Accessing website fromoutside

guest1guest1
We can access website from outside normal, however cannot turned of "Demo" login account. Basically anyone can login with "Demo" user name and password.



How Do I delete or restrict "Demo" account?



Thanks,

Mak

Comments

  • AdministratorAdministrator
    You can restrict on a firewall level not to allow IP addresses outside a specified range to connect. This is a standard procedure one should do for any IP based equipment.



    Second is modifying the username and password. To do so go to CONFIGURATION > GENERAL SETTINGS > ADMINISTRATOR ACCOUNT and
  • CVWarehouseCVWarehouse
    Well, you could also sabotage the admin account?



    If I recall correctly, you can disable the administrative login by modifying the serverscheck.conf. You simply duplicate the line which reads "SETTINGS:" and remove or modify the password in the second line.



    Not sure if this effects any other functionality though, so use at your own hazard. Test it thoroughly before deploying such a(n unsupported) setup on a production environment!



    Be aware that this will mean that you can only receive the full administrative rights when logged on to the machine which is running the monitoring application.





    (Do note however that I find it very unsafe to have the configuration interface up while being able to connect to it from the internet, regardless of the disabled admin. I'd strongly suggest the use of a well-encrypted VPN to allow access to the local network / intranet and access the application from there.)
  • AdministratorAdministrator
    To block it, it is easier to use the Windows Firewall function and deny outbound traffic to port 1272 which is the one used by ServersCheck. CVWarehouse's sugestion regarding VPN should be followed. Having a login prompt is always a temptation for a hacker regardless of the security used.



    If you want to connect remotely without the web interface then you can use the 2 way SMS feature and get status info via SMS.
This discussion has been closed.