For troubleshooting I used the foreman-rake console with "User.current = 
User.anonymous_admin".

This enables me to do several things to our foreman environment without 
authenticating. How can I disable this for security purposes?

The anonymous admin is not the same user as the foreman admin it seems:

    irb(main):002:0* User.current = User.anonymous_admin
    => #<User id: 1, login: "foreman_admin", firstname: "Anonymous",
    lastname: "Admin", mail: nil, admin: true, last_login_on: nil,
    auth_source_id: 2, created_at: "2016-09-28 08:09:17", updated_at:
    "2016-09-28 08:09:17", password_hash: nil, password_salt: nil,
    locale: nil, avatar_hash: nil, default_organization_id: nil,
    default_location_id: nil, lower_login: "foreman_admin",
    mail_enabled: true, timezone: nil>





Met vriendelijke groet, With kind regards,

Jorick Astrego

Netbulae Virtualization Experts 

----------------

        Tel: 053 20 30 270      [email protected]        Staalsteden 4-3A        
KvK 08198180
        Fax: 053 20 30 271      www.netbulae.eu         7547 TA Enschede        
BTW NL821234584B01

----------------

-- 
You received this message because you are subscribed to the Google Groups 
"Foreman users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to [email protected].
To post to this group, send email to [email protected].
Visit this group at https://groups.google.com/group/foreman-users.
For more options, visit https://groups.google.com/d/optout.

Reply via email to