Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Users in Group admin via SSH and Console Options

    Scheduled Pinned Locked Moved General pfSense Questions
    4 Posts 3 Posters 577 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • P
      pj1
      last edited by

      We have started granting Users administrator (Groups: admins) SSH access.
      We noticed using the admin account, the Console options are displayed:

      *** Welcome to pfSense 2.5.2-RELEASE (amd64) on pfSense ***
      
       WAN (wan)       -> igb0       -> v4/DHCP4: 192.168.0.173/24
                                        v6/DHCP6: 2001:8003:300e:6601:2f1:f3ff:fe21:3f99/64
       LAN_MGMT (lan)  -> igb1       -> v4: 192.168.1.1/26
      
       0) Logout (SSH only)                  9) pfTop
       1) Assign Interfaces                 10) Filter Logs
       2) Set interface(s) IP address       11) Restart webConfigurator
       3) Reset webConfigurator password    12) PHP shell + pfSense tools
       4) Reset to factory defaults         13) Update from console
       5) Reboot system                     14) Disable Secure Shell (sshd)
       6) Halt system                       15) Restore recent configuration
       7) Ping host                         16) Restart PHP-FPM
       8) Shell
      
      Enter an option:
      

      We have added so it's identical to the default admin account:
      User - System: Shell account access Indicates whether the user is able to login for example via SSH. (admin privilege)

      But additional User accounts (within the Groups: admins), drop straight into their home directory into the shell.

      Is it possible to configure User accounts to display the Console options too?

      1 Reply Last reply Reply Quote 0
      • stephenw10S
        stephenw10 Netgate Administrator
        last edited by

        You can just add /etc/rc.initial to the end of their .tcshrc file in /home/{user}.

        Steve

        P 1 Reply Last reply Reply Quote 1
        • P
          pj1 @stephenw10
          last edited by

          @stephenw10 Thank you.

          1 Reply Last reply Reply Quote 0
          • jimpJ
            jimp Rebel Alliance Developer Netgate
            last edited by

            Be aware that most of those functions won't work for non-root users even if they are in the admin group.

            You should install the sudo package, grant access to the admin group users to run things as root, and then run the menu with sudo /etc/rc.initial.

            They will be prompted to input their password again unless you configure sudo to allow access without a password.

            Remember: Upvote with the 👍 button for any user/post you find to be helpful, informative, or deserving of recognition!

            Need help fast? Netgate Global Support!

            Do not Chat/PM for help!

            1 Reply Last reply Reply Quote 1
            • First post
              Last post
            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.