Domain User PAM attributes not being populated until initiating a password reset
Hello,
It appears that the read only attributes of Domain User PAM credential entries are not being populated/updated, either when added manually or imported via account discovery, or when a heartbeat occurs.
If a password reset is initiated, then the attributes do get populated, however this is problematic for credentials which are static and cannot be reset without impacting a system actively using it.
The absence of the attribute values inhibits RDM being able to use the credential to logon to systems which require specific username formats (i.e. UPN or DOMAIN\Username).
In the case of the SID attribute, if this is not populated (such as when a PAM account is added manually), then when running an account discovery it is unable to detect that the credential already exists.
Please let me know if you would like any additional info.
Joe
8c0da797-e73e-4ea1-811f-85e87e1be84d.png
Hi Joe,
Thank you for reporting this issue.
I was able to reproduce the behavior and have logged it so our development team can investigate and work on a fix. I'll keep this thread updated as soon as I have any new information or once a fix is available.
Thank you again for bringing this to our attention.
Best regards,
Joey
Hello,
Thank you for your patience!
Could you please install the latest version of Devolutions Cloud Services (2026.3.1.8) and check if the issue you're experiencing still occurs? This version should resolve your issue.
If the issue persists after the update, please let us know so we can forward the information to our development team.
Best regards,
Maxim Robert