<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: WebUI login in General Topics</title>
    <link>https://community.checkpoint.com/t5/General-Topics/WebUI-login/m-p/226042#M37720</link>
    <description>&lt;P&gt;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/9577"&gt;@Jamie_Kelahan&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Sorry, forgot this line.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;&lt;A href="https://sc1.checkpoint.com/documents/R81/WebAdminGuides/EN/CP_R81_Gaia_AdminGuide/Topics-GAG/Roles-Gaia-Clish.htm" target="_blank"&gt;https://sc1.checkpoint.com/documents/R81/WebAdminGuides/EN/CP_R81_Gaia_AdminGuide/Topics-GAG/Roles-Gaia-Clish.htm&lt;/A&gt;&lt;/P&gt;
&lt;TABLE class="TableStyle-TP_Table_Code" cellspacing="0"&gt;
&lt;TBODY&gt;
&lt;TR class="TableStyle-TP_Table_Code-Body-Body1"&gt;
&lt;TD class="TableStyle-TP_Table_Code-BodyD--Body1"&gt;
&lt;P&gt;&lt;CODE&gt;add rba user &amp;lt;&lt;EM&gt;User Name&lt;/EM&gt;&amp;gt; roles &amp;lt;&lt;EM&gt;Role1&lt;/EM&gt;,&lt;EM&gt;Role2&lt;/EM&gt;,...,&lt;EM&gt;RoleN&lt;/EM&gt;&amp;gt;&lt;/CODE&gt;&lt;/P&gt;
&lt;/TD&gt;
&lt;/TR&gt;
&lt;/TBODY&gt;
&lt;/TABLE&gt;</description>
    <pubDate>Mon, 09 Sep 2024 19:01:05 GMT</pubDate>
    <dc:creator>the_rock</dc:creator>
    <dc:date>2024-09-09T19:01:05Z</dc:date>
    <item>
      <title>WebUI login</title>
      <link>https://community.checkpoint.com/t5/General-Topics/WebUI-login/m-p/226021#M37712</link>
      <description>&lt;P&gt;Hi all,&lt;/P&gt;&lt;P&gt;We recently changed the local admin passwords for SSH and WebUI logins on several gateways.&amp;nbsp; Apparently, on one of the gateways, the passwords got fat-fingered or something and we cannot log in to it.&amp;nbsp; The gateway is centrally-managed.&amp;nbsp; Is there any way I can create an account through SmartConsole with admin rights to the WebUI on a gateway?&amp;nbsp; Or is factory-resetting the gateway my only option?&lt;/P&gt;&lt;P&gt;Thanks.&lt;/P&gt;</description>
      <pubDate>Mon, 09 Sep 2024 17:10:05 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/WebUI-login/m-p/226021#M37712</guid>
      <dc:creator>Jamie_Kelahan</dc:creator>
      <dc:date>2024-09-09T17:10:05Z</dc:date>
    </item>
    <item>
      <title>Re: WebUI login</title>
      <link>https://community.checkpoint.com/t5/General-Topics/WebUI-login/m-p/226029#M37713</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/9577"&gt;@Jamie_Kelahan&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Do you remember, you hit save config? Or did you do it from WEBUI?&lt;/P&gt;
&lt;P&gt;If you have luck, and you were careful enough, you created a snapshot of the GW before the PWD change. in this situation reboot the GW and revert the snapshot:&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="akos_3-15-2015 3-08-10 PM.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/27541i9D28CF190713445F/image-size/medium?v=v2&amp;amp;px=400" role="button" title="akos_3-15-2015 3-08-10 PM.png" alt="akos_3-15-2015 3-08-10 PM.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;Otherwise check this thread:&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.checkpoint.com/t5/Management/How-to-recovery-lost-admin-password/td-p/54311" target="_blank" rel="noopener"&gt;https://community.checkpoint.com/t5/Management/How-to-recovery-lost-admin-password/td-p/54311&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;How to set the R80.x Gaia Admin and Expert passwords with CentOS 7 LiveUSB&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://support.checkpoint.com/results/sk/sk163461" target="_blank" rel="noopener"&gt;https://support.checkpoint.com/results/sk/sk163461&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;Akos&lt;/P&gt;</description>
      <pubDate>Mon, 09 Sep 2024 18:28:41 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/WebUI-login/m-p/226029#M37713</guid>
      <dc:creator>AkosBakos</dc:creator>
      <dc:date>2024-09-09T18:28:41Z</dc:date>
    </item>
    <item>
      <title>Re: WebUI login</title>
      <link>https://community.checkpoint.com/t5/General-Topics/WebUI-login/m-p/226031#M37714</link>
