Posts from Andrew Pielage

Photo of Andrew Pielage

Find me on:

Payara Micro 171 - New Features Demo

This quick vlog shows off a few of the recent features and changes we added to Payara Micro in the 171 release. In it, we’ll cover sending asadmin commands to Micro instances from the DAS, how config changes in a pre-existing Payara Micro domain now get packaged up when creating an Uber JAR, as well as a couple of quality of life changes we’ve added.

 

Asadmin Recorder - New Payara Server Feature Demo

One of the most exciting new features in the Payara Server 162 release is the Asadmin Recorder - a tool especially useful for the Operations Teams! 

Asadmin Recorder allows you to create runnable scripts of asadmin commands that mirror configuration done in the administration console.  Have a look at our video walkthrough below for a quick overview of this new Payara Server feature.

 

Arbitrary File Read Exploit Hotfix

This hot fix removes an arbitrary file read exploit that allows an attacker to read the content of any file on the server hosting the DAS. This exploit attacks the administration console with a specific string, bypassing secure administration and any required login details. Therefore, if the administration console is not publicly accessible, and Payara Server is running under a restricted user (as per best practice), then the risk is minimised.

 

What's new in Payara Server 154 ?

As we move into November, the time has come for a new release of Payara Server. We had a focus on fixing bugs and adding the little features that make your life easier over any new big features for this release, but do not worry, we are not running short on big ideas to implement - just time!