This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

User Preferences tab still missing for AD authenticated users?

Hi,

I found this 9 Year old post after wondering why I cannot find this tab when authenticated with an AD user. So I cannot turn off the annoying STRG-C function and other things.

Strange thing is, that this does not happen, when I'm connected to the local SG. If I access an other SG behind an IPSEC Site-2-Site, the tab is missing. Why?

Version: 9.706-9

Any chance to change these settings?

local User admin:

AD User:



This thread was automatically locked due to age.
  • Hallo,

    I've never seen those Shortcut options on any of the dozens of UTMs I've touched.  Is there a command line way to un-hide those options?

    You didn't say which version of UTM you're on.  I'm on 9.706-9.

    FWIW, I just logged into WebAdmin as an AD-authenticated user and got the "User Preferences' tab.  I'm on 9.706-9.

    Cheers - Bob

     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
  • I believe that there are certain elements of WebAdmin that are not accessible when utilizing VPN-type connections for security.  They are accessible when you are accessing them locally, but remotely, you wouldn't want to change something then no longer be able to access it, or open something you didn't mean to open up.

    OPNSense 64-bit | Intel Xeon 4-core v3 1225 3.20Ghz
    16GB Memory | 500GB SSD HDD | ATT Fiber 1GB
    (Former Sophos UTM Veteran, Former XG Rookie)

  • On my UTM 9.707-5 i have this page if I login with local admin.

    With AD-Admin i don't see this!

  • Is the ad-admin account created/inported at the SG-device (for VPN for example) ... or used for webadmin only?

    SG need the local created user to store these settings.  

    Check the user-list


    Dirk

    Systema Gesellschaft für angewandte Datentechnik mbH  // Sophos Platinum Partner
    Sophos Solution Partner since 2003
    If a post solves your question, click the 'Verify Answer' link at this post.

  • I think Dirk is right, that this has nothing to do with the type of connection: I am seeing this at a remote site over a site-to-site ipsec-vpn -tunnel (Version 9.707):

    Mit freundlichem Gruß, best regards from Germany,

    Philipp Rusch

    New Vision GmbH, Germany
    Sophos Silver-Partner

    If a post solves your question please use the 'Verify Answer' button.

  • I'll say it again - I've never seen those Shortcut options in WebAdmin Settings before - not in 18 years with ASG/UTM.

    I have a UTM on 9.707-5 running in Amazon AWS.  My topology is:

         [AD server]<-->[local UTM on 9.706-9]<-- IPsec tunnel -->[UTM in AWS]

    From my laptop behind the local UTM, I connected to WebAdmin via the IPsec tunnel to its private AWS IP.  I then logged in to WebAdmin as a user authenticated on the AD server in my local subnet.  I believe that this is exactly the situation you described.  The "User Preferences' tab is there.

    I can only suggest getting some backups off your UTM, reloading from ISO and restoring.  Glück damit gehabt?

    Cheers - Bob

     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
  • I'll say it again too - i've seen this often. ;-)
    ... since Astaro .. i think .

    explanation:

    if you have 2 AD users ... one (adm-dirk) with local user-copy (Remotely authenticated [User data updated from backend automatically] Autogenerated) and one without SG-local-copy of user account (dirk):

    there is no user "dirk"

    both users are allowed to use the webadmin.
    take a look to the result:

    user= adm-dirk

    Webadminwith local usercopy

    user= dirk

    webadmin without local user copy

    However, if you also enable "automatic user creation" for WebAdmin, all Webadmin users have the "User Settings" tab.

    auto user creation

    .... really ...

    But mostly we have local copies of the user only, if the user is a VPN-User too. (Created by import-AD-Group or user-Portal)


    Dirk

    Systema Gesellschaft für angewandte Datentechnik mbH  // Sophos Platinum Partner
    Sophos Solution Partner since 2003
    If a post solves your question, click the 'Verify Answer' link at this post.