OPNsense Forum

English Forums => General Discussion => Topic started by: sc0ttjm on September 11, 2022, 12:41:54 pm

Title: HELP, Changed Authentication Server for LDAP and Can't login
Post by: sc0ttjm on September 11, 2022, 12:41:54 pm
Hi,
I've spent hours perfecting my new Firewall setup for a Live customer over the weekend and was testing VPN Connectivity for Road Warriors last night using LDAP and all was working perfectly.

I've come to finish off this morning and I can't login to the OPNsense firewall anymore!

I think it might be because I changed the Authentication Server to the LDAP Connection BUT I though that as long as I didn't check "Disable integrated authentication" I would still be able to login using the local root account, but I can't.

I can't SSH to it and teh Web interface just says "Wrong username or password."

PLEASE HELP!

I'm currently completely locked out
Title: Re: HELP, Changed Authentication Server for LDAP and Can't login
Post by: sc0ttjm on September 12, 2022, 04:03:39 pm
Hi all,
I found the answer, but I found it difficult to get there so it took me a long time  to find it.
I'm posting the answer here to help anybody else finding themselves in the same situation in future.

In the end, it was a simple as following the steps in this guide: https://docs.opnsense.org/troubleshooting/password_reset.html

Once you reset the password, you are given the option to change the authentication server so I changed it back from my LDAP server to Local Database and after a final reboot, I could log back in.

The problem was caused when I selected the LDAP Server as the Authentication Server, I should have also selected the Local Database option, I didn't realise it was a multiple selection list, I though by selecting my LDAP server it would be Added to the list but this is not the case.

Luckily I found this literally seconds before giving up and starting again!