A general place for Password Safe conversations.
Recently active
The following articles were published last week. New Knowledge Base Articles: KB0021816 - Password Safe Managed System cloud platform deprecation - Office 365 and Azure KB0022017 - Failed to established mirror for database: RetinaCSDatabase SQL Server returned: 'The server network address "TCP://:5022 KB0022057 - OAuth error when connecting to MMC policy editor - Failed to connect. Please check server details KB0022058 - Propagation action events missing from service accounts even though propagation actions are successful. Error: Bad Gateway 502 errors KB0022073 - Pathfinder and Password Safe Cloud 24.3.1 - SAML user is removed from the local group in PS Cloud KB0022086 - Discovery Smart Rule that includes a directory query shows no assets KB0022087 - Improved Quick Launch re-use workflow KB0022089 - After Password Safe upgrade getting unauthorized error for Vaulting request
We have PRA and Password Safe integrated.When launching Web Jump for a host esxxx, credentials are not being pulled from the Password Safe. but for the same host esxxx, when launching SSH Jump, credentials are able to pull from Password Safe.Is there any additional settings has to enabled for Web Jump to pull credentials from Password Safe? Credentials added to PRA Vault is working but not from Password Safe.
Hello Community,I have a platform that is a Radware load balancer. I would like to know if anyone has a custom SSH platform for this device that they could share with me.I would greatly appreciate your support.Thanks in advance!
Hello team,I have web applications configured in password-safe. When the end user takes a session, it injects credentials. I want to temporarily block mouse and keypad control over applications during credential injection. Once user log-in completes, it should enable the end user to perform further activity.Any suggestions to achieve this use case will be appreciated. Thank you.
Hello All,I am looking for some information about discovery scan configuration.How do we setup scan agent and how its shown in list as to select for scanning? Thanks,Prasad
Hi,Is there a way to include a body tag which is not available in the description of that template but is available for other template. For Release Request Access Policy mail template, we want to include the Reason in the email. But available body tags does not have “ :RequestReason:”In other mail template it is available. The form captures it that means it is being recorded somewhere. Is there any way to include the reason in “Release Request Access Policy” mail template
Hello Everyone,I was looking for reference to enable domain login for BeyondInsight. (like screen below). We have directory credentials account working fine. I tried by creating new domain in domain management but still I could only see UserName and Password field on login screen. I am looking for that third field “Log in to” with domain name in that as option.
I need a PowerShell script which will set the password on managed system once the managed account password is rotated by functional account as per password policy in PasswordSafe. I think it’s possible through propagation features but don’t know how to do. Can anyone please help me on this?
The following articles were published last week. New Knowledge Base Articles: KB0021672 - Analytics & Reporting process daily failed - File system error: A string store or binary store with a compatibility level of '1050' is at the maximum file size of 4 gigabytes. KB0022048 - After editing a Built-in custom platform, the configurations were reset KB0022074 - How to assign permissions and features for login users to test and change password on managed accounts KB0022078 - Unable to assign Password Safe roles to smart groups - Blank error received KB0022082 - Setting HA error - Test heartbeat communication failed. The remote name could not be resolved KB0022100 - Does the Password Safe RDP Artifact Hotfix 24.3.0.1263 or cloud maintenance conflict with Microsoft's fix KB5051987 KB0022102 - What KEX Cipher, Host Key Algorithm, Encryption Cipher, and MAC Cipher IDs does the Discovery Scanner use?
How to get the complete list of supported platforms for beyondtrust passwordsafe? what we see is in few versions the platforms that were listed are removed in the newer ones does that mean its not supported? Also If we have to get the complete list how do we get which is supported and which are not supported.
hi,When I installed EPMfW, I installed the BeyondInsight certificate together.The installed certificate has a validity of 10 years. After 10 years, do I have to install the new certificate directly on each PC? Is there any other way to manage it?
First off thanks for adding a Knowledge Center to Password Safe, really great.BUT why does this have to be a “lose” button that can be placed anywhere on the screen.Default, right on top of your counts. Exactly the same was done prior in PM Cloud, WHY. This could easily be a static button in the menu on the left, plenty of room for both PS Cloud and PM Cloud.
