Security
This section includes how-to articles about issues related to login, Portal Access Control (PAC), authentication, authorization, security vulnerabilities, and other security-related content in HCL Digital Experience (DX).
- How to add additional security realms for Virtual Portals
Learn how to create a secondary WebSphere security domain and configure a standalone LDAP registry to isolate user bases across virtual portals in HCL DX. - How to change the LDAP attribute used by the Impersonation portlet
Learn how to configure the WP GlobalThemeConfig resource environment provider to update the LDAP user profile attribute displayed throughout the theme and Impersonation portlet. - How to configure multiple login properties in a federated repository in HCL DX
Learn how to configure an HCL DX federated repository to support multiple login properties. - How to determine user credentials for a method or thread using trace logs
Learn how to identify the user associated with a specific method or thread in HCL DX for troubleshooting authentication, authorization, and access-related issues. - How to enable HTTP Security, HttpOnly, and SameSite DX cookies in HCL DX
Learn how to enable HTTP-related security flags and attributes in your HCL DX environment. - How to identify missing DX resource roles
Learn how to determine which DX resource is missing a required role (for example, if a user cannot see a page or content item). - How to implement SAML in HCL DX
Learn about the SAML 2.0 standard, the SAML Single Sign-On (SSO) capabilities available in WAS, and how to implement it. - How to integrate HCL DX user authentication using Microsoft Azure AD
Learn how to migrate HCL DX user authentication from an IBM Directory Server to Microsoft Azure AD using OIDC. - How to integrate the impersonation API with SAML
Learn how to integrate the user impersonation API with SAML SSO by modifying conflicting WebSphere application server security custom properties. - How to integrate transient users with OpenID Connect
Learn how to integrate transient users using OpenID Connect (OIDC) for your HCL DX environment. - How to monitor user logins from traces in HCL DX
Learn how to enable authentication trace logging and filter log files to track user login attempts. - How to prevent Log4j warnings from security scanners
Learn how to remove the Unified Task List and Script Application Import portlets to resolve scanner flags on outdated Log4j JAR files. - How to redirect users to a custom login page in HCL DX
Learn how to create a custom login page for protected resources in HCL DX. - How to replace an LDAP in HCL DX
Learn how to export system configuration, switch to the internal file repository, remove the old LDAP server, run user cleanup, and execute the member-fixer task.