LogoLogo
Contact Uscybus.io
Connectware 1.11.0
Connectware 1.11.0
  • Getting Started
    • Cybus Connectware Documentation
    • System Requirements
    • Admin UI
    • Basic Components of Connectware
    • Connecting your First Machine
      • Your First Service Commissioning File
  • Deployment & Configuration
    • Installation & Upgrades
      • Installing Connectware
        • Installing Connectware (Kubernetes)
        • Installing Connectware (Docker)
      • Upgrading Connectware
        • Upgrading Connectware (Kubernetes)
          • Version-Specific Upgrades (Kubernetes)
        • Upgrading Connectware (Docker)
          • Version-Specific Upgrades (Docker)
      • Uninstalling Connectware
        • Uninstalling Connectware (Kubernetes)
        • Uninstalling Connectware (Docker)
      • Licensing
      • Restarting Connectware
    • User Management
      • Users
        • Default Admin User
      • Roles
      • Permissions
      • MQTT User Authentication
      • Adding a MQTT Publish Prefix for Users
      • Multi-Factor Authentication
      • Single Sign-On (SS0)
        • Single Sign-On with Microsoft Entra ID
        • Single Sign-On with LDAP
      • Access Permissions for Admin-UI
        • UI Access
        • Minimum Access Role Pages
    • Services
      • Service Overview
      • Service Resources View
        • Service Links View
        • Servers View
        • Containers View
        • Volumes View
        • Connections View
        • Endpoints View
        • Mappings View
      • Service Details View
      • Service Commissioning Files
        • Version
        • Description
        • Metadata
        • Parameters
        • Definitions
        • Resources
          • Cybus::Connection
          • Cybus::Container
            • Docker Problem with Network Changes
          • Cybus::Endpoint
          • Cybus::File
          • Cybus::IngressRoute
          • Cybus::Link
          • Cybus::Mapping
          • Cybus::Node
          • Cybus::Role
          • Cybus::Server
          • Cybus::User
          • Cybus::Volume
      • Setting Up & Configuring Services
        • Installing Services
        • Enabling Services
        • Updating Services
        • Disabling Services
        • Deleting Services
      • FlowSync
        • Example 1 - Node with Transaction Mode (HTTP)
        • Example 2 - Node Responds (HTTP)
        • Example 3 - Node with Error (HTTP)
        • Example 4 - Node with Timeout Error Code & Error Message (HTTP)
        • Example 5 - Full Transactional Data Flow (HTTP)
        • Example 6 - Full Transactional Data Flow (OPC UA)
      • ServiceID
      • Inter-Service Referencing
      • Deviations
      • Service Logs
        • Logs of Individual Services
        • Logs of All Services
      • Rule Engine
        • Data Processing Rules
        • Rule Sandbox
      • Shared Subscriptions
        • Setting Up Shared Subscriptions
    • Agents
      • Agents View
      • Installing Agents
        • Installing Agents via Docker
        • Installing Agents via Docker Compose
        • Installing Agents via Kubernetes
        • Using Mutual TLS for Agents
      • Registering Agents in Connectware
      • Using Agents
      • Monitoring Agents
      • Agents in Kubernetes
        • Adding Agents Inside your Connectware Installation
        • Remote Agents with the connectware-agent Helm Chart
        • Kubernetes Cluster Requirements for the connectware-agent Helm Chart
        • Installing Connectware Agents using the connectware-agent Helm Chart
        • Installing Connectware Agents without a License Key Using the connectware-agent Helm Chart
        • Upgrading the connectware-agent Helm Chart
        • Uninstalling Connectware agents with the connectware-agent Helm chart
        • Configuration Principles for the connectware-agent Helm Chart
        • Configuring Agents with the connectware-agent Helm Chart
          • Configuring Target Connectware for the connectware-agent Helm Chart
          • Configuring Agent Persistence for the connectware-agent Helm Chart
          • Configuring Compute Resources for the connectware-agent Helm Chart
          • Using a Custom Image Registry for the connectware-agent Helm Chart
          • Configuring Image Pull Policy for the connectware-agent Helm Chart
          • Using Mutual Transport Layer Security (mTLS) for agents with the connectware-agent Helm chart
          • Configuring image name & version for the connectware-agent Helm chart
          • Configuring Environment Variables for the connectware-agent Helm Chart
