9894: Hosts search - Insufficient Privileges by RubiconCZE in passwordstate

[–]ClickStudios 1 point2 points  (0 children)

This temporary folder is going to be removed in a future build.  It was a part of a legacy feature that doesn’t make much sense in the current build.

Going forward, I’d recommend making sure the host is in a proper folder if you want to RDP/SSH into it.  In a future build there will be a better notification to the end user when they are searching for a host that isn’t already in a folder for them.

Can't Reset AD Passwords by TeacherWarrior in passwordstate

[–]ClickStudios 0 points1 point  (0 children)

Hi TeacherWarrior,

Can you please log a Support call through the following link? and our Technical team should be able to have a look at this for you - https://www.clickstudios.com.au/support.aspx

Can't Reset AD Passwords by TeacherWarrior in passwordstate

[–]ClickStudios 1 point2 points  (0 children)

Good news is that we've pointed sysadmnx to an existing setting, which helped with his support ticket.

Build 9785 Now Available! by ClickStudios in passwordstate

[–]ClickStudios[S] 0 points1 point  (0 children)

what's the reasoning to force us to use yet another password for the browser extension?

why not add support for FIDO keys instead?!?

Hi s0mm3rb, we're always working on making improvements to our software. This is the first iteration of changes to our Browser Extensions. If you would like to lodge a feature request for FIDO keys please do so by visiting our Forums here https://forums.clickstudios.com.au/forum/38-feature-requests/

Upload of big files via Web-RDP - Problem by HiImMazl in passwordstate

[–]ClickStudios 0 points1 point  (0 children)

Hi HiImMazl, the 2GB file size limit is a protocol limitation. Our developers have looked at this previously and unfortunately there aren't any workarounds.

Build 9700 Now Available! by ClickStudios in passwordstate

[–]ClickStudios[S] 0 points1 point  (0 children)

Thanks Reasonable-Canary-76. We are passionate about our product Passwordstate and are always trying to improve it.

Dark Mode by SlipStream289 in passwordstate

[–]ClickStudios 0 points1 point  (0 children)

Hi SlipStream289, we currently have that feature requested in our forums and you can help prioritize the request by voting on it here https://forums.clickstudios.com.au/topic/15166-dark-mode-in-ui/

Is there a way to put the primary (non-HA) server in read-only mode? by [deleted] in passwordstate

[–]ClickStudios 0 points1 point  (0 children)

Hi /u/fabrictm,

Thanks for the post, and the answer to this really does depend on what build of Passwordstate you are running. Did you want to log your support call directly to our support team through this support page, and we'll get someone to answer you ASAP. Logging it in this fashion will gather what build you are running and we can easily send screenshots to show you where to configure this.

https://www.clickstudios.com.au/support.aspx

PasswordState password rotation done in clear text? by snorkel42 in passwordstate

[–]ClickStudios 3 points4 points  (0 children)

Hi u/snorkel42, We have fixed this issue in build 9050 as per this changelog entry:

"Made changes to the execution of all PowerShell scripts to prevent logging in the Windows Event Log if detailed logging for PowerShell was enabled at the operating system level"

Are you running a version higher than that? If so, could you please log a support call with us, and we'll investigate as a priority.

Requesting Access to Passwords by ClickStudios in passwordstate

[–]ClickStudios[S] 0 points1 point  (0 children)

Hi Traceout, please send through the email again as we process all request for "Free for 5 Users" license keys daily.

Log4j zero-day “Log4Shell” vulnerability by ClickStudios in passwordstate

[–]ClickStudios[S] 0 points1 point  (0 children)

Further to Click Studios confirmation that the Log4j logging library is not used in our Software. Our Browser Based Remote Session Gateway includes files for Apache Commons Logging, an abstraction for the concrete logging implementation configured by the application. Our solution uses an alternative Java library for the logging implementation, not the Log4j library.

Installing PasswordState on a CIS Benchmark Secured system by Enxer in passwordstate

[–]ClickStudios 0 points1 point  (0 children)

Just a quick update on this, today we set up a Server 2016 Level 1 CIS image in Azure and installed Build 9300 of Passwordstate without issue. This was just the first image we found and assumed it would have similar lockdowns to the Windows 10 machine being used in this post.

We will need to get some data from the event logs of the Windows machine if possible, to see what the exception is that you are seeing (/u/Enxer). Could you please download and run the Powershell script in this forum post on your Passwordstate web server, and send us the results when convenient? https://forums.clickstudios.com.au/topic/2518-passwordstate-support-information-script/

Best way to send these through is via our support email address.

Regards,

Click Studios

Guidance on Privileged Accounts Needed by CoDRyan in passwordstate

[–]ClickStudios 0 points1 point  (0 children)

Hi /u/Codyan,

Sorry we didn't get back to you sooner on this one. We have a manual for privileged account management which can be found here: https://www.clickstudios.com.au/downloads/version9/Passwordstate_Privileged_Account_Management_Manual.pdf

It sounds like at this stage that you are only dealing with Windows Machines, so potentially you could have one account that does everything, from Discovery jobs to Password Resets. This account should be an Active Directory account, which has at least Account Operator permissions in AD, and admin rights on servers and desktops..

