Skip to content

Add the ability to remove user sign in field #11672

@K4pper

Description

@K4pper

NetBox version

v3.4.4

Feature type

New functionality

Proposed functionality

Netbox has the ability to use multiple SSO providers, but there is no way to completely disable the login form even if there are no local users on the Netbox instance.

Example:
image

This could pose an unnecessary way for attackers to brute force the application by spamming the login field, especially if the Netbox instance is run in the cloud.

Use case

By adding an option to disable the login form and only having the option to login using an SSO provider would decrease the attack surface for a malicious entity.

Database changes

N/A

External dependencies

N/A

Metadata

Metadata

Assignees

No one assigned

    Labels

    type: featureIntroduction of new functionality to the application

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions