Project

General

Profile

Actions

tickets #168166

closed

[Heroes VPN] saraycp is inactive

Added by inactive-heroes@opensuse.org 4 months ago. Updated 27 days ago.

Status:
Resolved
Priority:
Normal
Assignee:
Category:
Accounts
Target version:
-
Start date:
2024-10-12
Due date:
% Done:

0%

Estimated time:

Description

Please prepare the user for removal


Related issues 2 (0 open2 closed)

Related to openSUSE admin - tickets #168163: [Heroes VPN] srbaker is inactiveResolvedcrameleon2024-10-12

Actions
Related to openSUSE admin - tickets #162209: Access to the heroes networkResolvedcrameleon2024-06-13

Actions
Actions #1

Updated by crameleon 4 months ago

  • Private changed from Yes to No

Is this correct? I only onboarded this user 17 days ago: https://progress.opensuse.org/issues/162209#note-10.

Actions #2

Updated by crameleon 4 months ago

Actions #3

Updated by kskarthik 4 months ago

crameleon wrote in #note-1:

Is this correct? I only onboarded this user 17 days ago: https://progress.opensuse.org/issues/162209#note-10.

the user did not login once even after 15 days of creation / notice. that's why

Actions #4

Updated by crameleon 4 months ago

Ah, 14 days is the limit, that explains it, thank you.

Actions #5

Updated by crameleon 4 months ago

Actions #6

Updated by kskarthik 4 months ago

crameleon wrote in #note-4:

Ah, 14 days is the limit, that explains it, thank you.

Actually it's 15 + 1 day (approx) buffer time until systemd timer triggers :)

Actions #7

Updated by kskarthik 2 months ago

kskarthik wrote in #note-6:

crameleon wrote in #note-4:

Ah, 14 days is the limit, that explains it, thank you.

Actually it's 15 + 1 day (approx) buffer time until systemd timer triggers :)

@crameleon FYI: both saraycp & srbaker did not login until now.

Actions #8

Updated by crameleon 27 days ago

  • Category set to Accounts
  • Status changed from New to In Progress
  • Assignee set to crameleon
Actions #9

Updated by crameleon 27 days ago

  • Status changed from In Progress to Resolved

Still no login from @saraycp.

crameleon@odin:/home/crameleon> drop_user.sh saraycp
Enter password: : [hidden]
Login Success for crameleon@infra.opensuse.org
=== Processing user saraycp ===
 => User removed from VPN group
=== Processing certificate /etc/easy-rsa/pki/issued/saraycp.crt ===
Please confirm you wish to revoke the certificate
with the following subject:

  subject=
    commonName                = saraycp

  serial-number: FF21880DFECC34CC60BE37AEF908B442

  Reason: None given

Type the word 'yes' to continue, or any other input to abort.
    Continue with revocation: yes

Enter pass phrase for /etc/easy-rsa/pki/private/ca.key:
 => Certificate revoked
 => No login log file
 => User disabled

=== Generating new certificate revocation list ===
Enter pass phrase for /etc/easy-rsa/pki/private/ca.key:

=== Done ===
Actions

Also available in: Atom PDF