OPNsense Forum

Archive => 21.7 Legacy Series => Topic started by: UMFjoek on January 19, 2022, 01:50:25 AM

Title: user group assignments change spontaneously
Post by: UMFjoek on January 19, 2022, 01:50:25 AM
so, i ran into an interesting issue recently. I have a vpn access group defined, and recently, i had my webgui user account lose all of its groups, including the admin group and the vpn user group. this has happened sever times in the past as well. logs do not show any users changing the groups.
Title: Re: user group assignments change spontaneously
Post by: franco on January 19, 2022, 09:08:15 AM
The only part that does this is LDAP group sync. So are you using an LDAP authentication binding? ;)


Cheers,
Franco
Title: Re: user group assignments change spontaneously
Post by: UMFjoek on January 20, 2022, 04:50:07 AM
we are for other users. we don't for admin users atm. however, there is an ldap account with an identical username that is not imported to opnsense. is it still seeing that and overwriting?
Title: Re: user group assignments change spontaneously
Post by: franco on January 20, 2022, 12:45:00 PM
Looks like the configuration is asking for trouble.


Cheers,
Franco
Title: Re: user group assignments change spontaneously
Post by: UMFjoek on January 21, 2022, 12:08:40 AM
i guess i don't know enough about the LDAP integration to know. i'll probably end up separating my admin user from the VPN anyhow.