Ad Widget

Collapse

Loging as Admin ends up logged as guest

Collapse
X
 
  • Time
  • Show
Clear All
new posts
  • jees
    Junior Member
    • Nov 2019
    • 1

    #1

    Loging as Admin ends up logged as guest

    Hello, on raw "zabbix 4.4 from sources" install i cannot login to frontend as default admin account.

    On login page i'm using credentials: Admin/zabbix, i get log in but i'm not logged as Super User and i cant do anything.


    Code:
     userid | alias |  name  |    surname    |              passwd              | url | autologin | autologout | lang  | refresh | type |  theme  | attempt_failed |  attempt_ip   | attempt_clock | rows_per_page
    --------+-------+--------+---------------+----------------------------------+-----+-----------+------------+-------+---------+------+---------+----------------+---------------+---------------+---------------
          2 | guest |        |               | d41d8cd98f00b204e9800998ecf8427e |     |         0 | 15m        | en_GB | 30s     |    1 | default |              0 |               |             0 |            50
          1 | Admin | Zabbix | Administrator | 5fce1b3e34b520afeffb37ce08c7cd66 |     |         1 | 0          | en_GB | 30s     |    3 | default |              0 | 172.22.122.40 |    1574162684 |            50
    (2 rows)
    Code:
     select * from usrgrp;
     usrgrpid |           name            | gui_access | users_status | debug_mode
    ----------+---------------------------+------------+--------------+------------
    
    
    
            8 | Guests                    |          1 |            0 |          0
            9 | Disabled                  |          0 |            1 |          0
           11 | Enabled debug mode        |          0 |            0 |          1
           12 | No access to the frontend |          3 |            0 |          0
            7 | Zabbix administrators     |          0 |            0 |          0
    (5 rows)
    can't see anything in server log or frontend php log. Can anyone help please?

    EDIT: it looks like user sessions are not creating, atleast not in php session.save_path. Only sessions i can find there are serverCheck ones, and plenty of empty files (supposed to be the user sessions?)
    Last edited by jees; 19-11-2019, 14:28.
  • Cenness
    Junior Member
    • Dec 2019
    • 1

    #2
    When we should expect an update on this issue?

    I have the same problem on my install. The only difference is I did install from the official debian repo. I tried update to 4.4.3 but it didn't help.

    Relevant (hopefully) info:
    Code:
    ii  zabbix-agent                      1:4.4.3-1+buster                                   amd64        Zabbix network monitoring solution - agent
    ii  zabbix-apache-conf                1:4.4.3-1+buster                                   all          Zabbix network monitoring solution - PHP front-end
    ii  zabbix-frontend-php               1:4.4.3-1+buster                                   all          Zabbix network monitoring solution - PHP front-end
    ii  zabbix-release                    1:4.4-1+buster                                     all          Zabbix official repository configuration
    ii  zabbix-server-mysql               1:4.4.3-1+buster                                   amd64        Zabbix network monitoring solution - server (MySQL)
    
