Use Windows Integrated Auth with CyberArk

Use Windows Integrated Auth with CyberArk

0 vote

avatar
epicpv2
Disabled

Through a browser, I can authenticate to CyberArk using Windows Integrated Authentication. It would be nice to be able to do this from RDM as well, much in the way that I can authenticate to Secret Server using Integrated Auth.

All Comments (6)

avatar

Hello,

I've just recently been on a call with CyberArk's team where we analyzed the gap between our implementation in regards to some of our other partners in the PAM space.

Here's a list of what we want to address:







We have to work with what their REST APIs currently offers as some features are missing. We are working with them on coming up with solutions in the short term until they can add services to their APIs. (Like using the PACLI to list credentials...)
So nothing concrete here about integrated auth, we were focusing on listing credentials at this time. I wanted to convey that indeed we had the plan, and that we had a great collaboration with their team.

Please continue to submit feature requests as this really drives where we'll put our efforts next.
Best regards,

Maurice

avatar

Excellent, happy to hear these are all on the roadmap.

avatar

As long as PSM is not a requirement, great.

avatar

Any updates on this? I recently installed the latest version of RDM and it still requires me to enter credentials to access CyberArk. Are there any workarounds at this time that will pass my Windows credentials to CyberArk for authentication?

avatar

Hello,

The REST API to allow for this has been made available just this month.

Our friends at Cyberark have provided us with an updated version but we have one more meeting planned to make our environment "production ready" .

Our Engineering dept is waiting for this before they can start the implementation. It will be a few releases still before its made available.

Best regards,

Maurice

avatar

Hi,

Is this already implemented? We are also using Cyberark, but then in combination with Microsoft and a 2factor authentication method that sends us a code or through an app to make sure you can connect to Cyberark.

If I use the CyberArk now it seems I can't use it as somewhere along the path it doesn't return a new password. Have filled in the Safe Name and keyword as provided in instructions.

Kind Regards,
Günther