• 2.1.5 no Dashboard

    1
    0 Votes
    1 Posts
    901 Views
    No one has replied
  • How can a create a user that can just create local accounts for OpenVPN?

    10
    0 Votes
    10 Posts
    4k Views
    S
    EDIT:  So far, trying the method below my "restricted" user can't see the User Manager menu item in the gui, so even if the other changes I made are correct, I can't test them.  I'm no coder, so I'm still looking for exactly how the menus are drawn. I'm making a start into this.  I looked into /etc/inc/priv.defs.inc to find "interesting" php file names.  From there, I started looking at files in /usr/local/www to see what is there.  Here is my general plan: Make a copy of system_usermanager.php to system_usermanager_restricted.php, modify the copy to remove functions I don't want the restricted user to be able to do. Go to /etc/inc/priv folder and create a custom usermanager_restricted.priv.inc file and point the options therein to /usr/local.www.system_usermanager_restricted.php. I don't know if everything I want to restrict is in that one file.  At this point, I'd like my restricted user to be able to : Create a new user Set username for new user set password for new user tick the box to create a new cert for the user save new user. POSSIBLY delete users. Caveats I see are that it is possible that the custom files I create could be removed during a future upgrade, so I'm going to have to keep a copy of the custom files off box just in case. Also, if the file DOES get deleted, I'm not sure what happens to the user that is relying on those files for its rights - I assume that other rights will remain, but they would loose access to the customer user manager. If anyone has any feedback on my proposed process here, I'm all ears.  I don't "know" php, but I can generally figure things out from code that is already written.  This is likely going to take some trial and error (mostly error) on my part, so any hints would be appreciated.
  • Restricted user logging into webui does NOT defautl to dahsboard

    2
    0 Votes
    2 Posts
    1k Views
    S
    One additional piece of information - I just deleted and re-created the account, and now the user defaults to the Diagnostics: System Activity page again…. not sure how this works, obviously :)
  • BandwidthD problem

    1
    0 Votes
    1 Posts
    692 Views
    No one has replied
  • 2.1.5 Menu Overlap Fix

    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • 2.0.3 webGUI not responding to reset password done in the console. HELP!

    9
    0 Votes
    9 Posts
    3k Views
    O
    The command is not working it says "Not Permitted"
  • WebGUI Could Use Some Idiot-Proofing

    1
    0 Votes
    1 Posts
    661 Views
    No one has replied
  • OpenVPN client status problem

    7
    0 Votes
    7 Posts
    2k Views
    S
    At the risk of spamming this thread, I'll post another few tidbits I'm seeing. The RRD graph for this particular site-to-site openvpn server instance is displaying zero users, even when the status page is displaying all the client info and appears to be working (although it shows the wrong virtual IP address). To clarify the "wrong virtual IP address" issue: The "virtual IP" shown in the client status is the IP address of pfsense's tunnel endpoint, not the client endpoint.  That's wrong.  I tried reducing the VPN subnet for this particular server to a /30 so that there would be only 2 host IP's available, but that didn't change it (and was a pretty weak attempt at a fix, anyway). Willing to do more troubleshooting here, if anyone desires.
  • Wrong version number?

    2
    0 Votes
    2 Posts
    2k Views
    GertjanG
    Hi, Yes, don't worry, we've seen them all. You could try "System => Advanced=> Mitigate the BEAST SSL Attack" - but, honestly, I not for sure if it is even related. It's a known bug, with one major side effect: it leaves traces in the web server log ….
  • No WebGUI after config restore ("couldn't read private key")

    2
    0 Votes
    2 Posts
    2k Views
    W
    Just in case someone else should stumble across this issue. I was able to get back in via HTTPS by: Connecting via SSH and resetting the LAN IP (to what it was), and enabling HTTP when prompted. I then deleted the "webconfigurator default" cert, created a new CA and a new cert and switched the system back to HTTPs and all seems well.
  • 2.1.4 AMD64 traffic graphs stops responding

    3
    0 Votes
    3 Posts
    835 Views
    S
    It does so in IE as well. Havent tested chrome…
  • Custom Smart Status Widget modification (2.1.4)

    1
    0 Votes
    1 Posts
    805 Views
    No one has replied
  • DG config not updating in the gui

    2
    0 Votes
    2 Posts
    808 Views
    GertjanG
    Hi, Diagnostics => factory default Or the long way (15 minutes ?) : re-install. Note: editing directly the /cf/conf/config.xml always gives 'special effects' if the 'no errors' rule isn't respected ;)
  • Can't Delete entry from Diagnostics -> Table

    6
    0 Votes
    6 Posts
    1k Views
    A
    No, I still couldn't click the X on the states but the reboot cleared out the entry giving me grief anyway.  :-\
  • RRD Graphs not updating on traffic but the rest is okay??

    2
    0 Votes
    2 Posts
    495 Views
    ?
    Have you checked the interface? I have one box always picking the wrong interface for one RRD graph, but iirc it was the quality chart on a PPPoE connection…
  • Auto logout webgui

    2
    0 Votes
    2 Posts
    3k Views
    GertjanG
    Hi, System => User manager => Settings and you can set the session time (default 4 hours).
  • Webgui on opt2

    7
    0 Votes
    7 Posts
    1k Views
    T
    It sounds like he made the opt2 interface, but didn't right rules that would allow him to access it as it wouldn't be affected by the anti-lockout rule LAN has.
  • Gateway widget not updating

    1
    0 Votes
    1 Posts
    638 Views
    No one has replied
  • Source interface(IP) for authentication via Radius

    1
    0 Votes
    1 Posts
    758 Views
    No one has replied
  • Shellcmd commands?

    2
    0 Votes
    2 Posts
    1k Views
    Z
    anyone with an answer please?
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.