Jump to content

How to disable PrestaShop administrator logoff on IP change?


Recommended Posts

I use to access my PrestaShop administration panel from a number of different places and every time I change my place (like when I come home from the office) I have to enter my e-mail and password again (I prefer not to save these things in the browser). Can I configure PrestaShop to remember me using a cookie and keep trusting it wherever I go? Or to add some IPs to a whitelist perhaps?

Link to comment
Share on other sites

I use to access my PrestaShop administration panel from a number of different places and every time I change my place (like when I come home from the office) I have to enter my e-mail and password again (I prefer not to save these things in the browser). Can I configure PrestaShop to remember me using a cookie and keep trusting it wherever I go? Or to add some IPs to a whitelist perhaps?

 

Try this. Administration > Preferences and disabled the option Check the IP address on the cookie.

 

Does that work for you?

 

and thanks for joining! :)

Link to comment
Share on other sites

  • 4 years later...
  • Hi friends! I need your help too. Thanks since now, for who have the answer of my problem.
  • Kindly regards
  • Wilton

 

  • https://domain.com./adminxxx/index.php/security/compromised?_token=tZjXoU0UxvFeXjNFYZ9LhqWKde6rZXlmyGJBBVLKtPs&uri=https%253A%252F%252Fbikeuruguay.com.uy%252Fadminxxx%252Findex.php%252Fconfigure%252Fadvanced%252Fadministration%252F%253F
    302 Redirect from  @admin_administration (18b928)
    
    302 Redirect from  @admin_administration (18b928)
    Method GET HTTP Status 200 IP 179.26.39.145  Profiled on Thu, 14 Feb 2019 23:28:58 +0300 Token 406ccd
    
    GET Parameters
    Key	Value
    _token	
    "tZjXoU0UxvFeXjNFYZ9LhqWKde6rZXlmyGJBBVLKtPs"
    uri	
    "https%3A%2F%2Fdomain.com%2Fadminxxx%2Findex.php%2Fconfigure%2Fadvanced%2Fadministration%2F%3F"
    POST Parameters
    No POST parameters
    
    Request Attributes
    Key	Value
    _controller	
    "PrestaShopBundle\Controller\Admin\SecurityController::compromisedAccessAction"
    _firewall_context	
    "security.firewall.map.context.main"
    _redirected	
    true
    _route	
    "admin_security_compromised"
    _route_params	
    []
    controller_name	
    "PrestaShopBundle\Controller\Admin\SecurityController"
    controller_type	
    2
    Request Headers
    Header	Value
    accept	
    "text/html,application/xhtml+xml,application/xml;q=0.9,image/webp,image/apng,*/*;q=0.8"
    accept-encoding	
    "gzip, deflate, br"
    accept-language	
    "es,en-US;q=0.9,en;q=0.8,pt-BR;q=0.7,pt;q=0.6"
    connection	
    "keep-alive"
    cookie	
    "PHPSESSID=f22ba61e4b9afb6c9793f2ca0df819c3; PrestaShop-3a37cd04065c9f8fd9191a9cb0ce2707=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; timezone=America/Argentina/Buenos_Aires; cpsession=spnyktdf%3aY97xHpAKnTWDNlaX%2cd22c2d4f8b2dc88e8128b9eb80ec402f; sf_redirect=%7B%22token%22%3A%2218b928%22%2C%22route%22%3A%22admin_administration%22%2C%22method%22%3A%22GET%22%2C%22controller%22%3A%7B%22class%22%3A%22PrestaShopBundle%5C%5CController%5C%5CAdmin%5C%5CConfigure%5C%5CAdvancedParameters%5C%5CAdministrationController%22%2C%22method%22%3A%22indexAction%22%2C%22file%22%3A%22%5C%2Fhome%5C%2Fspnyktdf%5C%2Fpublic_html%5C%2Fsrc%5C%2FPrestaShopBundle%5C%2FController%5C%2FAdmin%5C%2FConfigure%5C%2FAdvancedParameters%5C%2FAdministrationController.php%22%2C%22line%22%3A54%7D%2C%22status_code%22%3A302%2C%22status_text%22%3A%22Found%22%7D"
    host	
    "domain.com"
    mod-rewrite	
    "On"
    referer	
    "http://domain.com/adminxxx/index.php?controller=AdminDashboard&token=bdfc2622ed50337f98493573fa2fdc26"
    upgrade-insecure-requests	
    "1"
    user-agent	
    "Mozilla/5.0 (Windows NT 6.3; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/71.0.3578.98 Safari/537.36"
    x-https	
    "1"
    x-php-ob-level	
    1
    Request Content
    Request content not available (it was retrieved as a resource).
    
