Reset Admin Login

Added by Neville Franks over 9 years ago

We have just installed Redmine and I logged in using Admin+Admin and clicked on Lock (I think). This logged me off and I can no longer log back in. How can I fix this?

Neville Franks, http://blog.surfulater.com

Replies (8)

RE: Reset Admin Login - Added by Nikolay Solakov over 9 years ago

The quickest way is to open the USERS table in your redmine database, find the admin user and set the STATUS field to 1.

RE: Reset Admin Login - Added by Neville Franks over 9 years ago

Thanks for the quick reply, that worked.

I wonder if this should be reported as a big? ie. You shouldn't be able to lock out the one and only user.

I look forward to learning and using Redmine. From my evaluation so far it looks very good and is well supported. Keep up the geat work.

Neville Franks, http://blog.surfulater.com

RE: Reset Admin Login - Added by Anonymous over 9 years ago

I made this mistake when first setting up our redmine installation, disabled the admin user while logged in as admin, and hadn't enabled another user as admin. Luckily, had only just imported data from trac, so just re-did the import to a blank database. I think not being able to lock out the active account seems like a good idea.

Cheers

Russell

RE: Reset Admin Login - Added by Thomas Lecavelier over 9 years ago

I'm tempted to say that's a defect. From my point of view, admin shouldn't be able to lock himself or to lock the last admin account.

RE: Reset Admin Login - Added by Anonymous over 9 years ago

I agree. If you can't lock himself out, then that automatically means he can't lock the last admin account as he must be an admin to be editing the users list anyway.

Cheers

Russell

RE: Reset Admin Login - Added by Anonymous over 9 years ago

Oops, I see the problem with that, the user could make themselves a non-admin user at the same time leaving no admin users around. Perhaps users shouldn't be able to change their own admin state either? Seems a bit odd to limit that, but if you make yourself non-admin and don't know the password to the other remaining admin account, you are still effectively logged out.

If the current user can't lock themselves out and can't make themselves non-admin then you can be pretty certain they still know an admin logon as they must have used it recently.

Cheers

Russell

RE: Reset Admin Login - Added by Anonymous over 9 years ago

I've posted #1276 in relation to this.

RE: Reset Admin Login - Added by abc def about 5 years ago

Anonymous wrote:

I've posted #1276 in relation to this.

(1-8/8)