Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Change admin username

    Scheduled Pinned Locked Moved General pfSense Questions
    15 Posts 4 Posters 7.2k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • C
      c0urier
      last edited by

      Couldn't you just create a new users with the same access and disable the admin user?

      pfsense: 2.1.5-RELEASE, AMD64
      Running on: MB/CPU: ASUS P8H77-I / Core i3-2120T | MEM: 8GB DDR3 | HDD: WD Blue 120GB 2.5" SATA | WAN/LAN: Fujitsu D2735-2 – Intel® chip 82576NS | WLAN: Realtek® 8111F PCIe | Connection: 1000/1000Mbit (Bredband2.com)
      [/U

      1 Reply Last reply Reply Quote 0
      • ?
        Guest
        last edited by

        I want to remove it completely. how you set username during installation?

        1 Reply Last reply Reply Quote 0
        • C
          c0urier
          last edited by

          I can't remember honestly - I just know I had the option probably in one of the first GUI's shown during the installation.

          pfsense: 2.1.5-RELEASE, AMD64
          Running on: MB/CPU: ASUS P8H77-I / Core i3-2120T | MEM: 8GB DDR3 | HDD: WD Blue 120GB 2.5" SATA | WAN/LAN: Fujitsu D2735-2 – Intel® chip 82576NS | WLAN: Realtek® 8111F PCIe | Connection: 1000/1000Mbit (Bredband2.com)
          [/U

          1 Reply Last reply Reply Quote 0
          • ?
            Guest
            last edited by

            No solution?

            1 Reply Last reply Reply Quote 0
            • pttP
              ptt Rebel Alliance
              last edited by

              Maybe "Mr. Search" have some answers for you  ;D

              http://forum.pfsense.org/index.php/topic,60013.msg326616.html#msg326616

              http://forum.pfsense.org/index.php/topic,59119.msg317544.html#msg317544

              1 Reply Last reply Reply Quote 0
              • ?
                Guest
                last edited by

                very bad. admin user is bound to root. we can not remove it. this is strange…not any other security product do this.

                1 Reply Last reply Reply Quote 0
                • jimpJ
                  jimp Rebel Alliance Developer Netgate
                  last edited by

                  Admin is bound to root, but you can still disable it in the GUI. It is not advisable to completely remove it. It would not work for things like XMLRPC sync which still only works with the "admin" user.

                  There are other places it is hardcoded or handled specially.

                  It's something we intend to address over time but there are ways around it now. You can install the sudo pkg, disable admin, and still perform root tasks as needed with non-root users.

                  Remember: Upvote with the 👍 button for any user/post you find to be helpful, informative, or deserving of recognition!

                  Need help fast? Netgate Global Support!

                  Do not Chat/PM for help!

                  1 Reply Last reply Reply Quote 0
                  • ?
                    Guest
                    last edited by

                    thanks jim,
                    but when i disable admin user in webgui, i can still  login  with admin or root in console menu.
                    how can i solve this problem?

                    1 Reply Last reply Reply Quote 0
                    • ?
                      Guest
                      last edited by

                      Can you force that it needs certificates to log in?

                      I quickly search for changing the login ID from root to something else within FreeBSD, and nothing came up. I suspect nobody cares to as anybody allowed physical access is trusted?

                      I personally restrict access to the webGUI to one IP/mac on a specific interface that only this machine resides on. I don't make changes very often, only in my lab. I have some deep rooted paranoia about vulnerabilities in web daemons.

                      1 Reply Last reply Reply Quote 0
                      • ?
                        Guest
                        last edited by

                        Thanks,
                        Have you disabled anti-lockout rule and defined a new firewall rule to restrict access?

                        1 Reply Last reply Reply Quote 0
                        • ?
                          Guest
                          last edited by

                          Yup, the default anti-lockout rule is disabled. Only specific subnet on a specific vlan can access my pfsense. But I rarely make changes, so this is perfect for me.
                          @Amirkabir:

                          Thanks,
                          Have you disabled anti-lockout rule and defined a new firewall rule to restrict access?

                          1 Reply Last reply Reply Quote 0
                          • First post
                            Last post
                          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.