tag:blogger.com,1999:blog-462006525194985726.post7750984195727748817..comments2024-03-24T12:41:56.165-04:00Comments on Sandro Tosi: QNAP firmware 4.5.1.1465: disable ssh management menuSandro Tosihttp://www.blogger.com/profile/17077191422205823991noreply@blogger.comBlogger13125tag:blogger.com,1999:blog-462006525194985726.post-25155978554462221942021-06-20T18:20:38.014-04:002021-06-20T18:20:38.014-04:00If you look in /etc/profile, you will see the foll...If you look in /etc/profile, you will see the following line near the bottom:<br /><br><br />[[ "admin" = "$USER" ]] && [[ "TRUE" == "$(getcfg -f /etc/config/uLinux.conf -d TRUE 'Console Mgmt' 'Auto Launch')" ]] && /sbin/qts-console-mgmt -f<br /><br><br />This tells us that we need to edit /etc/config/uLinux.conf and add the following:<br /><br><br />[Console Mgmt]<br />Auto Launch = FALSEKeith Hanlanhttps://www.blogger.com/profile/00110835235103077288noreply@blogger.comtag:blogger.com,1999:blog-462006525194985726.post-30084209785387142522021-04-14T17:11:08.141-04:002021-04-14T17:11:08.141-04:00Hi @Flexer,
Not in all releases... I'm on h4...Hi @Flexer,<br /> Not in all releases... I'm on h4.5.1.1582 (2021/02/17) and the option isn't there.pbrunnenhttps://www.blogger.com/profile/01792259195210939158noreply@blogger.comtag:blogger.com,1999:blog-462006525194985726.post-43526048311837653532021-04-09T12:39:57.619-04:002021-04-09T12:39:57.619-04:00This can be set in control panel now:
Control Pan...This can be set in control panel now:<br /><br />Control Panel > System > General Settings > Console Management > Enable Console ManagementFlexerhttps://www.blogger.com/profile/13118967109738933023noreply@blogger.comtag:blogger.com,1999:blog-462006525194985726.post-73223576666154587172021-03-03T12:26:01.464-05:002021-03-03T12:26:01.464-05:00Just set this to run at startup and it will preven...Just set this to run at startup and it will prevent this from happening again...<br />sed -i '/^[^#]/ s/\(^.*\[\[ "admin" = "\$USER" \]\].*$\)/#\ \1/' /etc/profilepbrunnenhttps://www.blogger.com/profile/01792259195210939158noreply@blogger.comtag:blogger.com,1999:blog-462006525194985726.post-10021463901377923922021-01-07T21:56:14.148-05:002021-01-07T21:56:14.148-05:00Megatron555, you're probably better off by jus...Megatron555, you're probably better off by just using admin; but if you want to explore a different user, i suggest to follow up with the QNAP forums or user support channels.Sandro Tosihttps://www.blogger.com/profile/13017373086527472437noreply@blogger.comtag:blogger.com,1999:blog-462006525194985726.post-37513236418313646582021-01-07T17:46:31.292-05:002021-01-07T17:46:31.292-05:00Hello, how do you modify the scripts if the new me...Hello, how do you modify the scripts if the new menu comes out through ssh? I made those modifications by ssh, now I don't know how to do it. I have created a new user, I have given him permissions for sshi and with that user if I get the usual bash console, but I have no privileges to do anything. I use sudo but the password is not that of the admin account with which I enter through the web. Am I lost? Can you help me?Megatron555https://www.blogger.com/profile/04442542269028601600noreply@blogger.comtag:blogger.com,1999:blog-462006525194985726.post-24916037719533526542020-12-21T22:22:46.559-05:002020-12-21T22:22:46.559-05:00did you try restart yet since your hack? ;)
it'...did you try restart yet since your hack? ;)<br />it's "embedded" system, files come back each boot.<br />PaPohttps://www.blogger.com/profile/05717123518433973646noreply@blogger.comtag:blogger.com,1999:blog-462006525194985726.post-61215600416543783182020-12-21T16:29:29.819-05:002020-12-21T16:29:29.819-05:00The menu is started with "/sbin/qts-console-m...The menu is started with "/sbin/qts-console-mgmt -f" in the last line of /etc/profile. You can delete this line and have freedom. - At least until the next update... ;-)gromlixhttps://www.blogger.com/profile/04591566956862447726noreply@blogger.comtag:blogger.com,1999:blog-462006525194985726.post-87135417627675699992020-12-21T16:28:50.576-05:002020-12-21T16:28:50.576-05:00This comment has been removed by the author.gromlixhttps://www.blogger.com/profile/04591566956862447726noreply@blogger.comtag:blogger.com,1999:blog-462006525194985726.post-55853391852730286812020-12-07T12:34:16.779-05:002020-12-07T12:34:16.779-05:00there is.
in cca 2018 QTS, SSH users is an option ...there is.<br />in cca 2018 QTS, SSH users is an option in Control Panel > Network > Telnet<br /><br />but also, or before that:<br />enable it in ssh server config /etc/config/ssh/sshd_config add username in AllowUsers<br />then define sudoers in a file in path /usr/etc/sudoers.d, trick is that the second one is tmpfs, search how to edit autorun to add the file on each boot.<br /><br />But to confess I still use root (admin) to SSH in WinSCP while local.<br /><br />and yes, QNAP's security is rubbish, but so is Synology's and what would you do?<br />Below all that it's still linux, we are free to enable, disable, modify what we want.PaPohttps://www.blogger.com/profile/05717123518433973646noreply@blogger.comtag:blogger.com,1999:blog-462006525194985726.post-17790271359200710422020-12-07T11:57:55.420-05:002020-12-07T11:57:55.420-05:00This comment has been removed by the author.PaPohttps://www.blogger.com/profile/05717123518433973646noreply@blogger.comtag:blogger.com,1999:blog-462006525194985726.post-58403445191248207002020-11-06T16:16:40.641-05:002020-11-06T16:16:40.641-05:00tbh, i dont know and never cared to check: i'm...tbh, i dont know and never cared to check: i'm on with sshing as rootSandro Tosihttps://www.blogger.com/profile/13017373086527472437noreply@blogger.comtag:blogger.com,1999:blog-462006525194985726.post-73528158024723471462020-11-06T12:19:05.128-05:002020-11-06T12:19:05.128-05:00Well, is there any other way than SSH-ing as root?...Well, is there any other way than SSH-ing as root? I had for a brief time a QNAP, but sold it as I found out that it's very restrictive environment, and I wasn't able to actually add a non-root user for SSH.<br /><br />Too bad, the hardware was pretty neat.Iustin Pophttps://www.blogger.com/profile/10921305325714252660noreply@blogger.com