I'm having a use case issue: we bring the group and user directly from AD. When I log in through Workforce, it takes a long time and doesn't inject the credentials. I don't know if the tool only supports local users? I have that question.
Regards.
I'm having a use case issue: we bring the group and user directly from AD. When I log in through Workforce, it takes a long time and doesn't inject the credentials. I don't know if the tool only supports local users? I have that question.
Regards.
Yes, BeyondTrust Password Safe, Workforce Passwords module, does support SAML-based authentication.
SAML 2.0 Support: BeyondTrust Password Safe integrates with identity providers like Azure Entra ID and Arculix by SecureAuth using SAML 2.0 for single sign-on (SSO) and provisioning.
IdP-Initiated Integration: You can configure BeyondTrust Password Safe for IdP-initiated SAML login, allowing users to authenticate via a centralized identity provider and access Password Safe seamlessly.
Workforce Passwords Compatibility: Workforce Passwords, an add-on to Password Safe, also works with SAML. However, it's important to ensure that the Password Safe URL configured in Workforce Passwords matches the SAML redirect URL. If they don’t match, login issues may occur
Here's a breakdown of what might be causing the slow login and credential injection issues in BeyondTrust Workforce Passwords, especially when using Active Directory (AD) users and SAML authentication:
Registry Fix for AD Group Limit:
MaxTokenSize
to 65535
in the registry as described here.Verify SAML Configuration:
Extension Setup:
please let me know if this helps?
Enter your E-mail address. We'll send you an e-mail with instructions to reset your password.