Is there a way to use a password from my password vault to log on to a Gateway server?

Implemented

Is there a way to use a password from my password vault to log on to a Gateway server?

avatar

In the setup under logon method I don’t have the option to select from Privat vault.

forum image

All Comments (21)

avatar

Hello,

Thank you for contacting us on that matter!

You should normally be able to select the "Private Vault Search" credential mode in the upper section of your entry's properties to pick a credential from your Private Vault.

forum image

Let me know if that's what you were looking for or if you need anything else!

Best regards,


Gabriel Degrandpré

avatar

If you crate a Microsoft RDP Gateway entry

forum image

You do not have this option for the RD Gateway settings
forum image

RDM Versionn 2020.2.19.0
Running on Windows 10 Client
Datasource Microsoft SQL Azure

avatar

Hello,

There is a difference between the Logon method and the Credential mode your entry uses. Regardless of the Logon method, if you wish to retrieve your credentials from the Private Vault, this can be set by selecting the Private Vault Search, as I showed in the screenshot in my previous message.

Alternatively, if you leave Credentials to the Default mode, you can also use the "Credentials" button at the bottom of the entry's properties and select the "Use private vault search" option there.

Best regards,


Gabriel Degrandpré

avatar

When I am logging on to a server behind a RD Gateway server It
seems that I can’t get RDM to send the correct username and password to the GW server.

I am getting this when trying to log on, do I manually log in
to this the rest is fin.

forum image

What do I have to do to get RDM to log on to the Gateway
server? This is my current config.

The config on the RDP is:
forum image

And the config on the Gateway:

forum image





avatar

Hello,

First of all, I feel the need to mention that it's possible to configure your RDP Gateway directly in your RDP session. This can be done in the Connection tab of RDP entries :
forum image

Just to make sure I don't send you an unnecessarily long wall of text, I would like to verify if you prefer to set up your Gateway in a different entry, or if you would be comfortable to configure it in the RDP entry directly, as that would be a different and slightly simpler solution.

Best regards,


Gabriel Degrandpré

avatar

I have 30 000 Entries in 186 Vaults so I prefer to inherit it and make the settings on a Folder.
I got it working if I configure it in the entry.

avatar

Hi
Have you hade the time to check this out, I want to set this
on the folder and Inherit to the enters.

avatar

Hello,

Sorry for the delayed answer! Thank you for your patience.

If you need to apply the Gateway setting to multiple entries at the same time, then you are right, using an external Gateway entry will be much more convenient. Since you have confirmed that the Gateway works when configured directly in the entry, there shouldn't be too much left to do.

In your RDP session, in the VPN/SSH/Gateway tab, set Type to Gateway and Credentials to Default.
forum image

Then, in the Settings tab, use the ellipsis (...) button next to Gateway to select your RDP Gateway entry.
forum image

Normally, once these configurations are saved, if your RDP and Gateway entries have the right configurations, your session should work as expected.

Once that is confirmed, you can apply the setting in bulk to all of your RDP entries that use this Gateway. To do so, highlight your entries in the Navigation pane, go to Edit > Batch Edit > Edit Entries (General Settings). There, in the VPN/SSH/Gateway section, you will be able to set your Gateway as described above and the setting will apply to all selected entries.

Best regards,


Gabriel Degrandpré

avatar

This do not work.

 I am getting “The logon attempt failed” (To the Gateway) when setting Credentials to Default.

When I am setting it to Privat vault search I just getting the logon box for the gateway.

The same result as when I try inheriting from folder.

avatar

Hello,

Just to make sure everything is clear, I wrote a procedure on how to configure the RDP Gateway and the RDP entry. This exact setup works on my side, so I'm assuming, unless you have other factors that weren't mentioned yet, that this should work for you as well. I invite you to try out these steps using brand new entries, to avoid any previous configurations from causing issues.

Credential entry
• Create your credential entry (Preferably a Username/Password entry) in your Private Vault. Make sure its name is unique to avoid any issues. Enter the Username and Password for your RDP Gateway in this entry.
forum image

RDP Gateway entry
• In the General tab, set the Credentials drop-down menu to Private Vault Search and enter the name of the credential entry in the field. Since we enter the credentials here, no need to use the Credential button at the bottom of this window, you can simply ignore it.
• In the General tab, enter your RDP Gateway host in the Host field.
forum image

RDP entry
• In the General tab of the General section, enter at least your Host, Username and Password for the RDP session.
• In the VPN/SSH/Gateway tab of the VPN/SSH/Gateway section, select Gateway as the Type and Default for the Credentials drop-down.
forum image
• In the Settings tab of the VPN/SSH/Gateway section, select your RDP Gateway entry in the drop-down menu.
forum image

Once all of this is done, if everything is set properly, your RDP session should retrieve its Gateway settings from the RDP Gateway entry, which itself takes its credentials from the Username/Password entry in your Private Vault.

Best regards,


Gabriel Degrandpré

avatar

Sorry to say it but its dos does not work for me with that configuration.
forum image
forum image

forum image
forum image


avatar

Hello,

Out of curiosity, could you please look in your Windows Credential Manager, in the Windows Credentials section, if there is any credential entry in there saved for your gateway? If there is, it might be interfering with the credentials RDM sends for the gateway and deleting it would solve that issue.

Best regards,


Gabriel Degrandpré

avatar

There is not any credential in the Windows Credential Manager for the gateway and remember that this is working if I configure it
directly on the RDM entry.

avatar

Hello,

Rereading our exchanges, I did see the message where you mentioned that this worked when configured directly in the entry. Just to clarify, when you configured the gateway settings directly in the entry, did you still use the Private Vault Search for your gateway credentials or did you configure that directly in the entry as well?

Best regards,


Gabriel Degrandpré

avatar

Hello,

Yes, I used the Privat Vault Search for the gateway credentials directly in the entry as well.

avatar

Hello,

Thank you for your reply. After the connection to the Gateway fails in RDM, could you please look in your Gateway server logs what user is attempting to log in the gateway? Is it the user you configured in your Private Vault credential entry?

Best regards,


Gabriel Degrandpré

avatar

It is trying to use the account for the remote computer instead of the user for the gateway.
And if I change the name off the Private vault search on the gateway entry Unable to find the privat....
forum image

avatar

When I Change the Credentials to default on the RD Gateway and configured the Credentials under Credentials Button, it starts working.

forum image

avatar

Hello,

In that case, just to make sure, if this works when configuring the credentials to Default and setting the Private Vault Search in the "Credentials" button, does this mean that you are now set up in a way that works for you?

Best regards,


Gabriel Degrandpré

avatar

That is correct, it works for me now.

I believe it is a bug in RDM that if you set something wrong
under the credential button and then change the credential settings on the RD gateway
to default so that the credential button is gray it still uses the setting
under the credential button.

Thank you for the help to solve this, this can be marked as resolved.

avatar

Sorry for the delay, but glad it's working for you now. We'll open a ticket to fix this behavior, as it isn't intended.

Regards,

Hubert Mireault