          • Configuring Labels & Annotations for the connectware-agent Helm Chart
          • Configuring podAntiAffinity for the connectware-agent Helm Chart
          • Assigning Agents to Kubernetes Nodes for the connectware-agent Helm Chart
          • Configuring Security Context for the connectware-agent Helm Chart
          • Controlling the Name of Kubernetes Objects for the connectware-agent Helm Chart
      • Troubleshooting Agents
    • Client Registry
      • Client Registry for MQTT Clients
      • Client Registry via REST API
      • Troubleshooting Client Registry
    • Security
      • TLS Certificates
        • Certificate Requirements
          • Cipher Suites & TLS Versions
        • CA Certificates
          • Certificates View
        • Client Certificates
        • Server Certificates
      • Password Policy Configuration
      • JSON Web Tokens
    • Monitoring
      • Data Explorer
      • Live Data
    • Node-RED Workbench
    • System Status
      • System Container Status
      • Internet Connectivity Status
      • Metrics (Data Points and Messages)
      • Agents Status
      • License Information
      • System Information
    • Backup & Restore
      • Volumes
      • User Database
    • CybusMQ
      • Configuring CybusMQ
    • Connectware on Kubernetes
      • Connectware Helm Chart
      • Resizing Broker Volumes in Kubernetes
      • Configuring Core Services
      • LDAP Authentication
        • Configuring LDAP Authentication
        • Enabling TLS for LDAP Authentication
        • Manual Kubernetes Secret for LDAP Authentication Bind User
        • Customizing the Search Filter for LDAP Authentication
        • Customizing the User RDN for LDAP Authentication
      • Troubleshooting Connectware on Kubernetes
    • Environment Variables
    • Industry Protocol Details
      • ADS
        • ADS Connection Properties
        • ADS Endpoint Properties
      • BACnet
        • BACnet Connection Properties
        • BACnet Endpoint Properties
      • Custom Connectors
        • Developing Custom Connectors
        • Deploying Custom Connectors
        • Using Custom Connectors
      • EtherNet/IP
        • EtherNet/Ip Connection Properties
        • EtherNet/Ip Endpoint Properties
      • FOCAS
        • FOCAS Connection Properties
        • FOCAS Endpoint Properties
      • Hottinger Baldwin Messtechnik (HBM)
        • HBM Connection Properties
        • HBM Endpoint Properties
      • Heidenhain DNC
        • Heidenhain DNC Connection Properties
        • Heidenhain DNC Endpoint Properties
      • HTTP/REST
        • HTTP/REST Connection Properties
        • HTTP/REST Endpoint Properties
      • HTTP Server/Node
        • HTTP Server Properties
        • HTTP Node Properties
      • InfluxDB
        • InfluxDB Connection Properties
        • InfluxDB Endpoint Properties
      • Kafka
        • Kafka Connection Properties
        • Kafka Endpoint Properties
      • Modbus/TCP
        • Modbus/TCP Connection Properties
        • Modbus/TCP Endpoint Properties
      • MQTT
        • MQTT Connection Properties
        • MQTT Endpoint Properties
      • MSSQL
        • Mssql Connection Properties
        • Mssql Endpoint Properties
      • OPC DA
        • OPC DA Connection Properties
        • OPC DA Endpoint Properties
      • OPC UA
        • OPC UA Client
          • OPC UA Client Connection Properties
          • OPC UA Client Endpoint Properties
        • OPC UA Server
          • OPC UA Server Properties
          • OPC UA Node Properties
        • OPC UA Object Types
        • OPC UA Server References
          • OPC UA Reference Node
          • OPC UA Object Node
      • Siemens SIMATIC S7
        • Siemens S7 Connection Properties
        • Siemens S7 Endpoint Properties
      • Shdr
        • Shdr Connection Properties
        • Shdr Endpoint Properties
      • SINUMERIK
        • SINUMERIK Connection Properties
        • SINUMERIK Endpoint Properties
      • SOPAS
        • SOPAS Connection Properties
        • SOPAS Endpoint Properties
      • SQL
        • SQL Connection Properties
        • SQL Endpoint Properties
      • Werma WIN Ethernet
        • Werma WIN Ethernet Connection Properties
        • Werma WIN Ethernet Endpoint Properties
      • Systemstate
        • Systemstate Endpoint Properties
  • Reference
    • API Reference
      • User Management (API)
      • Client Registry (API)
      • Services (API)
      • Resources (API)
      • System Status (API)
      • Resource Status Tracking (HTTP API)
      • Industry Protocol Details (API)
    • Changelog
Powered by GitBook
LogoLogo

