Difference between revisions of "creating a new user on Gaia via CLI"

From cpwiki.net
Jump to: navigation, search
Check Point Profressional Services
Line 2: Line 2:
  
 
== add user ==
 
== add user ==
  add user jsmith uid 1005 homedir /home/jsmith
+
  > add user jsmith uid 1005 homedir /home/jsmith
  
 
== set parameters ==
 
== set parameters ==
  set user jsmith password
+
  > set user jsmith password
 
   
 
   
 
== set roles ==
 
== set roles ==
  add rba user jsmith roles adminRole
+
  > add rba user jsmith roles adminRole
  
 
== set access ==
 
== set access ==
  add rba user jsmith access-mechanisms Web-UI,CLI
+
  > add rba user jsmith access-mechanisms Web-UI,CLI
  
 
== set uid to root ==
 
== set uid to root ==
  set user jsmith uid 0
+
  # set user jsmith uid 0
  
 
I don't like setting the user to the root UID.  I think Check Point made a mess of the auth permissions as they have in the past.  Without setting the root uid above, a user can't run fw commmands like "fw stat".  
 
I don't like setting the user to the root UID.  I think Check Point made a mess of the auth permissions as they have in the past.  Without setting the root uid above, a user can't run fw commmands like "fw stat".  

Revision as of 18:52, 16 December 2013

where jsmith should be replace with your username

Contents

add user

> add user jsmith uid 1005 homedir /home/jsmith

set parameters

> set user jsmith password

set roles

> add rba user jsmith roles adminRole

set access

> add rba user jsmith access-mechanisms Web-UI,CLI

set uid to root

# set user jsmith uid 0

I don't like setting the user to the root UID. I think Check Point made a mess of the auth permissions as they have in the past. Without setting the root uid above, a user can't run fw commmands like "fw stat".

error:

/opt/CPshrd-R75.40/tmp/.CPprofile.sh: line 96: /opt/CPcvpn-R75.40/scripts/CVPNprofile.sh: Permission denied