A general place for Password Safe conversations.
Recently active
Hello team,I have web applications configured in password-safe. When the end user takes a session, it injects credentials. I want to temporarily block mouse and keypad control over applications during credential injection. Once user log-in completes, it should enable the end user to perform further activity.Any suggestions to achieve this use case will be appreciated. Thank you.
Hello All,I am looking for some information about discovery scan configuration.How do we setup scan agent and how its shown in list as to select for scanning? Thanks,Prasad
Hi,Is there a way to include a body tag which is not available in the description of that template but is available for other template. For Release Request Access Policy mail template, we want to include the Reason in the email. But available body tags does not have “ :RequestReason:”In other mail template it is available. The form captures it that means it is being recorded somewhere. Is there any way to include the reason in “Release Request Access Policy” mail template
Hello Everyone,I was looking for reference to enable domain login for BeyondInsight. (like screen below). We have directory credentials account working fine. I tried by creating new domain in domain management but still I could only see UserName and Password field on login screen. I am looking for that third field “Log in to” with domain name in that as option.
I need a PowerShell script which will set the password on managed system once the managed account password is rotated by functional account as per password policy in PasswordSafe. I think it’s possible through propagation features but don’t know how to do. Can anyone please help me on this?
The following articles were published last week. New Knowledge Base Articles: KB0021672 - Analytics & Reporting process daily failed - File system error: A string store or binary store with a compatibility level of '1050' is at the maximum file size of 4 gigabytes. KB0022048 - After editing a Built-in custom platform, the configurations were reset KB0022074 - How to assign permissions and features for login users to test and change password on managed accounts KB0022078 - Unable to assign Password Safe roles to smart groups - Blank error received KB0022082 - Setting HA error - Test heartbeat communication failed. The remote name could not be resolved KB0022100 - Does the Password Safe RDP Artifact Hotfix 24.3.0.1263 or cloud maintenance conflict with Microsoft's fix KB5051987 KB0022102 - What KEX Cipher, Host Key Algorithm, Encryption Cipher, and MAC Cipher IDs does the Discovery Scanner use?
How to get the complete list of supported platforms for beyondtrust passwordsafe? what we see is in few versions the platforms that were listed are removed in the newer ones does that mean its not supported? Also If we have to get the complete list how do we get which is supported and which are not supported.
hi,When I installed EPMfW, I installed the BeyondInsight certificate together.The installed certificate has a validity of 10 years. After 10 years, do I have to install the new certificate directly on each PC? Is there any other way to manage it?
First off thanks for adding a Knowledge Center to Password Safe, really great.BUT why does this have to be a “lose” button that can be placed anywhere on the screen.Default, right on top of your counts. Exactly the same was done prior in PM Cloud, WHY. This could easily be a static button in the menu on the left, plenty of room for both PS Cloud and PM Cloud.
Hello Guys, In Password Safe cloud the retention policy for session recordings is 1 year, is there any method we can extend this in the cloud, or can we get it saved to an on-prem server or NAS? Thanks Gavin
The following articles were published last week. New Knowledge Base Articles: KB0022023 - Error "HTTP status code: undefined" when trying to log in to Password Safe Cloud KB0022032 - How many FIDO2 Authenticators can be registered in Password Safe? KB0022059 - Secret Cache server error: Couldn't connect to server. Failed to create HTTPS rest server KB0022062 - RDP proxied session through Password Safe is missing bgInfo KB0022064 - Receiving error when attempting to delete account in User Management - Error generating access token in web console log file KB0022076 - How to setup high availability active passive pair
Hi All, I have a question regarding my exam eligibility for BCIE - Password Safe Certification.In BCIE - Password Safe Learning Path inside BeyondTrust University platform, there is a module called ‘Password Safe Deployment Exam’. I already took the exam and pass it on November 07th, 2024. Today (February 27th, 2025), I want to review the exam questions but because of the bug which I cannot view all the exam questions then I try to retake the exam. After I retake, I found out I failed the exam and I cannot retake the exam again. But if I see the status of the module, it still said “Course Completed”. My question is:am I still eligible to take Lab Assesstment Exam?I already took the Password Administration Exam before and pass it. So I only need to pass the Lab Assesstmen Exam. From my view, I can still complete the last module if you see the capture below but I have concern since I failed the newest retake in Password Safe Deployment Exam module.I am waiting for all of your responses.