Cybus

  • Terms and Condition
  • Imprint
  • Data Privacy

© Copyright 2025, Cybus GmbH

On this page
  • Admin User Parameters
  • Changing the Default Admin User Password
  • Disabling the Default Admin User

Was this helpful?

  1. Deployment & Configuration
  2. User Management
  3. Users

Default Admin User

Manage the default admin user credentials and access settings.

PreviousUsersNextRoles

Last updated 1 day ago

Was this helpful?

During installation, Connectware creates a default administrator user to ensure immediate system access. This user is named admin and has the connectware-admin role assigned to provide comprehensive permissions.

We strongly recommend to after the first login.

Admin User Parameters

The following auth-server are available for configuring the admin user. Parameters differ between Kubernetes and Docker deployments.

Admin User Parameters (Kubernetes)

Parameter
Description
Default value

global.userManagement.adminUser.initialPassword

Sets the initial password for the admin user. Must be a Base64-encoded string.

admin

global.userManagement.adminUser.enabled

Enables/disables the admin user. Accepts a boolean value (true or false).

true

Admin User Parameters (Docker)

Parameter
Description
Default value

CYBUS_INITIAL_ADMIN_USER_PASSWORD

Sets the initial password for the admin user. Must be a Base64-encoded string.

admin

CYBUS_ADMIN_USER_ENABLED

Enables/disables the admin user. Accepts a boolean value (true or false).

true

Changing the Default Admin User Password

The initial admin user password is admin (Base64-encoded). We strongly recommend to change the initial admin user password after the first login.

You can change the password via the global.userManagement.adminUser.initialPassword Helm value (Kubernetes) or the CYBUS_INITIAL_ADMIN_USER_PASSWORD environment variable (Docker).

If you have configured , make sure that the new admin user password complies with your password rules.

Changing the Default Admin User Password (Kubernetes)

  1. Open the values.yaml file.

  2. Set the global.userManagement.adminUser.initialPassword Helm value to a password of your choice. Make sure to encode the password in Base64 format.

global:
    userManagement:
        adminUser:
            initialPassword: 'U2VjdXJlUGFzc3dvcmQxMjM='
  1. Upgrade your Helm chart to apply the Helm configuration changes. For more information, see .

helm upgrade -n <namespace> <installation-name> -f values.yaml
  1. Try logging in with the old admin user credentials to verify your configuration. You should receive a "wrong password" error.

Changing the Default Admin User Password (Docker)

  1. Navigate to your Connectware installation directory. If you have used the default values during installation, this is the installation folder: /opt/connectware. The directory contains an .env file that is loaded when starting Connectware.

  2. Open the .env file.

  3. Set the CYBUS_INITIAL_ADMIN_USER_PASSWORD environment variable to a password of your choice. Make sure to encode the password in Base64 format.

environment:
    - CYBUS_INITIAL_ADMIN_USER_PASSWORD={U2VjdXJlUGFzc3dvcmQxMjM=}
  1. Start or restart Connectware. For more information, see .

  2. Try logging in with the old admin user credentials to verify your configuration. You should receive a "wrong password" error.

Disabling the Default Admin User

Before disabling the default admin user, ensure you have created at least one other user with full administrative permissions. Otherwise, you may lose administrative access to your Connectware installation.

You can disable the default admin user after creating custom users that have admin permissions.

If the global.userManagement.adminUser.initialPassword Helm value (Kubernetes) or the CYBUS_ADMIN_USER_ENABLED environment variable (Docker) is not set, or if it has a value other than false, the default admin user is enabled and can log in with suitable credentials.

Disabling the Default Admin User (Kubernetes)

  1. Open the values.yaml file.

  2. Set the global.userManagement.adminUser.enabled Helm value to false.

global:
    userManagement:
        adminUser:
            enabled: 'false'
helm upgrade -n <namespace> <installation-name> -f values.yaml
  1. Try logging in with the admin user credentials to verify that the account has been disabled. You should receive a "wrong password" error.

Disabling the Default Admin User (Docker)

  1. Navigate to your Connectware installation directory. If you have used the default values during installation, this is the installation folder: /opt/connectware. The directory contains an .env file that is loaded when starting Connectware.

  2. Open the .env file.

  3. Set the CYBUS_ADMIN_USER_ENABLED environment variable to false.

environment:
    - CYBUS_ADMIN_USER_ENABLED=false
  1. Try logging in with the admin user credentials to verify that the account has been disabled. You should receive a "wrong password" error.

Upgrade your Helm chart to apply the Helm configuration changes. For more information, see .

Start or restart Connectware. For more information, see .

change the initial admin user password
environment variables
custom password rules
Applying Helm configuration changes
Restarting Connectware
Applying Helm configuration changes
Restarting Connectware