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""}},"ast-content-background-meta":{"desktop":{"background-color":"var(--ast-global-color-4)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"tablet":{"background-color":"var(--ast-global-color-4)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"mobile":{"background-color":"var(--ast-global-color-4)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""}},"jetpack_post_was_ever_published":false,"_jetpack_newsletter_access":"","_jetpack_dont_email_post_to_subs":false,"_jetpack_newsletter_tier_id":0,"_jetpack_memberships_contains_paywalled_content":false,"_jetpack_memberships_contains_paid_content":false,"footnotes":""},"categories":[192,2,39],"tags":[312,200,9],"class_list":["post-1151","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-liferay","category-security","category-software-security","tag-cookies","tag-liferay","tag-security"],"jetpack_featured_media_url":"https:\/\/i0.wp.com\/www.techandtrain.com\/blog\/wp-content\/uploads\/2023\/10\/Safe.jpg?fit=1280%2C1112&ssl=1","jetpack_sharing_enabled":true,"jetpack_shortlink":"https:\/\/wp.me\/p7do02-iz","jetpack-related-posts":[{"id":1053,"url":"https:\/\/www.techandtrain.com\/blog\/2023\/03\/elasticsearch-with-liferay-notes-links-part-1\/","url_meta":{"origin":1151,"position":0},"title":"Elasticsearch with Liferay &#8211; Notes &amp; Links &#8211; Part 1","author":"Neil Harwani","date":"March 26, 2023","format":false,"excerpt":"Below are the important notes & links for configuring Liferay DXP with Elasticsearch. Configuring Elasticsearch \u2013 Liferay Help Center\u00a0- DXP 7.0 Installing Elasticsearch - Liferay Learn\u00a0- DXP latest Securing Elasticsearch 6.5 with X-Pack \u2013 Liferay Help Center\u00a0- DXP 7.0 with ES 6.5 Securing Elasticsearch - Liferay Learn\u00a0- DXP 7.0\/7.1\/7.2\/7.3\/7.4 latest\u2026","rel":"","context":"In &quot;Liferay&quot;","block_context":{"text":"Liferay","link":"https:\/\/www.techandtrain.com\/blog\/category\/liferay\/"},"img":{"alt_text":"Credit: www.Pixabay.com","src":"https:\/\/i0.wp.com\/www.techandtrain.com\/blog\/wp-content\/uploads\/2023\/03\/freelancer-763730_1920.jpg?fit=1200%2C797&ssl=1&resize=350%2C200","width":350,"height":200,"srcset":"https:\/\/i0.wp.com\/www.techandtrain.com\/blog\/wp-content\/uploads\/2023\/03\/freelancer-763730_1920.jpg?fit=1200%2C797&ssl=1&resize=350%2C200 1x, https:\/\/i0.wp.com\/www.techandtrain.com\/blog\/wp-content\/uploads\/2023\/03\/freelancer-763730_1920.jpg?fit=1200%2C797&ssl=1&resize=525%2C300 1.5x, https:\/\/i0.wp.com\/www.techandtrain.com\/blog\/wp-content\/uploads\/2023\/03\/freelancer-763730_1920.jpg?fit=1200%2C797&ssl=1&resize=700%2C400 2x, https:\/\/i0.wp.com\/www.techandtrain.com\/blog\/wp-content\/uploads\/2023\/03\/freelancer-763730_1920.jpg?fit=1200%2C797&ssl=1&resize=1050%2C600 3x"},"classes":[]},{"id":965,"url":"https:\/\/www.techandtrain.com\/blog\/2022\/10\/liferay-best-practices-part-1\/","url_meta":{"origin":1151,"position":1},"title":"Liferay best practices &#8211; Part 1","author":"Neil Harwani","date":"October 11, 2022","format":false,"excerpt":"Developers and managers both struggle at times to pre-plan usage of best practices in projects causing many problems