Pleasant Password Server – SAML SSO Authentication in RDM (follow-up to 2023 request)
1 vote
Hi,
We're in the process of migrating our Pleasant Password Server authentication from LDAP to SAML SSO, using Authentik as our identity provider. The migration on the PPS side works fine — web UI and KeePass clients authenticate correctly via SAML.
However, we rely heavily on the PPS integration in Remote Desktop Manager, and it appears RDM does not support SAML-based authentication against PPS. When "Enforce Partner Sign-In" is enabled in PPS, RDM login fails entirely. The only workaround we've found is enabling "Allow Exception for Direct Sign-In" for the affected users, which bypasses SAML and falls back to direct credential auth — defeating the purpose of the migration for those users.
I found an older thread from 2023 documenting the same issue (https://forum.devolutions.net/topics/40098/pleasant-password-server--saml-sso-authentication), where a Devolutions engineer indicated they would investigate whether the PPS library supports SAML. As far as I can tell, nothing has shipped since then.
So my questions:
1. Is SAML authentication for PPS data sources/credential entries in RDM on the roadmap?
2. Is there any workaround beyond the "Allow Exception for Direct Sign-In" policy exception?
3. Has anything changed in recent RDM versions that might help here?
For context: we're running RDM on Windows, PPS on a recent version with Authentik as the SAML IdP.
Thanks
Hello,
SSO support for Pleasant Password was added back in version 2024.3. If you use the entry in our latest version, you should see a dropdown to choose the SSO mode:
Can you try this mode and let me know if this works? I will admit I'm not familiar if every different SSO login method is supported, but I'd like to at least confirm if configuring the entry in SSO mode helps in your case, and if not, what error messages are shown, if any.
Regards,
Hubert Mireault
2c44222e-5ef6-4b5a-b8c8-96a413acd1bc.png