OPNsense
  • Home
  • Help
  • Search
  • Login
  • Register

  • OPNsense Forum »
  • Profile of coffeelover »
  • Show Posts »
  • Messages
  • Profile Info
    • Summary
    • Show Stats
    • Show Posts...
      • Messages
      • Topics
      • Attachments

Show Posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.

  • Messages
  • Topics
  • Attachments

Messages - coffeelover

Pages: [1]
1
General Discussion / Re: Privilege for System: Settings: Logging / targets
« on: September 03, 2021, 12:38:41 pm »
Thanks for the patch!
Regards


2
General Discussion / Privilege for System: Settings: Logging / targets
« on: September 02, 2021, 07:10:57 pm »
I've modified the permissions of my admin user removing the following GUI privileges:
  • All pages
  • Diagnostics: Backup / Restore
  • Diagnostics: Configuration History
  • Diagnostics: Factory defaults
  • Diagnostics: Halt system
  • System: User Manager
  • System: User Manager: Add Privileges
However, the user can only access the System: Settings: Logging page but NOT System: Settings: Logging / targets (syslog-ng page if I'm not mistaken). Is this intended?
Thanks for the support.

EDIT: apparently, the ALL pages does enable the access to https://myfirewall/ui/syslog/ page, however this also gives back the access to the other Diagnostics: xxx pages I wanted to disable...

3
General Discussion / Re: Admin user that cannot change root password
« on: September 01, 2021, 11:37:45 pm »
Dear Franco: you are the best. Thanks SO much.

Best

4
General Discussion / Re: Admin user that cannot change root password
« on: September 01, 2021, 10:07:00 am »
Hi Franco, thanks for your answer. I see your point, however there is still another issue: I gave another try with the privileges and removed the "GUI:All pages". Now the user cannot access the System:Access:User page (as expected) but also the Lobby:Password page is removed from the menu. Is this the intended behavior? In this way the user, simply, cannot change her OWN password!

5
General Discussion / Re: Admin user that cannot change root password
« on: September 01, 2021, 12:19:41 am »
Hi Franco and thanks for you interest: what I do is simply to create a new user and select for it all the privileges BUT the two I just mentioned. Then, the user can simply go into the System:Access:Users and do whatever she wants (e.g. change root password and privileges).

6
General Discussion / Admin user that cannot change root password
« on: August 30, 2021, 06:52:17 pm »
Hi all, I'm a new opnsense user so, please, don't blame me too much if this is a silly question! I would like to have an admin user with limited powers, in the sense that it should not be able to add users or change passwords of other users. I tried to create the user removing the privileges "GUI System: User Manager" and "GUI System: User Manager: Add Privileges", but it seems to me that it keeps the right to change root's password.
Is there something I am missing? Many thanks for your support

Pages: [1]
OPNsense is an OSS project © Deciso B.V. 2015 - 2024 All rights reserved
  • SMF 2.0.19 | SMF © 2021, Simple Machines
    Privacy Policy
    | XHTML | RSS | WAP2