Pleasant Keepass Server integration

Pleasant Keepass Server integration

avatar

Hi all,

i am in the middle of building up RDM for our whole Team. We are using Pleasant Keepass Server for all our passwords and other Credential entries.

Basically we have filled all needed fileds with username, password, domain and so on.

Our issue is now, that when we save the username our AD-User (samaccountname) without any domain (Netbios) as prefiy to the username, the login to a rdp session is failing, becuase the domain is wrong. He is always takin the domain of the joined computer and not the domain configured in a field in the credential entry.

I have even created new fields in the credential entry in Pleasant, which is called {Domain} and changed under Advanced Options of the Pleasant Keepass Server entry to Username format "{Domain}\{User}". But did not solve it.

Even when I only try to Copy Domain from any entry, it is always sayin "nothing to copy"

Can someone please advise how to setup properly or how to map the correct fields between rdm and Pleasant? Where can I see a mapping or edit a mapping in RDM to Pleasant?

Kind regards
Paolo

All Comments (9)

avatar

Hello,

Thank you for reaching out to us regarding this,

I have a few questions which you can hopefully answer.

  • Which version of RDM are you using? You can confirm the version number under "Help" -> "About"
  • Which type of data source are you using?


I’m assuming you're encountering this issue with RDP entries is that correct? Perhaps you could provide me some screenshots of your entry "Properties" so I can have a better understanding of your current configuration.

Feel free to blur out any sensitive information.

Let me know,

Best regards,

Samuel Dery

avatar

Dear Samuel,

  • we are using latest Version of RDM 2022.3.24.0 64 Bit (of course :-) )
  • Data Source is Azure SQL


Yes the issue is with RDP entries, we are working in a "MGMT" Domain and login to customer VM's, so the basic Domain is always taken from our "MGMT" Domain. Only when we change the Username Filed in the entry to "domain\user" then it is working. But we need those entries for a lot of different portals, this is why it is not a solution right now.

This is the konfig of the pleaseant keepass server right now...

forum image

In advanced mode i found the username format:
forum image

But everything i add as a filed in plesant keepass with "Domain" gets ignored and does not help unitl now.

Is there anywhere a konfig /xml / json where the mapping is visible and editable? Are you looking for more information about the configuration?

Thank you very much.

Kind regards
Paolo

avatar

Hello,

Thank you for your reply and for the screenshots,

I see, If you change the "Username Format" directly in the "RDP" entry "Properties" instead of your Pleasant Password Server entry do you still encounter this issue?

Let me know,

Best regards,

Samuel Dery

avatar

HI Samuel,

sadly it still takes the domain of the MGMT Host, we are workin from.

Is there any kind of Log, what is extracted from Pleasant Keepass? Or which fileds are looked up?

Kind regards
Paolo

avatar

Hello,

Thank you for your reply,

I wanted to let you know that I'm currently discussing your case with our engineering department,

I will keep you updated regarding this,

Best regards,

Samuel Dery

avatar

Hello,

Thank you for your patience,

I've discussed your case with our engineering department and have found a solution that will hopefully work in your case.

  1. Create Folder entries of the "Server" type, to do so simply create a "Folder" entry and in the bottom left corner of the entry "Properties", you can select the type.
  2. Once created, you can add a "Domain" in the "Properties" of this folder entry.
  3. With this done, you can add your Pleasant Password entry to this new folder.
  4. If you change the "Username" of your Pleasant password entry to $COMPUTER_DOMAIN$\<username> the value entered in the "Domain" field of your folder "Properties" should automatically replace the variable.


If you have multiple domains you could duplicate the configuration and change the "Domain" value in the folder "Properties".

Let me know if this helps,

Best regards,

Samuel Dery

avatar

Hi Samuel,

thank you very much for your effort in this case, but this solution is not working, or i do not really understand.

I have two top level folders Credentials and Connections. Underneath connentions i have a folder for each customer and below this my connections.

On the Connections Folder is Pleasant Keepass linked and all other folders are inherited, so i am not able to override any domain.

But for me this will still not solve it, because I need to be able to access the domain out of the Pleasent Keepass connection, because there it is up to date and every customer has its own domain and this info is only in the keepass before connection available

At the moment the only solution is to change the Username entry in the keepass Database :-|

Also questioned before, is there not a mapping list between rdm and pleasant available?

Kind regards
Paolo

avatar

Hello Paolo,

Thank you for your reply,

I see, I'm wondering if you would be interested in a remote session so that I can have a better understanding of your scenario.

To perform one I would need to open a ticket for you, would the email used for your Devolutions Account be the correct one for the ticket?

Let me know,

Best regards,

Samuel Dery

avatar

Hi Samuel,

yes, the mail is correct.

Thank you very much for your effort.

Kind regards
Paolo