Highlighted
Super Contributor.. Super Contributor..
Super Contributor..
357 views

Kubernetes portal password issue - „Invalid Password“

Jump to solution

Hi Team,

We notice problem with attempting to login in Kubernetes portal user/password.
https://SMAX_URL:5443/
When we attempt to Login we receive message that we need to set new password.

Miro1_0-1596812603808.png

 



When we type the Old Password and New password we get Invalid Password“

Miro1_1-1596812603810.png

 



We are sure that we are typing the Old Password correct.
We try different New Password, same result.

No mater of what we try, we get the same Error. This prevent us from login to the  Portal.



Env:
SMAX 2018.11

Regards,
Miro

0 Likes
1 Solution

Accepted Solutions
Highlighted
Super Contributor.. Super Contributor..
Super Contributor..

Hi Folks,

Today we manage to resolve the issue with help of R&D.
We manage to locate the right database where to edit the “admin” user. We should be in the default database of CDF.
Here is how to see the default database:
- on any master run “kubectl get configmap -n core”
search for “default-database-configmap”

Miro1_0-1597135822274.png

 




- kubectl get configmap -n core default-database-configmap -o json

Search for "DEFAULT_DB_NAME"

Miro1_1-1597135822280.png

 



- here we need to Login to the DB and execute the following:
select to verify that user is there: select * from database_user where name ='admin'
update the password_expired_date:  UPDATE public.database_user SET  password_expired_date='2020-11-09 07:26:24.2' WHERE name ='admin';


After that we manage to change the password form the UI.

View solution in original post

20 Replies
Highlighted
Micro Focus Frequent Contributor
Micro Focus Frequent Contributor

Hi,

what is the version of you CDF ? 

I think for some or all versions we have a way to reset the password from the command line. Make sure the password combination is matching as well

0 Likes
Highlighted
Super Contributor.. Super Contributor..
Super Contributor..

Hi,

CDF is 2018.08.

Yes, I'm sure that combination is matching.

0 Likes
Highlighted
Micro Focus Frequent Contributor
Micro Focus Frequent Contributor

Ok

that is a very old version.  Sorry I don't have it available right now to try

On the online documentation for 2018.08 the only way which is documented is via the UI but will not help since you cannot login at all:

https://docs.microfocus.com/itom/SMAX:2018.08/Change-your-password_23855281

But in newer versions there is one way via the UI and another way via the command line. this the example from 2020.05

https://docs.microfocus.com/itom/SMAX:2020.05/ResetCDFloginpassword

I know that last year I followed the steps below from 2019.02 online guide below to reset an admin password on a CDF version 2018.11 and it worked fine. Looking at those steps I would said it should also work for 2018.08 because 2018.11 was just like a patch on top of 2018.08 

https://docs.microfocus.com/itom/SMAX:2019.02/ResetCDFloginpassword

To make it easy my suggestion would be to follow the steps from the "Reset the password via getting into the IdM pod" using cmd line on the online guide of the version 2019.02

--> https://docs.microfocus.com/itom/SMAX:2019.02/ResetCDFloginpassword

Highlighted
Acclaimed Contributor.
Acclaimed Contributor.
can try following two ideas too.
1- try setting the new password same as the old password
2- Also make sure all pods are working and kube-status.sh shows valid certs
0 Likes
Highlighted
Super Contributor.. Super Contributor..
Super Contributor..

We tried with the same password, 

as well as the pods are fine, this is very strange behaviour.

0 Likes
Highlighted
Super Contributor.. Super Contributor..
Super Contributor..

Hello all Unfortunately, we are not able to see the script  idm.sh needed for the following step:
sh /idmtools/idm-installer-tools/idm.sh databaseUser resetPassword -org Provider -dbUrl "$(cat /opt/apache-tomcat/webapps/idm-service/WEB-INF/spring/applicationContext.properties|grep idm.persistence.connection.url| sed "s/ //g" | cut -c32-91)" -dbUserName "$DEFAULT_DB_CDFIDM_USERNAME" -dbPassword "$(get_secret $DEFAULT_DB_CDFIDM_PASSWORD_KEY | cut -c6-)" -name "admin" -plainPwd "Vivasmax2!"
https://docs.microfocus.com/itom/SMAX:2019.02/ResetCDFloginpassword

Tags (1)
0 Likes
Highlighted
Acclaimed Contributor.
Acclaimed Contributor.
should try as suggested by @FrancisFeugue using the idm pod reset

https://docs.microfocus.com/itom/SMAX:2019.02/ResetCDFloginpassword

(Reset the password via getting into the IdM pod)
0 Likes
Highlighted
Super Contributor.. Super Contributor..
Super Contributor..
Again, there is no idm,sh script in the pod and I can not run the command. 🙂
0 Likes
Highlighted
Super Contributor.. Super Contributor..
Super Contributor..
Unfortunately, we are not able to see the script idm.sh needed for the following step:
sh /idmtools/idm-installer-tools/idm.sh databaseUser resetPassword -org Provider -dbUrl "$(cat /opt/apache-tomcat/webapps/idm-service/WEB-INF/spring/applicationContext.properties|grep idm.persistence.connection.url| sed "s/ //g" | cut -c32-91)" -dbUserName "$DEFAULT_DB_CDFIDM_USERNAME" -dbPassword "$(get_secret $DEFAULT_DB_CDFIDM_PASSWORD_KEY | cut -c6-)" -name "admin" -plainPwd "Vivasmax2!"
https://docs.microfocus.com/itom/SMAX:2019.02/ResetCDFloginpassword
0 Likes
Highlighted
Acclaimed Contributor.
Acclaimed Contributor.

Sorry I missed the earlier post.

  1. If its a supported prod instance please open a ticket.
  2. If you have back up and its non-prod then you can tinker in the database and check if the user is locked.
  3. Also worth checking the logs in the NFS folder about the core. And check the pod  and container logs of idm.
  4. I recall in our case we had once account locked and other time the eval license was expired.
0 Likes
Highlighted
Super Contributor.. Super Contributor..
Super Contributor..
We had a ticket, it make sense what you said. Could you please help us with the name of the db?
0 Likes
The opinions expressed above are the personal opinions of the authors, not of Micro Focus. By using this site, you accept the Terms of Use and Rules of Participation. Certain versions of content ("Material") accessible here may contain branding from Hewlett-Packard Company (now HP Inc.) and Hewlett Packard Enterprise Company. As of September 1, 2017, the Material is now offered by Micro Focus, a separately owned and operated company. Any reference to the HP and Hewlett Packard Enterprise/HPE marks is historical in nature, and the HP and Hewlett Packard Enterprise/HPE marks are the property of their respective owners.