which are best avoided. Providing below some learnings & best practices on using and working with Liferay \u2013 Part 1. Don\u2019t work directly on the Liferay database. Use the groovy script console\u2026","rel":"","context":"In &quot;Liferay&quot;","block_context":{"text":"Liferay","link":"https:\/\/www.techandtrain.com\/blog\/category\/liferay\/"},"img":{"alt_text":"Credit: www.Pixabay.com","src":"https:\/\/i0.wp.com\/www.techandtrain.com\/blog\/wp-content\/uploads\/2022\/10\/Web-Design.jpg?fit=1200%2C720&ssl=1&resize=350%2C200","width":350,"height":200,"srcset":"https:\/\/i0.wp.com\/www.techandtrain.com\/blog\/wp-content\/uploads\/2022\/10\/Web-Design.jpg?fit=1200%2C720&ssl=1&resize=350%2C200 1x, https:\/\/i0.wp.com\/www.techandtrain.com\/blog\/wp-content\/uploads\/2022\/10\/Web-Design.jpg?fit=1200%2C720&ssl=1&resize=525%2C300 1.5x, https:\/\/i0.wp.com\/www.techandtrain.com\/blog\/wp-content\/uploads\/2022\/10\/Web-Design.jpg?fit=1200%2C720&ssl=1&resize=700%2C400 2x, https:\/\/i0.wp.com\/www.techandtrain.com\/blog\/wp-content\/uploads\/2022\/10\/Web-Design.jpg?fit=1200%2C720&ssl=1&resize=1050%2C600 3x"},"classes":[]},{"id":844,"url":"https:\/\/www.techandtrain.com\/blog\/2022\/03\/keywords-for-identity-access-management-plus-single-sign-on-with-links-from-liferay-ecosystem-part-1\/","url_meta":{"origin":1151,"position":2},"title":"Keywords for Identity &#038; Access Management plus Single Sign on with links from Liferay ecosystem &#8211; Part 1","author":"Neil Harwani","date":"March 4, 2022","format":false,"excerpt":"Keywords in the identity & access management space along with single sign on: Active DirectoryLDAPOAuthKerberosOpenIDSAMLCASSeamless loginShibbolethIAMSSOJWTIdentity providerService providerMFATFAPrincipalIdentity synchronizationIdentity lifecycle managementEntitlementAuthorizationAuthenticationFederated identityB2B & B2C Links from Liferay documentation for above: https:\/\/learn.liferay.com\/dxp\/latest\/en\/installation-and-upgrades\/securing-liferay\/configuring-sso.htmlhttps:\/\/learn.liferay.com\/dxp\/latest\/en\/installation-and-upgrades\/securing-liferay.htmlhttps:\/\/learn.liferay.com\/dxp\/latest\/en\/headless-delivery\/using-oauth2\/creating-oauth2-applications.htmlhttps:\/\/help.liferay.com\/hc\/en-us\/articles\/360033738332-Authenticating-Using-SAMLhttps:\/\/help.liferay.com\/hc\/en-us\/articles\/360026505211-Authenticating-with-Kerberoshttps:\/\/www.liferay.com\/resources\/whitepapers\/Identity+Management+in+Liferay+DXPhttps:\/\/help.liferay.com\/hc\/en-us\/articles\/360018176491-OAuth-2-0https:\/\/en.wikipedia.org\/wiki\/Identity_management Email me: Neil@HarwaniSystems.in","rel":"","context":"In &quot;IAM-SSO&quot;","block_context":{"text":"IAM-SSO","link":"https:\/\/www.techandtrain.com\/blog\/category\/iam-sso\/"},"img":{"alt_text":"","src":"https:\/\/i0.wp.com\/www.techandtrain.com\/blog\/wp-content\/uploads\/2022\/03\/Startup.jpg?fit=1200%2C800&ssl=1&resize=350%2C200","width":350,"height":200,"srcset":"https:\/\/i0.wp.com\/www.techandtrain.com\/blog\/wp-content\/uploads\/2022\/03\/Startup.jpg?fit=1200%2C800&ssl=1&resize=350%2C200 1x, https:\/\/i0.wp.com\/www.techandtrain.com\/blog\/wp-content\/uploads\/2022\/03\/Startup.jpg?fit=1200%2C800&ssl=1&resize=525%2C300 1.5x, https:\/\/i0.wp.com\/www.techandtrain.com\/blog\/wp-content\/uploads\/2022\/03\/Startup.jpg?fit=1200%2C800&ssl=1&resize=700%2C400 2x, https:\/\/i0.wp.com\/www.techandtrain.com\/blog\/wp-content\/uploads\/2022\/03\/Startup.jpg?fit=1200%2C800&ssl=1&resize=1050%2C600 3x"},"classes":[]},{"id":1001,"url":"https:\/\/www.techandtrain.com\/blog\/2022\/12\/liferay-upgrade-learnings-part-1\/","url_meta":{"origin":1151,"position":3},"title":"Liferay upgrade learnings &#8211; Part 1","author":"Neil Harwani","date":"December 23, 2022","format":false,"excerpt":"Some learnings below from various Liferay upgrades that I have been part of: Upgrades need us to plan various dry runs in advance on non-production environment Divide your upgrade between core \/ database and non-core upgrade Core includes Liferay engine, configurations and database Non-core includes themes, custom code, integrations and\u2026","rel":"","context":"In &quot;Liferay&quot;","block_context":{"text":"Liferay","link":"https:\/\/www.techandtrain.com\/blog\/category\/liferay\/"},"img":{"alt_text":"Credit: www.Pixabay.com","src":"https:\/\/i0.wp.com\/www.techandtrain.com\/blog\/wp-content\/uploads\/2022\/12\/Vortex.png?fit=1200%2C1121&ssl=1&resize=350%2C200","width":350,"height":200,"srcset":"https:\/\/i0.wp.com\/www.techandtrain.com\/blog\/wp-content\/uploads\/2022\/12\/Vortex.png?fit=1200%2C1121&ssl=1&resize=350%2C200 1x, https:\/\/i0.wp.com\/www.techandtrain.com\/blog\/wp-content\/uploads\/2022\/12\/Vortex.png?fit=1200%2C1121&ssl=1&resize=525%2C300 1.5x, https:\/\/i0.wp.com\/www.techandtrain.com\/blog\/wp-content\/uploads\/2022\/12\/Vortex.png?fit=1200%2C1121&ssl=1&resize=700%2C400 2x, https:\/\/i0.wp.com\/www.techandtrain.com\/blog\/wp-content\/uploads\/2022\/12\/Vortex.png?fit=1200%2C1121&ssl=1&resize=1050%2C600 3x"},"classes":[]},{"id":1018,"url":"https:\/\/www.techandtrain.com\/blog\/2023\/01\/links-on-important-technical-concepts-of-liferay-part-1\/","url_meta":{"origin":1151,"position":4},"title":"Links on important technical concepts of Liferay &#8211; Part 1","author":"Neil Harwani","date":"January 25, 2023","format":false,"excerpt":"Here are some links on important technical concepts of Liferay - Part 1. Hope this is helpful to all using and learning Liferay. Clustering:\u00a0Liferay DXP Clustering \u2013 Liferay Help Center Upgrade:\u00a0Upgrade Basics \u2014 Liferay Learn LXC:\u00a0Liferay Experience Cloud \u2013 Liferay Help Center Search:\u00a0Search Overview \u2014 Liferay Learn Architecture:\u00a0Introduction to Architecture\u2026","rel":"","context":"In &quot;Liferay&quot;","block_context":{"text":"Liferay","link":"https:\/\/www.techandtrain.com\/blog\/category\/liferay\/"},"img":{"alt_text":"Credit: www.Pixabay.com","src":"https:\/\/i0.wp.com\/www.techandtrain.com\/blog\/wp-content\/uploads\/2023\/01\/door-g5a9b513f9_1920.jpg?fit=1200%2C944&ssl=1&resize=350%2C200","width":350,"height":200,"srcset":"https:\/\/i0.wp.com\/www.techandtrain.com\/blog\/wp-content\/uploads\/2023\/01\/door-g5a9b513f9_1920.jpg?fit=1200%2C944&ssl=1&resize=350%2C200 1x, https:\/\/i0.wp.com\/www.techandtrain.com\/blog\/wp-content\/uploads\/2023\/01\/door-g5a9b513f9_1920.jpg?fit=1200%2C944&ssl=1&resize=525%2C300 