Skip to main content
drupalreleases
Release: Cms 2.2.3 — Update released for Drupal core (2.2.3)! Release: Easy Breadcrumb 2.0.11 — Minor update available for module easy_breadcrumb (2.0.11). Release: Bootstrap 8.x-3.42 — Minor update available for theme bootstrap (8.x-3.42). Release: Editoria11y Accessibility Checker 3.0.10 — Minor update available for module editoria11y (3.0.10). Release: Editoria11y Accessibility Checker 2.2.24 — Minor update available for module editoria11y (2.2.24). Release: Leaflet 10.4.13 — Minor update available for module leaflet (10.4.13). Release: Flag 5.1.1 — Minor update available for module flag (5.1.1). Release: Layout Paragraphs 3.0.0-beta5 — New beta version released for module layout_paragraphs (3.0.0-beta5). Module Revived: Bootstrap 8.x-3.41 — Theme bootstrap updated after 6 months of inactivity (8.x-3.41). Security Coverage: Component Library — Module component_library now has official Drupal security advisory coverage.

Guardian

241 sites Security covered Drupal 10–11
View on drupal.org

This module prevents users from logging in with a username and password directly. Instead, guarded users can only log in via a one-time login link generated by Drush or by using the password reset functionality. This helps secure accounts by avoiding the need to share or store passwords.

Guardian protects specified Users a.k.a. 'guarded users' from logging in with a username and password and changes to the login data (username or password).

To login with a guarded user, login is possible with drush uli [uid] or a password reset url.

In this way there will be no need to store and share complex passwords within your organization.

Installation

Developers

To install the module, make sure that the user 1 account has the correct mail address and that the mail address is the same as the init column in your user database table.

System Administrators

System administrators need to assign a shared inbox or group mail address for development teams to receive the password reset mail. If a person is leaving the project, only access to the webserver and the shared inbox needs to be denied to secure the website for user 1 access.

Usage

  • Use drush to request a one time login url: drush uli [uid]
  • Access the password reset form: /user/password

Depends on

Dependencies of the latest stable release

No dependencies recorded for this project.

Required by

Tracked projects that depend on this one

No tracked projects depend on this one yet.

Activity

Tracked releases
3
Tracked since
Jan 2023
Latest release
1 month ago
Releases (12 mo)
1 ▲ from 0
Maintenance
Active

Release Timeline

Releases

Version Type Core Release date
2.3.0 Stable 10–11 Aug 10, 2026
2.2.0 Stable 9–11 Jun 3, 2024
2.1.0 Stable Jan 26, 2023