Pivotal Knowledge Base

Follow

GPCC 1.3 gpadmin can log on without entering password

Environment

Product Version
 Pivotal Greenplum (GPDB)  4.3.x
 Greenplum Command Center  1.3.0.0

Symptom

  • gpadmin can log on without entering password and hitting enter when the cursor is on password tab or by entering ANY password.
  • Tried to set the limitation for gpadmin for gpperfmon database for local, host and even from specific IP but the issue persists.
  • Once logged in through gpadmin it can cancel queries for users.
  • allow_trust_logon= no has been added, but it does not fix the issue.

Note:

  • For GPCC functions gpstop and gpstart, a prompt for password appears and it performs proper validation of the entered password.

Logs:

2015-05-20 18:58:43,149 - Authentication failed user(test): Incorrect username/password
2015-05-20 18:58:53,586 - Authenticated user(gpadmin) ok superuser(True) operator(False)
2015-05-20 18:58:53,667 - Configuration file: {'GPMMON': {'quantum': 15}, 'WEB_APP': {'allowautologin': 'True', 'server_name': 'PROD', 'diskthresholdvalue': '8
0', 'maxconnections': '10', 'allow_trust_logon': 'no', 'ssh_full_path': 'ssh', 'timeout': '1800', 'master_port': '5432', 'csrf_protect': 'False', 'ssl_enabled': 'True',
'pollinterval': '30000', 'securedbhealth': 'False'}}
2015-05-20 18:58:53,667 - remote = False
2015-05-20 18:58:53,667 - verbose = False
2015-05-20 18:58:53,668 - server_name = PROD
2015-05-20 18:58:53,668 - ssl_enabled = True
2015-05-20 18:58:53,668 - quantum = 15

Resolution

Upgrade GPCC to 1.3.0.1 or above.

Internal reference:

https://jira.eng.pivotal.io/browse/CMDR-1977

 

Comments

Powered by Zendesk