1.5x, https:\/\/i0.wp.com\/www.techandtrain.com\/blog\/wp-content\/uploads\/2023\/01\/door-g5a9b513f9_1920.jpg?fit=1200%2C944&ssl=1&resize=700%2C400 2x, https:\/\/i0.wp.com\/www.techandtrain.com\/blog\/wp-content\/uploads\/2023\/01\/door-g5a9b513f9_1920.jpg?fit=1200%2C944&ssl=1&resize=1050%2C600 3x"},"classes":[]},{"id":886,"url":"https:\/\/www.techandtrain.com\/blog\/2022\/05\/navigating-liferay-as-a-customer-partner-part-1\/","url_meta":{"origin":1151,"position":5},"title":"Navigating Liferay as a Customer &#038; Partner &#8211; Part 1","author":"Neil Harwani","date":"May 29, 2022","format":false,"excerpt":"Single ready reference of important links for customers & partners of Liferay: Where is the customer portal: https:\/\/www.liferay.com\/customersWhere do I find the documentation - Version & Product wise: https:\/\/learn.liferay.com\/Where is the developer portal: https:\/\/www.liferay.com\/developersWhere is the partner portal: https:\/\/www.liferay.com\/partnersWhere can I get online trainings: https:\/\/www.liferay.com\/learningWhere are the blogs: https:\/\/www.liferay.com\/blogWhere can\u2026","rel":"","context":"In &quot;Liferay&quot;","block_context":{"text":"Liferay","link":"https:\/\/www.techandtrain.com\/blog\/category\/liferay\/"},"img":{"alt_text":"","src":"https:\/\/i0.wp.com\/www.techandtrain.com\/blog\/wp-content\/uploads\/2022\/05\/Navigation.jpg?fit=1200%2C800&ssl=1&resize=350%2C200","width":350,"height":200,"srcset":"https:\/\/i0.wp.com\/www.techandtrain.com\/blog\/wp-content\/uploads\/2022\/05\/Navigation.jpg?fit=1200%2C800&ssl=1&resize=350%2C200 1x, https:\/\/i0.wp.com\/www.techandtrain.com\/blog\/wp-content\/uploads\/2022\/05\/Navigation.jpg?fit=1200%2C800&ssl=1&resize=525%2C300 1.5x, https:\/\/i0.wp.com\/www.techandtrain.com\/blog\/wp-content\/uploads\/2022\/05\/Navigation.jpg?fit=1200%2C800&ssl=1&resize=700%2C400 2x, https:\/\/i0.wp.com\/www.techandtrain.com\/blog\/wp-content\/uploads\/2022\/05\/Navigation.jpg?fit=1200%2C800&ssl=1&resize=1050%2C600 3x"},"classes":[]}],"jetpack_likes_enabled":true,"_links":{"self":[{"href":"https:\/\/www.techandtrain.com\/blog\/wp-json\/wp\/v2\/posts\/1151","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.techandtrain.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.techandtrain.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.techandtrain.com\/blog\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.techandtrain.com\/blog\/wp-json\/wp\/v2\/comments?post=1151"}],"version-history":[{"count":1,"href":"https:\/\/www.techandtrain.com\/blog\/wp-json\/wp\/v2\/posts\/1151\/revisions"}],"predecessor-version":[{"id":1153,"href":"https:\/\/www.techandtrain.com\/blog\/wp-json\/wp\/v2\/posts\/1151\/revisions\/1153"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.techandtrain.com\/blog\/wp-json\/wp\/v2\/media\/1152"}],"wp:attachment":[{"href":"https:\/\/www.techandtrain.com\/blog\/wp-json\/wp\/v2\/media?parent=1151"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.techandtrain.com\/blog\/wp-json\/wp\/v2\/categories?post=1151"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.techandtrain.com\/blog\/wp-json\/wp\/v2\/tags?post=1151"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}