OPNsense
  • Home
  • Help
  • Search
  • Login
  • Register

  • OPNsense Forum »
  • Archive »
  • 19.1 Legacy Series »
  • Papercut: VIP VHID gateway/password seen as firewall user/password
« previous next »
  • Print
Pages: [1]

Author Topic: Papercut: VIP VHID gateway/password seen as firewall user/password  (Read 2876 times)

putt1ck

  • Newbie
  • *
  • Posts: 27
  • Karma: 0
    • View Profile
Papercut: VIP VHID gateway/password seen as firewall user/password
« on: May 30, 2019, 09:29:14 am »
When creating or editing a Virtual IP (Firewall -> Virtual IP -> Settings) the Gateway and Virtual IP Password boxes are seen as the firewall user/password boxes respectively, and the password manager (via FF66 and earlier) auto-completes them. Could this be changed so that doesn't happen?

Should the VHID password even be treated as something that needs hiding? I'm guessing that if it's not called/defined as "password" that it won't be seen as one.
Logged

hbc

  • Hero Member
  • *****
  • Posts: 501
  • Karma: 47
    • View Profile
Re: Papercut: VIP VHID gateway/password seen as firewall user/password
« Reply #1 on: May 30, 2019, 10:42:25 am »
I think, the problem is your password manager. Set an exception or use another one. KeePass is pretty cool and can be bound to URLs.

@Devs: Don't mess up with forms, because of third party apps/requests like this. There maybe people that use password mangers to fill in VHID passwords automatically and mods would break that.
Logged
Intel(R) Xeon(R) Silver 4116 CPU @ 2.10GHz (24 cores)
256 GB RAM, 300GB RAID1, 3x4 10G Chelsio T540-CO-SR

putt1ck

  • Newbie
  • *
  • Posts: 27
  • Karma: 0
    • View Profile
Re: Papercut: VIP VHID gateway/password seen as firewall user/password
« Reply #2 on: May 31, 2019, 06:32:35 am »
You have a password manager that differentiates between the password on a page v. a password on a site? I don't think mine can do that.

For interest, why would you need to store the VHID password at all - if it's available in plain text in the UI, like the IPSEC PSK, can't you just cut and paste between the firewalls?
Logged

mimugmail

  • Hero Member
  • *****
  • Posts: 6767
  • Karma: 494
    • View Profile
Re: Papercut: VIP VHID gateway/password seen as firewall user/password
« Reply #3 on: May 31, 2019, 07:03:26 am »
You really should exclude saving of passwords on any firewall UI, then this also wouldn't happen
Logged
WWW: www.routerperformance.net
Support plans: https://www.max-it.de/en/it-services/opnsense/
Commercial Plugins (German): https://opnsense.max-it.de/

putt1ck

  • Newbie
  • *
  • Posts: 27
  • Karma: 0
    • View Profile
Re: Papercut: VIP VHID gateway/password seen as firewall user/password
« Reply #4 on: June 02, 2019, 01:11:44 pm »
That option works better when you don't administrate a lot of firewalls. Unique password per install is a lot of passwords to remember.
Logged

  • Print
Pages: [1]
« previous next »
  • OPNsense Forum »
  • Archive »
  • 19.1 Legacy Series »
  • Papercut: VIP VHID gateway/password seen as firewall user/password
 

OPNsense is an OSS project © Deciso B.V. 2015 - 2024 All rights reserved
  • SMF 2.0.19 | SMF © 2021, Simple Machines
    Privacy Policy
    | XHTML | RSS | WAP2