glpi icon indicating copy to clipboard operation
glpi copied to clipboard

The cron_mailgate deletes the profile of super-admin from users who have it

Open LucianaCabrera opened this issue 1 year ago • 5 comments

Code of Conduct

  • [X] I agree to follow this project's Code of Conduct

Is there an existing issue for this?

  • [X] I have searched the existing issues

Version

10.0.15

Bug description

We have detected that cron_mailgate automatically removes super-admin authorization from users who have it, including profiles other than this one.

image (We do not have rules configured that remove authorizations from said users)

We check the cron.log folder at the times where the action is executed and we find these actions: WhatsApp Image 2024-09-12 at 15 27 31

Relevant log output

No response

Page URL

No response

Steps To reproduce

No response

Your GLPI setup information

No response

Anything else?

No response

LucianaCabrera avatar Sep 12 '24 18:09 LucianaCabrera

Is the mailgate Automatic Action set for GLPI or CLI run mode? Also, please test with the latest GLPI version in case this is a bug that was already fixed.

cconard96 avatar Sep 12 '24 19:09 cconard96

It is configured as CLI

LucianaCabrera avatar Sep 12 '24 20:09 LucianaCabrera

You did not provide all requested information, so no idea if you use plugins, and which ones. Along with testing with latest stable version, also try if you reproduce without any plugin.

trasher avatar Sep 13 '24 05:09 trasher

We have the following plugins active: -alerts -additional fields -behaviors -dashboard -form creator -glpi saml -data injection -oauth IMAP -Reports In the latest version, these modifications do not occur automatically on user permissions.

LucianaCabrera avatar Sep 13 '24 17:09 LucianaCabrera

Hi LucianaCabrera

I encounter the same problem with the mailgate which deletes user profiles when it collects emails from these people

For my part, I have 2 collector tasks: 1 on the inbox of an exchange shared mailbox which works well, and 1 other on a specific folder of this same shared mailbox, which collects specific emails from 2 users

The deletion of profiles is systematic each time one of their emails is collected. The 1st incident date of the 06/06/2024 GLPI v10.0.15 Mailgate in CLI my plugins: Adressage IP addressing 3.0.2 Alertes news 1.12.1 Camera Input camerainput 2.0.2 centreon centreon 1.0.0 Champs supplémentaires fields 1.21.5 Comportements behaviors 2.7.2 Cycle de vie des matériels (uninstall) uninstall 2.9.0 Data Injection datainjection 2.13.3 Database Inventory databaseinventory 1.0.0 Escalades escalade 2.9.9 Form Creator formcreator 2.13.9 GLPI Inventory glpiinventory 1.4.0 Glpisaml glpisaml 1.1.4 Impression pdf pdf 3.0.0 Oauth IMAP oauthimap 1.4.3 PHP SAML

image

CHCH069 avatar Sep 30 '24 21:09 CHCH069

Hello, I have reported in the glpi github forum that the cron_mailgate problem that eliminates super-admin profiles for users who have it continues to persist, It happens in version 14 to 16, two clients with different versions reported the same profile deletion problem to us

V14 plugins: object management additional fields behaviors escalation form creator data injection more reporting webhooks

v16: -alerts -additional fields -behaviors -dashboard -form creator -glpi saml -data injection -oauth IMAP -information

LucianaCabrera avatar Oct 25 '24 18:10 LucianaCabrera

Hi LucianaCabrera

I encounter the same problem with the mailgate which deletes user profiles when it collects emails from these people

For my part, I have 2 collector tasks: 1 on the inbox of an exchange shared mailbox which works well, and 1 other on a specific folder of this same shared mailbox, which collects specific emails from 2 users

@CHCH069 are you using oauthimap for your receptors?

ftoledo avatar Oct 28 '24 13:10 ftoledo

Hi, Yes, the receptors are configured with Oauthimap (Azure AD IMAP Office 365)

Oauthimap 1.4.3

CHCH069 avatar Oct 28 '24 14:10 CHCH069

Any news about this problem?

LucianaCabrera avatar Nov 05 '24 19:11 LucianaCabrera

Hello, We updated to GLPI v10.0.17 on november 8, and the incident has not happened again since.

Problem solved for us

CHCH069 avatar Dec 05 '24 10:12 CHCH069

Our problem here persists, I updated to version v10.0.17 and the same error persists.

I have three objectives as shown in the image:

Image

The rules are created:

Image

Oauth created and authorized:

Image

Mailgate:

Image

User history:

Image

kleitonaraujo avatar Jan 23 '25 13:01 kleitonaraujo

@kleitonaraujo in english only please.

trasher avatar Jan 23 '25 13:01 trasher