-
-
Notifications
You must be signed in to change notification settings - Fork 156
Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
Add function to reset all user/agent passwords in case of IR
- Loading branch information
Showing
3 changed files
with
80 additions
and
0 deletions.
There are no files selected for viewing
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,31 @@ | ||
<div class="modal" id="resetAllUserPassModal" tabindex="-1"> | ||
<div class="modal-dialog modal-lg"> | ||
<div class="modal-content"> | ||
<div class="modal-body"> | ||
<div class="mb-4" style="text-align: center;"> | ||
<i class="far fas fa-10x fa-skull-crossbones text-danger mb-3 mt-3"></i> | ||
<h2>Incident Response: Agent Password Reset</h2> | ||
<br> | ||
<div class="alert alert-danger" role="alert"> | ||
<b>This is a potentially destructive function.<br>It is intended to be used as part of a potential security incident.</b> | ||
</div> | ||
<h6 class="mb-4 text-secondary"><b>All ITFlow agent passwords will be reset and shown to you </b><i>(except yours - change yours first!)</i>.<br/><br/>You should communicate temporary passwords to agents out of band (e.g. via a phone call) and require they are changed ASAP.</h6> | ||
<form action="post.php" method="POST"> | ||
<input type="hidden" name="csrf_token" value="<?php echo $_SESSION['csrf_token'] ?>"> | ||
<div class="row col-7 offset-4"> | ||
<div class="input-group"> | ||
<div class="input-group-prepend"> | ||
<input type="password" class="form-control" placeholder="Enter your account password to continue" name="admin_password" autocomplete="new-password" required> | ||
</div> | ||
</div> | ||
</div> | ||
<br> | ||
<button class="btn btn-danger" type="submit" name="ir_reset_user_password"><i class="fas fa-fw fa-key mr-2"></i>Reset passwords</button> | ||
</form> | ||
</div> | ||
<button type="button" class="btn btn-outline-secondary btn-lg px-5 mr-4" data-dismiss="modal">Cancel</button> | ||
|
||
</div> | ||
</div> | ||
</div> | ||
</div> |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters