Security Problem Warning in GUI: Change ARI Username/Password

Hi guys good morning!
All good?

I’m running FreePBX version 16.0.33, and after updating all modules, this error appeared on the dashboard:

"Security Issue
Action Required : Change ARI Username/Password

This is a critical issue and must be resolved urgently."

I saw that the ARI configuration is hidden by default and that I can show it to modify it, but I was afraid to modify it and something would stop working.

Does anyone know how to proceed to troubleshoot this error?
Thank you very much in advance!


After seeing this link: “Recent reports of ARI exploit on FreePBX systems” I tried to do the procedures described, but when doing them the system displays the following error:

Use a random string of 30 characters, don’t copy pase the example…

1 Like

Thanks for the tip!
I did that and it worked.
English is not my native language, so when reading the command I thought “<30-char-rnd-stiing>” would automatically generate the username and password.
Following your tip, I googled “random string generator”, used them in the command and it worked.
I apologize for the mistake and thank you for your support and attention :smiley:

Don’t edit asterisk files with any windows native tool. The use different ‘line endings’

This topic was automatically closed 7 days after the last reply. New replies are no longer allowed.