Hello Guys, In Password Safe cloud the retention policy for session recordings is 1 year, is there any method we can extend this in the cloud, or can we get it saved to an on-prem server or NAS? Thanks Gavin
The following articles were published last week. New Knowledge Base Articles: KB0022023 - Error "HTTP status code: undefined" when trying to log in to Password Safe Cloud KB0022032 - How many FIDO2 Authenticators can be registered in Password Safe? KB0022059 - Secret Cache server error: Couldn't connect to server. Failed to create HTTPS rest server KB0022062 - RDP proxied session through Password Safe is missing bgInfo KB0022064 - Receiving error when attempting to delete account in User Management - Error generating access token in web console log file KB0022076 - How to setup high availability active passive pair
Hi All, I have a question regarding my exam eligibility for BCIE - Password Safe Certification.In BCIE - Password Safe Learning Path inside BeyondTrust University platform, there is a module called ‘Password Safe Deployment Exam’. I already took the exam and pass it on November 07th, 2024. Today (February 27th, 2025), I want to review the exam questions but because of the bug which I cannot view all the exam questions then I try to retake the exam. After I retake, I found out I failed the exam and I cannot retake the exam again. But if I see the status of the module, it still said “Course Completed”. My question is:am I still eligible to take Lab Assesstment Exam?I already took the Password Administration Exam before and pass it. So I only need to pass the Lab Assesstmen Exam. From my view, I can still complete the last module if you see the capture below but I have concern since I failed the newest retake in Password Safe Deployment Exam module.I am waiting for all of your responses.
Greetings! I'm Phillip Lehner, the Senior Director of Education at BeyondTrust, and I'm thrilled to lead our efforts in delivering exceptional learning experiences. I'm excited to share how we're elevating your journey with a new, streamlined method of accessing training: Success Included with BeyondTrust University. At BeyondTrust University, we believe our customers deserve nothing short of excellence in the tools they use. That’s why we’ve launched 'Success Included' — to elevate your learning experience and ensure you achieve success with BeyondTrust’s solutions. Success Included is an education program that makes foundational knowledge accessible to customers at no additional cost. It features easy-to-follow, self-paced eLearning courses that empower system administrators to configure and manage BeyondTrust products using industry best practices. Our goal is to equip learners with the knowledge needed to maximize the value of their investment with BeyondTrust. Because your s
Hi team,Is it possible to have credential checkout functionality outside of RDP sessions in PasswordSafe cloud. Thanks,CS
The following articles were published last week. New Knowledge Base Articles: KB0022010 - How does the worker node recognize which network interface to use for communication? KB0022053 - Password Safe report not showing all reviewed sessions KB0022056 - After editing default Password Policy, the configurations were reset. KB0022058 - Propagation action events missing from service accounts even though propagation actions are successful. Error: Bad Gateway 502 errors KB0022067 - How to backup Secrets Safe for disaster recovery
we have propagation action for service account would how we can list which account are associated with the propagation action and how do we alert it the action fails for some reason
I checked KB0019103 kb article but this works only for Linux Servers, is there any such mechanism for RDP Connection on Windows Servers as well?I want to restrict specific users so that they can’t see reboot and shutdown option or their sessions should be terminated same as in Linux Server.
I tried extracting the User Account on Asset Report under Analytics & Reporting tab Reports->AssetUser->Account. But the report contains disabled account as well, I need the report to contain the Disabled column having True/False Flag.See below screenshot of one asset If in asset details there is column of Disabled then why can’t we see in reports.
Is there a way to limit the servers a user sees when accessing their privileged account? We want to be able to only list servers a user has access to in AD so that they can RDP to them without being overwhelmed with a listing of all servers.
Hi, I am unable to get RDP sessions after updating my assets.
Is there a way to alert when an user views the recording ? We can see it says 1 audit after the video is played etc but can we sent this as alert? or is it part of the audit logs? and can we sent that to the SIEM and from their set alert?
Hello everyone, I am having an issue in my enviroment, we have 2 RDS assets who has a load balancer between the PS Server and then. And the session hijacking is occurring only on application session, the access policies is already on the configuration to logoff on disconect, force termination and enhanced session auditing, I tested some ports in the load balancer that are used to deploy the ESA service, 445 and 139, and both were blocked, but even after the release the problem persisted, not all sessions suffer from this problem of session stealing, but it is a significant number that is impacting on the experience of using the tool. Someone can help me with any other alternative to avoid this problem? Thanks
Already have an account? Login
No account yet? Create an account
Enter your E-mail address. We'll send you an e-mail with instructions to reset your password.