RDP secret Macro / Remote tools / Tool Credential

RDP secret Macro / Remote tools / Tool Credential

avatar

Dear Support
I have several RDP entries on my RDM (2023.3.39.0 64-bit) and I connect using Myprivileged Account. It is linked to our PAM Secretserver.

Today we had a problem on a server and I'd like to get the remote process list on the destination server.

So I've tried to use the Remote tools -> Remote Process but I get the access denied error. i suspect the tools run as my standard user and not myprivileged account.

Thank you
L.

RemoteDesktopManager_IbcEVogE4W.png

All Comments (4)

avatar

Hello,

Thank you for reaching out to us regarding this,

I see, if you go into your entry "Properties" under the "Management Tools" -> "Tools" section can you confirm that you have the correct credentials set there?

Let me know,

Best regards,

Samuel Dery

avatar

Hi
I've made some test using "Management Tools" -> "Tools" section

  • When I use a local administrator account as the session credential, I have no problems accessing the tools.
  • However, if I use my privileged domain account (which is also part of the local administrator group), I receive an "access denied" error.


  • This behavior suggests a permission issue is unlikely, as I can successfully connect to the system using the same privileged account through Computer Management.


avatar

Hello Luca,

Thank you for your feedback.

I was able to reproduce the issue.

I will create a ticket and keep you updated.

Best regards,

Patrick Ouimet

avatar

Dear all,
I need some advice on this setting.
I have servers in different domains, and I need privileged accounts from CyberArk to connect to these servers via RDP.
When I select the "Use session credentials" option in this setting, the MMC console with the appropriate snap-in opens and connects to the desired server. Everything works fine only for servers that are in the same domain as my admin workstation.
When I run, for example, Computer Management for a server in a different domain with this setting, the MMC console opens, the snap-in connects to the server in the other domain, but without the necessary permissions. The problem is likely that the MMC console launched this way runs in the context of the user I’m logged in as on the admin workstation. This account doesn’t have the necessary admin rights in the other domain. I can see this in Task Manager as well.
When I change the settings in the RDP session under "Properties" -> "Management Tools" -> "Tools" and select "My Privileged Account" (where I have correctly configured authentication for CyberArk accounts), the MMC console no longer launches, not even for a server in the same domain.

Please advise on how to configure this so that I can use these tools across domains.

Thank you
best regards
Jakub Vácha