Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    SSH easyrule works with root only. Custom user cannot write config.xml

    Scheduled Pinned Locked Moved General pfSense Questions
    7 Posts 3 Posters 595 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • N
      nagaraja
      last edited by

      Hey folks,

      i am trying to ssh easyrule command and reload pf rules. I am able to successfully do it using root user access. On the contrary, if i use a new user, even with admin rights i get on webui:

      Unable to open /cf/conf/config.xml for writing in write_config()
      

      I am on 2.4.4-RELEASE-p3 (amd64)

      Is this working as intended or is there something i am missing?

      any help is really appreciated

      Thanks

      GertjanG 1 Reply Last reply Reply Quote 0
      • stephenw10S
        stephenw10 Netgate Administrator
        last edited by

        You usually only see that if you have added the User - Config: Deny Config Write privilege to the user.

        Steve

        1 Reply Last reply Reply Quote 0
        • GertjanG
          Gertjan @nagaraja
          last edited by Gertjan

          @nagaraja said in SSH easyrule works with root only. Custom user cannot write config.xml:

          is there something i am missing?

          Yep. Read the release notes (2.4.5-p1) to see the list with issues that got resolved.

          No "help me" PM's please. Use the forum, the community will thank you.
          Edit : and where are the logs ??

          1 Reply Last reply Reply Quote 0
          • N
            nagaraja
            last edited by

            Hey guyz,

            i am honored to get answers from both @stephenw10, my fav pfGOD and the iconic @Gertjan.

            Checking release notes i found this "Fixed handling of misconfigured groups which prevented the admin user from making configuration changes #10492", it is related to my behaviour but it is not too similar, because i have no issue with admin account.

            The only thing i have yet not tried is to apply privileges instead of inherit them from admin group membership; that's probably pointing to the resolved bug.

            Anyway i will update soon to verify it.

            Thanks all guyz

            1 Reply Last reply Reply Quote 0
            • stephenw10S
              stephenw10 Netgate Administrator
              last edited by

              You should upgrade to 2.4.5p1 when you can either way.

              Steve

              1 Reply Last reply Reply Quote 0
              • N
                nagaraja
                last edited by

                I will surely do that way

                fb285e7d-d09f-4e59-a13c-8d8be69fd30e-immagine.png

                1 Reply Last reply Reply Quote 0
                • N
                  nagaraja
                  last edited by

                  and thanks to be accurate on answers

                  1 Reply Last reply Reply Quote 0
                  • First post
                    Last post
                  Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.