      <description>&lt;P&gt;Thats actually really good question. let me investigate in the lab and will let you know.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Mon, 09 Sep 2024 18:26:34 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/WebUI-login/m-p/226031#M37714</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-09-09T18:26:34Z</dc:date>
    </item>
    <item>
      <title>Re: WebUI login</title>
      <link>https://community.checkpoint.com/t5/General-Topics/WebUI-login/m-p/226034#M37716</link>
      <description>&lt;P&gt;hmmm,&amp;nbsp; are you looking for this?:&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.checkpoint.com/t5/General-Topics/Password-reset-Collection/m-p/57445/highlight/true#M11557" target="_blank" rel="noopener"&gt;https://community.checkpoint.com/t5/General-Topics/Password-reset-Collection/m-p/57445/highlight/true#M11557&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://support.checkpoint.com/results/sk/sk106490" target="_blank"&gt;https://support.checkpoint.com/results/sk/sk106490&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;Akos&lt;/P&gt;</description>
      <pubDate>Mon, 09 Sep 2024 18:40:05 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/WebUI-login/m-p/226034#M37716</guid>
      <dc:creator>AkosBakos</dc:creator>
      <dc:date>2024-09-09T18:40:05Z</dc:date>
    </item>
    <item>
      <title>Re: WebUI login</title>
      <link>https://community.checkpoint.com/t5/General-Topics/WebUI-login/m-p/226036#M37717</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/9577"&gt;@Jamie_Kelahan&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Maybe you can try this:&lt;/P&gt;
&lt;P&gt;&lt;A href="https://support.checkpoint.com/results/sk/sk106490" target="_blank"&gt;https://support.checkpoint.com/results/sk/sk106490&lt;/A&gt;&lt;/P&gt;
&lt;OL&gt;
&lt;LI&gt;
&lt;P&gt;Generate hash for the new password - run the following command and save the generated hash string:&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;&lt;CODE&gt;[Expert@HostName]# cpopenssl passwd {-1 | -5 | -6} &amp;lt;New Password&amp;gt;&lt;/CODE&gt;&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;For more information, run:&lt;/P&gt;
&lt;P&gt;&lt;CODE&gt;cpopenssl passwd -help&lt;/CODE&gt;&lt;/P&gt;
&lt;P&gt;In addition, see the&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doShowproductpage&amp;amp;productTab=documents&amp;amp;product=184" target="_blank" rel="noopener"&gt;Gaia Administration Guide&lt;/A&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;for your version, to see the supported hash algorithms.&lt;/P&gt;
&lt;/LI&gt;
&lt;LI&gt;
&lt;P&gt;Ensure that the Gaia OS database is unlocked on the remote Security Gateway/or secondary management server:&lt;/P&gt;
&lt;STRONG&gt;&lt;CODE&gt;[Expert@HostName]# $CPDIR/bin/cprid_util -server &amp;lt;IP_address_of_Security_Gateway&amp;gt; -verbose rexec -rcmd /bin/clish -s -c 'set config-lock on override'&lt;/CODE&gt;&lt;/STRONG&gt;&lt;/LI&gt;
&lt;LI&gt;
&lt;P&gt;Change the 'admin' user password:&lt;/P&gt;
&lt;STRONG&gt;&lt;CODE&gt;[Expert@HostName]# $CPDIR/bin/cprid_util -server &amp;lt;IP_address_of_Security_Gateway&amp;gt; -verbose rexec -rcmd /bin/clish -s -c 'set user admin password-hash &amp;lt;Password_Hash_from_Step_1&amp;gt;'&lt;/CODE&gt;&lt;/STRONG&gt;&lt;/LI&gt;
&lt;LI&gt;
&lt;P&gt;You can also change the Expert password:&lt;/P&gt;
&lt;STRONG&gt;&lt;CODE&gt;[Expert@HostName]# $CPDIR/bin/cprid_util -server &amp;lt;IP_address_of_Security_Gateway&amp;gt; -verbose rexec -rcmd /bin/clish -s -c 'set expert-password-hash &amp;lt;Password_Hash_from_Step_1&amp;gt;'&lt;/CODE&gt;&lt;/STRONG&gt;&lt;/LI&gt;
&lt;/OL&gt;</description>
      <pubDate>Mon, 09 Sep 2024 18:41:45 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/WebUI-login/m-p/226036#M37717</guid>
      <dc:creator>AkosBakos</dc:creator>
      <dc:date>2024-09-09T18:41:45Z</dc:date>
    </item>
    <item>
      <title>Re: WebUI login</title>
      <link>https://community.checkpoint.com/t5/General-Topics/WebUI-login/m-p/226038#M37718</link>