    ii  php-apcu                          5.1.17+4.0.11-2+0~20191119.12+debian10~1.gbp013b27 amd64        APC User Cache for PHP
    ii  php-apcu-bc                       1.0.5-1+0~20191128.11+debian10~1.gbp90a6a0         amd64        APCu Backwards Compatibility Module
    ii  php-bcmath                        2:7.3+70+0~20191118.18+debian10~1.gbp66b4ed        all          Bcmath module for PHP [default]
    ii  php-common                        2:70+0~20191118.18+debian10~1.gbp66b4ed            all          Common files for PHP packages
    ii  php-igbinary                      3.0.1+2.0.8-2+0~20191119.13+debian10~1.gbpaafd11   amd64        igbinary PHP serializer
    ii  php-imagick                       3.4.4-1+0~20191119.13+debian10~1.gbpc5da26         amd64        Provides a wrapper to the ImageMagick library
    ii  php-ldap                          2:7.3+70+0~20191118.18+debian10~1.gbp66b4ed        all          LDAP module for PHP [default]
    ii  php-mysql                         2:7.3+70+0~20191118.18+debian10~1.gbp66b4ed        all          MySQL module for PHP [default]
    ii  php-redis                         5.0.2+4.3.0-2+0~20191128.17+debian10~1.gbp070358   amd64        PHP extension for interfacing with Redis
    ii  php7.3                            7.3.12-1+0~20191128.49+debian10~1.gbp24559b        all          server-side, HTML-embedded scripting language (metapackage)
    ii  php7.3-bcmath                     7.3.12-1+0~20191128.49+debian10~1.gbp24559b        amd64        Bcmath module for PHP
    ii  php7.3-cli                        7.3.12-1+0~20191128.49+debian10~1.gbp24559b        amd64        command-line interpreter for the PHP scripting language
    ii  php7.3-common                     7.3.12-1+0~20191128.49+debian10~1.gbp24559b        amd64        documentation, examples and common module for PHP
    ii  php7.3-curl                       7.3.12-1+0~20191128.49+debian10~1.gbp24559b        amd64        CURL module for PHP
    ii  php7.3-gd                         7.3.12-1+0~20191128.49+debian10~1.gbp24559b        amd64        GD module for PHP
    ii  php7.3-intl                       7.3.12-1+0~20191128.49+debian10~1.gbp24559b        amd64        Internationalisation module for PHP
    ii  php7.3-json                       7.3.12-1+0~20191128.49+debian10~1.gbp24559b        amd64        JSON module for PHP
    ii  php7.3-ldap                       7.3.12-1+0~20191128.49+debian10~1.gbp24559b        amd64        LDAP module for PHP
    ii  php7.3-mbstring                   7.3.12-1+0~20191128.49+debian10~1.gbp24559b        amd64        MBSTRING module for PHP
    ii  php7.3-mysql                      7.3.12-1+0~20191128.49+debian10~1.gbp24559b        amd64        MySQL module for PHP
    ii  php7.3-opcache                    7.3.12-1+0~20191128.49+debian10~1.gbp24559b        amd64        Zend OpCache module for PHP
    ii  php7.3-phpdbg                     7.3.12-1+0~20191128.49+debian10~1.gbp24559b        amd64        server-side, HTML-embedded scripting language (PHPDBG binary)
    ii  php7.3-readline                   7.3.12-1+0~20191128.49+debian10~1.gbp24559b        amd64        readline module for PHP
    ii  php7.3-soap                       7.3.12-1+0~20191128.49+debian10~1.gbp24559b        amd64        SOAP module for PHP
    ii  php7.3-xml                        7.3.12-1+0~20191128.49+debian10~1.gbp24559b        amd64        DOM, SimpleXML, WDDX, XML, and XSL module for PHP
    ii  php7.3-zip                        7.3.12-1+0~20191128.49+debian10~1.gbp24559b        amd64        Zip module for PHP
    
