Page 1 of 1
Change Default Admin User
Posted: Thu Jan 15, 2015 10:09 pm
by mehargags
Hi all,
I was wondering, if I have a fairly matured VestaCP running around 5-6 domains already, is there a failsafe way to Change the Default "ADMIN" username to something else?
from Security standpoint as well as personalization, it is important. But please advise what's the best of way to do it, so that file permissions or site setup doesn't break!
Re: Change Default Admin User
Posted: Fri Jan 16, 2015 10:28 am
by joem
mehargags wrote:Hi all,
I was wondering, if I have a fairly matured VestaCP running around 5-6 domains already, is there a failsafe way to Change the Default "ADMIN" username to something else?
from Security standpoint as well as personalization, it is important. But please advise what's the best of way to do it, so that file permissions or site setup doesn't break!
Not unless you plan to edit almost every file of Vesta CP.
Re: Change Default Admin User
Posted: Fri Jan 16, 2015 11:03 am
by mehargags
This is a potential threat to default VestaCP installs. Devs and other Non-Experienced in Security would normally install VestaCP and start using it in its default state!
if the default port 8083 and Default Username admin is known to an attacker, all he needs to crack is the "password". Its just like a fresh linux install with Root SSH enabled!
I request the VESTA CP team to look into this matter asap.
the best way forward is to rather PROMPT a default admin username while installing VestaCP. This way is easiest. Than said, can I edit the default install script to implement this ?
Re: Change Default Admin User
Posted: Fri Jan 16, 2015 12:24 pm
by skurudo
mehargags wrote:I request the VESTA CP team to look into this matter asap.
Just add request on
https://bugs.vestacp.com/
Re: Change Default Admin User
Posted: Fri Jan 16, 2015 7:27 pm
by imperio
This suggestion already exist in our bug tracking system
https://bugs.vestacp.com/responses/chan ... n-username
Re: Change Default Admin User
Posted: Sat Jan 17, 2015 11:19 am
by mehargags
Thanks Imperio
I understand.. you may mark this thread closed!
Re: Change Default Admin User
Posted: Sat Oct 10, 2015 1:25 pm
by webass
I sugest to set a crazy safe password then, like with all in it like:
will the panel accept 20 chars and all umlauts and so ?