      <description>&lt;P&gt;I tested something like below and it did work.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot_1.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/27542i48423C0228520CAB/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Screenshot_1.png" alt="Screenshot_1.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt; Just type save config as the last line, so it saves the config.&lt;/P&gt;</description>
      <pubDate>Mon, 09 Sep 2024 18:43:41 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/WebUI-login/m-p/226038#M37718</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-09-09T18:43:41Z</dc:date>
    </item>
    <item>
      <title>Re: WebUI login</title>
      <link>https://community.checkpoint.com/t5/General-Topics/WebUI-login/m-p/226042#M37720</link>
      <description>&lt;P&gt;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/9577"&gt;@Jamie_Kelahan&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Sorry, forgot this line.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;&lt;A href="https://sc1.checkpoint.com/documents/R81/WebAdminGuides/EN/CP_R81_Gaia_AdminGuide/Topics-GAG/Roles-Gaia-Clish.htm" target="_blank"&gt;https://sc1.checkpoint.com/documents/R81/WebAdminGuides/EN/CP_R81_Gaia_AdminGuide/Topics-GAG/Roles-Gaia-Clish.htm&lt;/A&gt;&lt;/P&gt;
&lt;TABLE class="TableStyle-TP_Table_Code" cellspacing="0"&gt;
&lt;TBODY&gt;
&lt;TR class="TableStyle-TP_Table_Code-Body-Body1"&gt;
&lt;TD class="TableStyle-TP_Table_Code-BodyD--Body1"&gt;
&lt;P&gt;&lt;CODE&gt;add rba user &amp;lt;&lt;EM&gt;User Name&lt;/EM&gt;&amp;gt; roles &amp;lt;&lt;EM&gt;Role1&lt;/EM&gt;,&lt;EM&gt;Role2&lt;/EM&gt;,...,&lt;EM&gt;RoleN&lt;/EM&gt;&amp;gt;&lt;/CODE&gt;&lt;/P&gt;
&lt;/TD&gt;
&lt;/TR&gt;
&lt;/TBODY&gt;
&lt;/TABLE&gt;</description>
      <pubDate>Mon, 09 Sep 2024 19:01:05 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/WebUI-login/m-p/226042#M37720</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-09-09T19:01:05Z</dc:date>
    </item>
    <item>
      <title>Re: WebUI login</title>
      <link>https://community.checkpoint.com/t5/General-Topics/WebUI-login/m-p/226045#M37721</link>
      <description>&lt;P&gt;Here is script I used for new user and worked fine.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;add user test1 uid 0 homedir /home/test1&lt;BR /&gt;set user test1 uid 0&lt;BR /&gt;set user test1 newpass test12&lt;/P&gt;
&lt;P&gt;add rba user test1&amp;nbsp; roles adminRole&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Mon, 09 Sep 2024 19:16:24 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/WebUI-login/m-p/226045#M37721</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-09-09T19:16:24Z</dc:date>
    </item>
    <item>
      <title>Re: WebUI login</title>
      <link>https://community.checkpoint.com/t5/General-Topics/WebUI-login/m-p/226065#M37726</link>
      <description>&lt;P&gt;It was changed via the WebUI.&amp;nbsp; I followed your link to reset using the CentOS USB and got the passwords updated.&amp;nbsp; &amp;nbsp;Thanks for your help!&lt;/P&gt;</description>
      <pubDate>Mon, 09 Sep 2024 20:22:16 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/WebUI-login/m-p/226065#M37726</guid>
      <dc:creator>Jamie_Kelahan</dc:creator>
      <dc:date>2024-09-09T20:22:16Z</dc:date>
    </item>
    <item>
      <title>Re: WebUI login</title>
      <link>https://community.checkpoint.com/t5/General-Topics/WebUI-login/m-p/226070#M37727</link>
      <description>&lt;P&gt;Thanks for your efforts!&amp;nbsp; I did try this and it reported as a "Success," however when I opened the details, there was an error saying the "add" command was not found and I was not able to log in.&amp;nbsp; Adding the "add rba" line resulted in it failing, with the same error message - this time twice, since the "add" command was used twice.&lt;/P&gt;&lt;P&gt;In any case, I got the issue resolved by using the CentOS live USB instructions from above.&amp;nbsp; A little more involved than your solution, but I'm able to log in again.&lt;/P&gt;&lt;P&gt;Thanks again!&lt;/P&gt;</description>
      <pubDate>Mon, 09 Sep 2024 20:31:03 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/WebUI-login/m-p/226070#M37727</guid>
      <dc:creator>Jamie_Kelahan</dc:creator>
      <dc:date>2024-09-09T20:31:03Z</dc:date>
    </item>
    <item>
      <title>Re: WebUI login</title>