    Server Parameters
    Key	Value
    BASE	
    "/adminxxx"
    CONTEXT_DOCUMENT_ROOT	
    "/home/XXXXXXXX/public_html"
    CONTEXT_PREFIX	
    ""
    DOCUMENT_ROOT	
    "/home/XXXXXXXX/public_html"
    GATEWAY_INTERFACE	
    "CGI/1.1"
    HTTPS	
    "on"
    HTTP_ACCEPT	
    "text/html,application/xhtml+xml,application/xml;q=0.9,image/webp,image/apng,*/*;q=0.8"
    HTTP_ACCEPT_ENCODING	
    "gzip, deflate, br"
    HTTP_ACCEPT_LANGUAGE	
    "es,en-US;q=0.9,en;q=0.8,pt-BR;q=0.7,pt;q=0.6"
    HTTP_CONNECTION	
    "keep-alive"
    HTTP_COOKIE	
    "PHPSESSID=f22ba61e4b9afb6c9793f2ca0df819c3; PrestaShop-3a37cd04065c9f8fd9191a9cb0ce2707=def502000e220de2408d2070a99a63df6e637a1ca27702956c45b317ca2afc727d60aa154ba0014c63f62c5d69dc698dcf04a88d037c02b865ce17431908ece2ce0a6af855f6bdc545f17fe167c8d6fe601dce37f7275898c8bea4708655bfdb6873dc2abab0c7a3b1ed6ed7dea7871a4d19f912a31781f3da816dd73812011f439cc7f19b555a6ce8fb599f11bd118dc00b131217b4a3e942c808f913dc280911e7261dda7c3717bab4fa37d6f623345ef21ef2a3a4119cb9db46c1ea34ee0f5b5a8cbe9d3315c7711c7acc80d5779bce4226058e591f38a8479bdd875d9bffff826b55025862efcd87b6e8377b9327cbdeb4d76f30f9f7aaeac1d1ab5d06f9f10912dc4e54cd5ffc28cea1f6ff7f71abdd89d0fb5dfa9ebbb3e4495de887e70384a47fbcec393eaf3a2d854d01dc09916693748250f0d23aa119bc9f4ddeeffe93ca5d76b682acd83128ac9c3a; timezone=America/Argentina/Buenos_Aires; cpsession=spnyktdf%3aY97xHpAKnTWDNlaX%2cd22c2d4f8b2dc88e8128b9eb80ec402f; sf_redirect=%7B%22token%22%3A%2218b928%22%2C%22route%22%3A%22admin_administration%22%2C%22method%22%3A%22GET%22%2C%22controller%22%3A%7B%22class%22%3A%22PrestaShopBundle%5C%5CController%5C%5CAdmin%5C%5CConfigure%5C%5CAdvancedParameters%5C%5CAdministrationController%22%2C%22method%22%3A%22indexAction%22%2C%22file%22%3A%22%5C%2Fhome%5C%2Fspnyktdf%5C%2Fpublic_html%5C%2Fsrc%5C%2FPrestaShopBundle%5C%2FController%5C%2FAdmin%5C%2FConfigure%5C%2FAdvancedParameters%5C%2FAdministrationController.php%22%2C%22line%22%3A54%7D%2C%22status_code%22%3A302%2C%22status_text%22%3A%22Found%22%7D"
    HTTP_HOST	
    "domain.com"
    HTTP_MOD_REWRITE	
    "On"
    HTTP_REFERER	
    "http://domain.com/adminxxx/index.php?controller=AdminDashboard&token=bdfc2622ed50337f98493573fa2fdc26"
    HTTP_UPGRADE_INSECURE_REQUESTS	
    "1"
    HTTP_USER_AGENT	
    "Mozilla/5.0 (Windows NT 6.3; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/71.0.3578.98 Safari/537.36"
    HTTP_X_HTTPS	
    "1"
    PATH	
    "/bin:/usr/bin"
    PATH_INFO	
    "/security/compromised"
    PATH_TRANSLATED	
    "/home/XXXXX/public_html/adminxxx/index.php"
    PHP_SELF	
    "/adminxxx/index.php/security/compromised"
    QUERY_STRING	
    "uri=https%253A%252F%252Fdomain.com%252Fadminxxx%252Findex.php%252Fconfigure%252Fadvanced%252Fadministration%252F%253F&_token=tZjXoU0UxvFeXjNFYZ9LhqWKde6rZXlmyGJBBVLKtPs"
    REDIRECT_STATUS	
    "200"
    REMOTE_ADDR	
    "XXX.XX.XX.XXX"
    REMOTE_PORT	
    "XXXX"
    REQUEST_METHOD	
    "GET"
    REQUEST_SCHEME	
    "https"
    REQUEST_TIME	
    1550176137
    REQUEST_TIME_FLOAT	
    1550176137.3051
    REQUEST_URI	
    "/adminxxx/index.php/security/compromised?uri=https%253A%252F%252Fdomain.com%252Fadminxxx%252Findex.php%252Fconfigure%252Fadvanced%252Fadministration%252F%253F&_token=tZjXoU0UxvFeXjNFYZ9LhqWKde6rZXlmyGJBBVLKtPs"
    SCRIPT_FILENAME	
    "/home/XXXXX/public_html/admin345/index.php"
    SCRIPT_NAME	
    "/adminxxx/index.php"
    SCRIPT_URI	
    "https://domain.com/adminxxx/index.php/security/compromised"
    SCRIPT_URL	
    "/adminxxx/index.php/security/compromised"
    SERVER_ADDR	
    "XX.XXXX.XX.XXX"
    SERVER_ADMIN	
    "[email protected]"
    SERVER_NAME	
    "domain.com"
    SERVER_PORT	
    "443"
    SERVER_PROTOCOL	
    "HTTP/1.1"
    SERVER_SIGNATURE	
    ""
    SERVER_SOFTWARE	
    "Apache"
    SSL_TLS_SNI	
    "domain.com"
    TZ	
    "America/New_York"
    UNIQUE_ID	
    "XGXPiScTTbtMi5lYR0abxwAAAAE"

     

Link to comment
Share on other sites

Also in DEBUG I can see this text:

23:28:57
security	Read existing security token from the session.
Hide context
[▼
  "key" => "_security_main"
  "token_class" => "Symfony\Component\Security\Core\Authentication\Token\UsernamePasswordToken"
]
23:28:57
security	User was reloaded from a user provider.
Hide context
[▼
  "provider" => "PrestaShopBundle\Security\Admin\EmployeeProvider"
  "username" => "[email protected]"
]
23:28:57
doctrine	SELECT name FROM psls_module WHERE active = 1
23:28:58
security	Stored the security token in the session.
Hide context
[▼
  "key" => "_security_main"

 

Edited by WiltonAndrada
correction (see edit history)
Link to comment
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
×
×
  • Create New...