Password Change Agent

0 vote

avatar

We currently use PassPortal and RDM. The only thing keeping us tied to PassPortal is the remote agent you can install that allows PassPortal to update a password in Active Directory on a schedule. It also allows you to bulk change admin passwords in case someone is terminated or resigns. Does RDM have a feature like this or plans for one in the future?

You can see it explained here. https://www.passportalmsp.com/change-automation

All Comments (5)

avatar

Hello,

As a part of the PAM solution, Devolutions Password Server will offer that possibility in the future. This has been planned for September 2019 as stated in the following Road Map blog article.
https://blog.devolutions.net/2019/02/devolutions-2019-road-map

Best regards,

Érica Poirier

avatar

So the road map of course is very vague. Could you elaborate on what that means? PAM (change password). In what way will it do so. Will it be something like a traditional PAM like Thycotic or CyberArk? I am trying to determine if I should go with one of those products or should I hold out with PassPortal which is my current PAM and use the Devolutions product when it releases. Like will it work with just Windows systems? Will it work with other devices like switches and routers? SSH and Telnet capabilities? API integrations with popular cloud services? What about remote agents to change passwords on systems separated by firewalls?

avatar

Hello,

Thats our roadmap for the next three years ;)

But seriously, until september we are focusing on Password Resets on Windows boxes, with the aim of propagating the changes to Services, App pools, etc. on servers joined to a domain initially, then standalone servers.


After september...

For SSH boxes, is there value to do remote password resets before handling private key rotations as well? Seems to us that a lot of people are talking about private key authentication as a priority.


API with popular cloud services, do you mean AWS and Azure, meaning IAM, or integration of ticketing systems? (both are on the roadmap, we can take your vote on your preference though)

Remote agents: definitely, we can choose to pursue with our own RDM Agent, Wayk Now, we even have the bases of a proxy server somewhere in a cardboard box.

TL;DR;

We intend to offer a PAM for those that cannot afford the top quadrant of Gartner's market guide. If you must have all of these capabilities right now (and have the budget), you must stick with them. We will focus on what drives 80% of our community, namely managing windows and SSH environments.

Best regards,

Maurice

avatar

Wow that was a lot more information than I thought I was going to get. Thank you Maurice. To answer your questions of my questions. :)

My main concern or focus would be to replace my current PAM. PassPortal. Which only changes Windows boxes. I my main issue is will it do it with a remote agent. Because we are an MSP. I have remote networks that are not directly connected to my Devolutions Password Server. Sounds like that is what you guys are hoping to do. Changing SSH passwords or updating cloud services is something we want to do but I just have an immediate need to replace PassPortal. I can't use PassPortal integrated with RDM when RDM is in offline mode. That is a pain point and I understand why it works that way. I just want all my passwords in one place. Password Server. If you guys get Windows password with remote agent you have solved my main issue. Thanks for the feedback. I was expecting you guys to be tight lipped about it since it was still on the roadmap and so far out lol.

avatar







Thanks, for sharing this.