diff --git a/scripts/install b/scripts/install index ee24abe..c57b44e 100644 --- a/scripts/install +++ b/scripts/install @@ -170,6 +170,11 @@ lastid=$(mysql -u$db_user -p$db_pwd $db_name -BN -e "SELECT max(id) from \`users lastid=$(($lastid + 1 )) mysql -u$db_user -p$db_pwd $db_name -e "INSERT INTO \`users_groups\` (\`id\` , \`usrgrpid\`, \`userid\`) VALUES ($lastid ,9, 1);" +#disable default guest +lastid=$(mysql -u$db_user -p$db_pwd $db_name -BN -e "SELECT max(id) from \`users_groups\`") +lastid=$(($lastid + 1 )) +mysql -u$db_user -p$db_pwd $db_name -e "INSERT INTO \`users_groups\` (\`id\` , \`usrgrpid\`, \`userid\`) VALUES ($lastid ,9, 2);" + #================================================= # DOWNLOAD, CHECK AND UNPACK SOURCE #================================================= diff --git a/scripts/upgrade b/scripts/upgrade index e3c7182..ab2d3a8 100644 --- a/scripts/upgrade +++ b/scripts/upgrade @@ -66,6 +66,21 @@ else echo "default admin already disabled" fi +#================================================= +# Disable default guest for security issue +#================================================= +haveDefaultGuestDisabled=$(mysql -BN -u$db_user -p$db_pwd $db_name -BN -e "SELECT count(id) from \`users_groups\` where userid=2 and usrgrpid=9") + +if [ "$haveDefaultGuestDisabled" -eq 0 ] ;then + echo "Disable default guest" + #disable default guest + lastid=$(mysql -u$db_user -p$db_pwd $db_name -BN -e "SELECT max(id) from \`users_groups\`") + lastid=$(($lastid + 1 )) + mysql -u$db_user -p$db_pwd $db_name -e "INSERT INTO \`users_groups\` (\`id\` , \`usrgrpid\`, \`userid\`) VALUES ($lastid ,9, 2);" +else + echo "default guest already disabled" +fi + #================================================= # CHECK THE PATH #=================================================