RDM - Thycotic Secret Sever using ADFS Authentication

Implemented

RDM - Thycotic Secret Sever using ADFS Authentication

0 vote

avatar



We are looking to roll out RDM to all our engineers across the country, and as we have just implemented Thycotic Secret Server, we want to use this integration for secret/password management.

RDM doesn't currently support authenticating to Thycotic Secret Server via ADFS from what we can see, it seems to only allow you to authenticate against the Service URL.

Can ADFS authentication please be added to the support matrix for Thycotic Secret Server.

Cheers

Rich

All Comments (13)

avatar

Hello,

Just a note for the rest of the community since we've been communicating with the poster via email.

We need to work with Thycotic to identify if the API supports that workflow, and if so in which of their editions. After that, we need to work with their business team to get a NFR licence to allow us to implement the feature.

Best regards,

Maurice

avatar

Hi,
I work for the same company as the person who raised this issue over a year ago. I was wondering how close you are to getting this functional in the product. Without using Windows pass-through for ADFS we end up having to use local credentials for secret server in order to access it which expire after 30 days which makes using the product quite problematic.

Look forward to hearing some good news on this front.

avatar

Hello,

Thycotic have just proposed to create a new endpoint for us to submit a SAML Assertion, I do not know when the would be available for us to test against. It does involve development on their end....

Best regards,

Maurice

avatar

Hi Maurice,

Do you have an update on this request. without this, it is blocking us from moving secret server to use SAML and is making it difficult. Any update would help.

Thanks

avatar

Hello,

Sadly the whole windows team has been diverted to stabilization and bug fixes for our 2021.1 releases. I'm told that they are starting to have more capacity and will come back to our integrations.

The CEO has tagged SecretServer as the top priority because its our last use of the SOAP technology and it blocks us in other endeavors, so I think it will be quicker for that reason.

Sorry about that

Maurice

avatar

Hi Maurice,

Do you have an update on this request.

Thanks

avatar

Hello,

The rework of our Secret Server is completed and available in our latest beta release.

Prior to provide you the download link of that version, I would like to know what type of datasource are you currently running?

Best regards,

Jeff Dagenais

avatar

Hi Jeff,

we are in the process of upgrading to the latest RDM and moving our datasource to Azure SQL so we can use SSO.

do you know when this plans to be GA?

Thanks.

avatar
Hello,

The rework of our Secret Server is completed and available in our latest beta release.

Prior to provide you the download link of that version, I would like to know what type of datasource are you currently running?

Best regards,


Hi Jeff, great news, we are using Microsoft SQL server, utilizing Always on Availability groups for different teams using RDM.
did Thycotic provide you with the new SAML endpoint ?

avatar

@srikanthv, if everything goes well, this beta version of RDM should become GA in a week or two.

@n10ct, good question about the SAML endpoint support. I will validate with our engineering department and get back to you.

Jeff Dagenais

avatar

Any update Jeff ?

Cheers

avatar

@n10tc,

No news for now. The question has been escalated to our business architect, but he's out for offsite meetings this week.
I will get back here as soon as I have the answer.

Best regards,

Jeff Dagenais

avatar

Hello,

I had a chat with our business architect and it's on our ToDo list to support SAML, but we are waiting for Thycotic at this point.

That being said, I cannot provide a timeline for now, but we will post back when it will be implemented.

Best regards,

Jeff Dagenais