Greetings! I'm Phillip Lehner, the Senior Director of Education at BeyondTrust, and I'm thrilled to lead our efforts in delivering exceptional learning experiences. I'm excited to share how we're elevating your journey with a new, streamlined method of accessing training: Success Included with BeyondTrust University. At BeyondTrust University, we believe our customers deserve nothing short of excellence in the tools they use. That’s why we’ve launched 'Success Included' — to elevate your learning experience and ensure you achieve success with BeyondTrust’s solutions. Success Included is an education program that makes foundational knowledge accessible to customers at no additional cost. It features easy-to-follow, self-paced eLearning courses that empower system administrators to configure and manage BeyondTrust products using industry best practices. Our goal is to equip learners with the knowledge needed to maximize the value of their investment with BeyondTrust. Because your s
Hi team,Is it possible to have credential checkout functionality outside of RDP sessions in PasswordSafe cloud. Thanks,CS
The following articles were published last week. New Knowledge Base Articles: KB0022010 - How does the worker node recognize which network interface to use for communication? KB0022053 - Password Safe report not showing all reviewed sessions KB0022056 - After editing default Password Policy, the configurations were reset. KB0022058 - Propagation action events missing from service accounts even though propagation actions are successful. Error: Bad Gateway 502 errors KB0022067 - How to backup Secrets Safe for disaster recovery
we have propagation action for service account would how we can list which account are associated with the propagation action and how do we alert it the action fails for some reason
I checked KB0019103 kb article but this works only for Linux Servers, is there any such mechanism for RDP Connection on Windows Servers as well?I want to restrict specific users so that they can’t see reboot and shutdown option or their sessions should be terminated same as in Linux Server.
I tried extracting the User Account on Asset Report under Analytics & Reporting tab Reports->AssetUser->Account. But the report contains disabled account as well, I need the report to contain the Disabled column having True/False Flag.See below screenshot of one asset If in asset details there is column of Disabled then why can’t we see in reports.
Is there a way to limit the servers a user sees when accessing their privileged account? We want to be able to only list servers a user has access to in AD so that they can RDP to them without being overwhelmed with a listing of all servers.
Hi, I am unable to get RDP sessions after updating my assets.
Is there a way to alert when an user views the recording ? We can see it says 1 audit after the video is played etc but can we sent this as alert? or is it part of the audit logs? and can we sent that to the SIEM and from their set alert?
Hello everyone, I am having an issue in my enviroment, we have 2 RDS assets who has a load balancer between the PS Server and then. And the session hijacking is occurring only on application session, the access policies is already on the configuration to logoff on disconect, force termination and enhanced session auditing, I tested some ports in the load balancer that are used to deploy the ESA service, 445 and 139, and both were blocked, but even after the release the problem persisted, not all sessions suffer from this problem of session stealing, but it is a significant number that is impacting on the experience of using the tool. Someone can help me with any other alternative to avoid this problem? Thanks
The following articles were published last week. New Knowledge Base Articles: KB0021346 - MobaXterm SFTP side pane missing directories and file when doing Quick Connect session that are proxied through Password Safe KB0021989 - HA Error: Validate partner product configurations... The SQL Server account names which Endpoint Privilege Management is configured to use must match. KB0022015 - How to restrict users from viewing passwords when Password Safe and PRA are integrated KB0022021 - Direct Connect SSH session timeouts with MFA error "connection reset by peer" KB0022029 - RDP sessions are disconnecting after a few minutes "The connection to the remote computer was lost, possibly due to network connectivity problems" KB0022039 - After upgrading to Password Safe 24.3, API call to get secrets using path is not retrieving the secret KB0022043 - BeyondTrust Scan Accounts not closing sessions. Idle ses
Need a report containing list of assets having no managed account
Need a report containing list of users having access to which assets through which managed account, I have already tried running Entitlement by User report but it does not meet my usecase.I need a single csv file containing the list of all the users having access to which all managed systems via which which managed account. Needed for compliance purpose, but this BeyondTrust PasswordSafe is unable to meet my criteria. I am clueless to know that this tool is PAM Leader in the market!!!
Already have an account? Login
No account yet? Create an account
Enter your E-mail address. We'll send you an e-mail with instructions to reset your password.