Two Factor Secure Login

KNOWARTH Technologies Pvt. Ltd.
Identity Management & Governance
Accessing any system with just single Password is an old way today. Single password authentication is not strong enough and hacker can steal it with multiple methods. One workaround is to create and remember complex passwords but then it’s not good idea and users are not willing enough to use it. This is the reason Two Factor Authentication (2FA) is becoming so essential today.

We at KNOWARTH created a 2FA component called “SecureLogin” which is useful for easy and secure login on Liferay platform with your mobile device.

Problem:- Out of the box, Liferay doesn’t provide 2FA (Two Factor Authentication) mechanism.

Pre-Requisite:- We have developed mobile app to securely login with 2FA mechanism into Liferay. You need to install and configure mobile app.

Solution:- This component is not an option of existing login mechanism of Liferay platform. Instead we have used Liferay auto login feature to implement 2FA and make existing login mechanism more secure and ease of use.

How does it work?
Smartphone becomes unique identification for any individual today. We have developed mobile App (for Android and IOS) to securely login on Liferay.

User need to first install the mobile app, register that app (by just scanning QR code) with Liferay and you are ready to login. Your mobile app (which is uniquely installed on your mobile device) would work as a second authentication factor while login.

Below are the steps to configure secure login with 2FA on Liferay platform.

*Copy the modules Jars file in deploy folder of Tomcat Application Server Download Jars
*Download the .apk file from this link and install on your android mobile. Download App
*Set the secure user pin on your mobile app.
*Create following public pages in your liferay portal.
Device Registration - Place Device Registration Portlet on this page.
Secure User Login - Place Secure Login Portlet on this page.

You need to first provide Liferay credential. Next screen shows a QR code. You can register your mobile app by
scanning this QR code. It basically stores following 3 things in your app.
Email Address (You can’t modify).
Registration Key (You can see last few characters of it).
Host of your Liferay server (In your Mobile App, you can update the host in case if it’s required).

*Secure Login
Once registration is done, you can use your mobile app to securely login. To make sure 2FA is implemented,
system will first ask for credentials. You need to give your Liferay credentials.

Next screen shows QR code (for login) which you need to scan through your mobile app. Once validated, Liferay
is automatically logged in and you no need to press any key or button on screen.

This way, only you who has registered mobile app securely can login and Liferay credentials alone is not enough
to login into system.

*You can set 4-digit pin on your mobile app to make it even more secure.
Liferay is trademark of Liferay, Inc., Liferay International Limited and/or Liferay Affiliate, registered in the United States and/or other countries.
Release Summary and Release Notes
Version Change Log Supported Framework Versions Date Added
Liferay DXP 7.0 GA1+
Anblicks is a Cloud Data Engineering Firm - Enabling Enterprises with Data-Driven Decision Making. Since 2004, Anblicks has been enabling customers across the globe, with their digital transformation journey. Anblicks is headquartered in Addison, Texas, and employs more than 400 technology professionals, data analysts, and data science experts in the USA, India, and Indonesia. Anblicks is committed to bringing value to various industries using Data Strategy, Cloud Data Engineering, and 24x7 Managed Data Services. Global Customers are benefited from our Anblicks Ignite Enterprise Data Platform and products. Anblicks' comprehensive knowledge and expertise includes CloudOps, Data strategy and Modern app services. They have proven capabilities of delivering complex and innovative solutions powered by the Liferay DXP platform. They have a team of proficient Liferay developers and Liferay thought leaders. They have authored and reviewed several books on Liferay. They bring innovative digital experiences to applications, corporate websites, customer self-serves, intranet and community portals, partner portals, ecommerce portals, collaboration and CMS portals. Their mission is to help their customers achieve goals with simple yet effective solutions through state-of-the-art technology, innovation, and reliability.
KNOWARTH Technologies Pvt. Ltd.
Published Date
November 06, 2017
Supported Versions

Installation Instructions

This is a Legacy App that is no longer available in the new App Marketplace. You are able to acquire it from your installed DXP or CE instance and install it by following the instructions below.

Acquiring this App through the legacy Liferay Portal Store

  1. Review app documentation for any specific installation instructions.
  2. Login to your Liferay Portal instance with administrative permissions.
  3. Navigate to the Control Panel, Marketplace (or Apps for 7.3 and prior), then Store.
  4. If needed, login to your Liferay.com account by choosing Sign In.
  5. Search for the app name in the Search dialog.
  6. Once the app is found, click on the app in the search results.
  7. On the app details page, choose to acquire the app by selecting the Free, Buy, or Trial button.
  8. Follow the instructions on the screen to complete the acquisition.

Installing this App through legacy Liferay Portal Purchased Apps

  1. After acquiring the app, login to your Liferay Portal instance with administrative permissions.
  2. Navigate to the Control Panel, Marketplace (or Apps for 7.3 and prior), then Purchased.
  3. If needed, login to your Liferay.com account by choosing Sign In.
  4. Click the Install button to install your app on your Liferay Portal instance.

See the legacy App Marketplace help documentation for more information.