    ii  apache2                           2.4.38-3+deb10u3                                   amd64        Apache HTTP Server
    ii  apache2-bin                       2.4.38-3+deb10u3                                   amd64        Apache HTTP Server (modules and other binary files)
    ii  apache2-data                      2.4.38-3+deb10u3                                   all          Apache HTTP Server (common files)
    ii  apache2-utils                     2.4.38-3+deb10u3                                   amd64        Apache HTTP Server (utility programs for web servers)
    ii  libapache2-mod-fcgid              1:2.3.9-4                                          amd64        FastCGI interface module for Apache 2
    ii  libapache2-mod-php7.3             7.3.12-1+0~20191128.49+debian10~1.gbp24559b        amd64        server-side, HTML-embedded scripting language (Apache 2 module)
    php.ini
    Code:
    (PHP)
    engine = On
    short_open_tag = Off
    precision = 14
    output_buffering = 4096
    zlib.output_compression = Off
    implicit_flush = Off
    unserialize_callback_func =
    serialize_precision = -1
    disable_functions = pcntl_alarm,pcntl_fork,pcntl_waitpid,pcntl_wait,pcntl_wifexited,pcntl_wifstopped,pcntl_wifsignaled,pcntl_wifcontinued,pcntl_wexitstatus,pcntl_wtermsig,pcntl_wstopsig,pcntl_signal,pcntl_signal_get_handler,pcntl_signal_dispatch,pcntl_get_last_error,pcntl_strerror,pcntl_sigprocmask,pcntl_sigwaitinfo,pcntl_sigtimedwait,pcntl_exec,pcntl_getpriority,pcntl_setpriority,pcntl_async_signals,
    disable_classes =
    zend.enable_gc = On
    expose_php = Off
    max_execution_time = 300
    max_input_time = 600
    max_input_vars = 10000
    memory_limit = 128M
    error_reporting = E_ALL & ~E_DEPRECATED & ~E_NOTICE & ~E_STRICT
    display_errors = Off
    display_startup_errors = Off
    log_errors = On
    log_errors_max_len = 1024
    ignore_repeated_errors = Off
    ignore_repeated_source = Off
    report_memleaks = On
    html_errors = On
    variables_order = "GPCS"
    request_order = "GP"
    register_argc_argv = Off
    auto_globals_jit = On
    post_max_size = 16M
    auto_prepend_file =
    auto_append_file =
    default_mimetype = "text/html"
    default_charset = "UTF-8"
    doc_root =
    user_dir =
    enable_dl = Off
    file_uploads = On
    upload_max_filesize = 2M
    max_file_uploads = 20
    allow_url_fopen = On
    allow_url_include = Off
    default_socket_timeout = 60
    (CLI Server)
    cli_server.color = On
    (Date)
    date.timezone = Europe/Moscow
    (filter)
    (iconv)
    (imap)
    (intl)
    (sqlite3)
    (Pcre)
    (Pdo)
    (Pdo_mysql)
    pdo_mysql.default_socket=
    (Phar)
    (mail function)
    SMTP = localhost
    smtp_port = 25
    mail.add_x_header = Off
    (ODBC)
    odbc.allow_persistent = On
    odbc.check_persistent = On
    odbc.max_persistent = -1
    odbc.max_links = -1
    odbc.defaultlrl = 4096
    odbc.defaultbinmode = 1
    (Interbase)
    ibase.allow_persistent = 1
    ibase.max_persistent = -1
    ibase.max_links = -1
    ibase.timestampformat = "%Y-%m-%d %H:%M:%S"
    ibase.dateformat = "%Y-%m-%d"
    ibase.timeformat = "%H:%M:%S"
    (MySQLi)
    mysqli.max_persistent = -1
    mysqli.allow_persistent = On
    mysqli.max_links = -1
    mysqli.default_port = 3306
    mysqli.default_socket =
    mysqli.default_host =
    mysqli.default_user =
    mysqli.default_pw =
    mysqli.reconnect = Off
    (mysqlnd)
    mysqlnd.collect_statistics = On
    mysqlnd.collect_memory_statistics = Off
    (OCI8)
    (PostgreSQL)
    pgsql.allow_persistent = On
    pgsql.auto_reset_persistent = Off
    pgsql.max_persistent = -1
    pgsql.max_links = -1
    pgsql.ignore_notice = 0
    pgsql.log_notice = 0
    (bcmath)
    bcmath.scale = 0
    (browscap)
    (Session)
    session.save_handler = files
    session.save_path = "/var/lib/php/sessions"
    session.use_strict_mode = 0
    session.use_cookies = 1
    session.use_only_cookies = 0
    session.name = PHPSESSID
    session.auto_start = 0
    session.cookie_lifetime = 0
    session.cookie_path = /
    session.cookie_domain =
    session.cookie_httponly =
    session.cookie_samesite =
    session.serialize_handler = php
    session.gc_probability = 0
    session.gc_divisor = 1000
    session.gc_maxlifetime = 1440
    session.referer_check =
    session.cache_limiter = nocache
    session.cache_expire = 180
    session.use_trans_sid = 0
    session.sid_length = 26
    session.trans_sid_tags = "a=href,area=href,frame=src,form="
    session.sid_bits_per_character = 5
    (Assertion)
    zend.assertions = -1
    (COM)
    (mbstring)
    (gd)
    (exif)
    (Tidy)
    tidy.clean_output = Off
    (soap)
    soap.wsdl_cache_enabled=1
    soap.wsdl_cache_dir="/tmp"
    soap.wsdl_cache_ttl=86400
    soap.wsdl_cache_limit = 5
    (sysvshm)
    (ldap)
    ldap.max_links = -1
    (dba)
    (opcache)
    (curl)
    (openssl)
    always_populate_raw_post_data = -1

    Comment

    • baggins
      Junior Member
      • Dec 2019
      • 2

      #3
      Is there an update to this. I too installed from the Debian repo to 4.4.4 but from 3.8. No errors in the logs and permissions in the Database normal and flushed caches ect and tried from machines that have never logged in previously.

      Comment

      • baggins
        Junior Member
        • Dec 2019
        • 2

        #4
        running from the Debian (Stretch) repo

        Comment

        • iwik.sk
          Junior Member
          • May 2020
          • 2

          #5
          Hi, I have same issue with 5.0, debian 10 packages. I have found that
          1) In incognito mode I can login with super admin permissions
          2) Somebody reported it, but then close with not real solution "problem was in cookies settings in httpd.conf" https://support.zabbix.com/browse/ZBX-16985
          3) In other browsers (Edge, Internet explorer) working also ok. In Opera 68 which I am using I am ending with guest privileges.
          4) When I enabled https it is working in Opera.


          Since https for admin login is best practice, it is not a big deal at all. It seems to be some stupid bug which cost me hours to figure out.

          Comment

          • Janet Kew
            Junior Member
            • Jan 2021
            • 11

            #6
            Where is your httpd.conf located and what did you put in it in order zabbix to work?
            I've upgraded from 4.4 to 5.0 and super admin users that have cleared their cookies and sessions are being logged as guest users. how to fix this?

            Comment

            Working...