Difference between revisions of "creating a new user on Gaia via CLI"
From cpwiki.net
				
								
				
				
																
				
				
								
				
| Line 2: | Line 2: | ||
| == add user == | == add user == | ||
| − |   add user jsmith uid 1005 homedir /home/jsmith | + |   > add user jsmith uid 1005 homedir /home/jsmith | 
| == set parameters == | == set parameters == | ||
| − |   set user jsmith password | + |   > set user jsmith password | 
| == set roles == | == set roles == | ||
| − |   add rba user jsmith roles adminRole | + |   > add rba user jsmith roles adminRole | 
| == set access == | == set access == | ||
| − |   add rba user jsmith access-mechanisms Web-UI,CLI | + |   > add rba user jsmith access-mechanisms Web-UI,CLI | 
| == set uid to root == | == set uid to root == | ||
| − |   set user jsmith uid 0 | + |   # set user jsmith uid 0 | 
| I don't like setting the user to the root UID.  I think Check Point made a mess of the auth permissions as they have in the past.  Without setting the root uid above, a user can't run fw commmands like "fw stat".   | I don't like setting the user to the root UID.  I think Check Point made a mess of the auth permissions as they have in the past.  Without setting the root uid above, a user can't run fw commmands like "fw stat".   | ||
Revision as of 18:52, 16 December 2013
where jsmith should be replace with your username
| Contents | 
add user
> add user jsmith uid 1005 homedir /home/jsmith
set parameters
> set user jsmith password
set roles
> add rba user jsmith roles adminRole
set access
> add rba user jsmith access-mechanisms Web-UI,CLI
set uid to root
# set user jsmith uid 0
I don't like setting the user to the root UID. I think Check Point made a mess of the auth permissions as they have in the past. Without setting the root uid above, a user can't run fw commmands like "fw stat".
error:
/opt/CPshrd-R75.40/tmp/.CPprofile.sh: line 96: /opt/CPcvpn-R75.40/scripts/CVPNprofile.sh: Permission denied
 
					