Password Hub Business improvements

Password Hub Business improvements

0 vote

avatar

Our team is using Password hub for a month now. We like it so far. There are still a few things I would like for improvement.
We use DPH for management of our client system passwords in the Windows app and some suppliers via the browser plugin.
Here are some bullet points our users would like in DPH.

Must haves

  • Bug: When Enforce 2-step verification upon unlocking is on, and inactivity time-out is on you have to enter password and OTP two times
  • Bug: The web client session is active for multiple weeks and does not require MFA (Using Edge)
  • Important: Wipe password from memory after X seconds
  • An extended lock-out policy for the Windows client and browser
    • Lock database when computer is locked.
    • Unlock only with MFA or password after locking computer.
    • re-authenticate PW + MFA after long period (like 8 hours)
    • re-authenticate PW + MFA after computer (re) start or sleep
  • When using Filter and selecting a entry or folder. On erase of the filter the selected entry or folder is deselected and you are back in the root. This makes searching for neighbour entries imposiible.
  • When using the search option, selecting an folder does not always work


Nice to have

  • Auto-type functionality (KeePass CTRL+V and sequence editing)
  • Windows Global shortcuts (CTRL+ALT+ K to get password manager on top)
  • In app shortcuts (copy username, password, url or description, start new search)
  • Promote certain Entry types. Or open General Entry category instead of all view.


Also nice

  • Change width of the three the columns, make entry list wider
  • Move the passwords to an seperate column like Windows Explorer or KeePass
  • Make keyboard arrow support better. The arrows work. it is just not clear what is selected
  • Creation of new entry types with specific fields, multiple encrypted fields, and icons.
  • Disable entry types (Disable store of OTP)
  • WebLogin: Assign new password to custom default folder instead of root
  • WebLogin: Adding and editing in a pop-up instead of new Page
  • PasshPhrase possibility
  • When creating a new entry. On copy password nothing is copied and field is blank. Fill with generated password at default.


I know it is a lot. Just hoping Password Hub will evolve to the best password management tool there is.


Regards,
Erik

All Comments (3)

avatar

Hello,

Thank you for your feedback! We will have different tickets open with the engineering department for them to have a look.

Best Regards,

Etienne Lord

avatar

With the following issues i mean the Edge browser plugin:

  • Bug: The web client session is active for multiple weeks and does not require MFA (Using Edge)
  • WebLogin: Assign new password to custom default folder instead of root
  • WebLogin: Adding and editing in a pop-up instead of new


When opening the vault in the web browser it self via https://*.devolutions.app i get an MFA request.

Thnx for the time

Regards,
Erik

avatar

Hi Erik,

We started to look at what you reported as Bug:

  • Bug: When Enforce 2-step verification upon unlocking is on, and inactivity time-out is on you have to enter password and OTP two times
    • We deducted that when Password Hub Logs out It prompt to Login and brings you to the Portal of your account where you need to Login completely ( password +2FA) and then access the Password Hub it prompts the 2FA again to unlock since you do have the Setting '' Enforce 2-step verification upon unlocking.
    • Can you confirm that this it the flow on your side. ? Anyway we will make adjustment here that when you logout of Password Hub, the login prompt will redirect in your Password Hub and not to Portal.So you will have just one complete log in process.


  • Bug: The web client session is active for multiple weeks and does not require MFA (Using Edge)
    • For this one we will need to understand more: What session is active for multiple weeks? Password Hub ? If yes you don't have a Setting to logout on Inactivity time ?


Thank you.
ps: we started to log all your requests, for some we will have some questions to better understand. we will get back to you

France Lymburner