      <link>https://community.checkpoint.com/t5/General-Topics/WebUI-login/m-p/226071#M37728</link>
      <description>&lt;P&gt;Yes, of course, we are here to help, np! Not sure, maybe I mixed up the commands, but worked for me when I tested it.&lt;/P&gt;
&lt;P&gt;Anyway, glad you got it going.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Mon, 09 Sep 2024 20:33:35 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/WebUI-login/m-p/226071#M37728</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-09-09T20:33:35Z</dc:date>
    </item>
    <item>
      <title>Re: WebUI login</title>
      <link>https://community.checkpoint.com/t5/General-Topics/WebUI-login/m-p/226072#M37729</link>
      <description>&lt;P&gt;I was not able to do this, since I no longer have an on-prem management server, as we've transitioned to the CP cloud.&amp;nbsp; As far as I'm aware, I don't have the ability to SSH to the cloud management and run these commands.&lt;/P&gt;&lt;P&gt;Thanks for your reply and suggestion!&lt;/P&gt;</description>
      <pubDate>Mon, 09 Sep 2024 20:34:52 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/WebUI-login/m-p/226072#M37729</guid>
      <dc:creator>Jamie_Kelahan</dc:creator>
      <dc:date>2024-09-09T20:34:52Z</dc:date>
    </item>
    <item>
      <title>Re: WebUI login</title>
      <link>https://community.checkpoint.com/t5/General-Topics/WebUI-login/m-p/226073#M37730</link>
      <description>&lt;P&gt;Thanks for your suggestions.&amp;nbsp; I replied to another post suggesting the same, but we're now using CP's cloud management, so I no longer have an on-prem management server that I can run these commands from.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 09 Sep 2024 20:36:33 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/WebUI-login/m-p/226073#M37730</guid>
      <dc:creator>Jamie_Kelahan</dc:creator>
      <dc:date>2024-09-09T20:36:33Z</dc:date>
    </item>
    <item>
      <title>Re: WebUI login</title>
      <link>https://community.checkpoint.com/t5/General-Topics/WebUI-login/m-p/226074#M37731</link>
      <description>&lt;P&gt;You will be happy with S1C compared to on-prem mgmt...I been around it since covid days and it is SOOOOOOOOOO much better now, people love it.&lt;/P&gt;
&lt;P&gt;Best,&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Mon, 09 Sep 2024 20:37:04 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/WebUI-login/m-p/226074#M37731</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-09-09T20:37:04Z</dc:date>
    </item>
    <item>
      <title>Re: WebUI login</title>
      <link>https://community.checkpoint.com/t5/General-Topics/WebUI-login/m-p/226075#M37732</link>
      <description>&lt;P&gt;Yes, so far so good!&amp;nbsp; I had some minor issues when transitioning over - especially with some of the smaller Spark devices we have - that made me nervous, but it's been great since then!&lt;/P&gt;</description>
      <pubDate>Mon, 09 Sep 2024 20:42:00 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/WebUI-login/m-p/226075#M37732</guid>
      <dc:creator>Jamie_Kelahan</dc:creator>
      <dc:date>2024-09-09T20:42:00Z</dc:date>
    </item>
    <item>
      <title>Re: WebUI login</title>
      <link>https://community.checkpoint.com/t5/General-Topics/WebUI-login/m-p/226076#M37733</link>
      <description>&lt;P&gt;As people say, every beginning is hard. I remember this customer and I spent who knows how many hours with same guy from TAC troubleshooting smart-1 cloud mgmt, but in all fairness, back then, there was only couple of people from TAC who had access to back end. These days, its way better, as more people have access, plus, customers can actually restart the mgmt instance from the portal. Keep in mind, restarting it does NOT mean reboot, its actually cpstop/cpstart process, if you need it rebooted, you need to call TAC.&lt;/P&gt;
&lt;P&gt;Anyway, all in all, all our clients are very happy with it.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Mon, 09 Sep 2024 20:45:54 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/WebUI-login/m-p/226076#M37733</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-09-09T20:45:54Z</dc:date>
    </item>
  </channel>
</rss>