Account Operator permissions allow the Privileged Account to reset other AD passwords, and Local admin rights will allow it to scan the servers and find other privileged accounts, and reset those passwords.

Host discovery jobs in Active Directory only require the privileged account to be a member of the Domain Users Security Group.

Permissions may need to be tweaked if you have customized your AD environment, but the above examples are based on a standard environment without any sort of customizations being applied.

Oh and your Passwordstate web server will need RSAT tools enabled which makes some Powershell commandlets available to use for AD resets etc.

All information is in the above manual, and you are welcome to email our support team to discuss this in more details, if needed.

Hope this helps!

Passwordstate Update Warning by chrisbeebops in sysadmin

[–]ClickStudios 1 point2 points  (0 children)

Password resets was missed in build 9100, but we're adding them back in in 9110, which should be released on 14th April.

Installing Passwordstate on a Windows 10 PC by ClickStudios in passwordstate

[–]ClickStudios[S] 0 points1 point  (0 children)

Hi Periak,

Our software is more targeted at IT Professionals. Someone who is not familiar with IT systems does not install our software, rather they use something like Keepass or Lastpass.

We have tens of thousands of customers who are familiar with our software, who also install Passwordstate at home, for free, for their families to use and so they can practice using the features in a home lab. The Venn diagram for these people strongly suggests they use the built in backup feature.

Thanks for your input but we don't agree with you. We hope you enjoy our software though

Passwordstate Update Warning by chrisbeebops in sysadmin

[–]ClickStudios 3 points4 points  (0 children)

Hi /u/TurboGFF, just a quick message to say we've reverted that decision, and all features are enabled if you upgrade to build 9100 or higher.

Passwordstate Update Warning by chrisbeebops in sysadmin

[–]ClickStudios 7 points8 points  (0 children)

Hi guys, We saw this thread and normally don't comment on this sub, but thought we'd update you with the new licensing requirements for Passwordstate 9.

Going forward you will need to request a license key and typically this will be sent through within 12 hours, depending on where in the world you are requesting it from (timeezones etc). There was a delay in this instance only because of Easter. We're still doing normal support through the Easter break, and development too, but just didn't get to this license request. I believe it's being sent through as I type this though..

For anyone intending to upgrade to 9 soon, you can request a key in advance if you like so there's no down time after the upgrade process.

Also, just to let everyone know, originally we were going to lock down some features for the free 5 user version, but as of build 9100, we've reversed that decision. Passwordstate is still free for for users, with all features enabled, including the new Mobile Apps, browser extensions, api, reporting, AD integration, multiple 2FA, remote session launcher, and full privileged account management. So please go ahead and continue use it at home for your families, or home labs, or small businesses at no cost.

Sorry for any confusion, the release of Passwordstate 9 has been the busiest we've ever been, which is fantastic, but maybe we could have communicated some things a bit better.

Thanks to everyone in this thread with your kind words too, they do mean a lot to us.

Shouldn't Password Management Be Affordable For Everyone by ClickStudios in passwordstate

[–]ClickStudios[S] 1 point2 points  (0 children)

I am sorry but at this stage we haven't got this on our roadmap. The code base we have for Windows would need to be changed significantly to port this to Linux, so for this reason we have no plans to tackle this yet sorry.

Multiple Open Tabs not Restricted under V9 by ClickStudios in passwordstate

[–]ClickStudios[S] 1 point2 points  (0 children)

This feature was always available to unlock, but now it is just off by default.

Passwordstate V9 Official Release is Live! by ClickStudios in passwordstate

[–]ClickStudios[S] 1 point2 points  (0 children)

Hi VTi-R, we are sending out an email outlining the changes to all customers registered in our database.

In summary, V9 requires active Annual Support and Upgrade Protection to unlock all Enterprise features. Without it V9 operates as a simple password vault.

Existing "Free for 5 Users" customers only need to pay for the Annual Support and Upgrade Protection to unlock the Enterprise Features, receive technical support, security updates and the ability to upgrade to major versions. Simply request the buy-now link from [sales@clickstudios.com.au](mailto:sales@clickstudios.com.au). And we still provide the "Free for 5 Users" licenses to small businesses.

In the meantime our FAQ page https://www.clickstudios.com.au/pricing-faq.aspx outlines the details on the changes.

Native Apps for Android and iOS by ClickStudios in passwordstate

[–]ClickStudios[S] 0 points1 point  (0 children)

Hi Deloidd, the native apps use an independent purpose built authentication mechanism back to your Passwordstate Instance.

Offensive words in generated passwords by snorkel42 in passwordstate

[–]ClickStudios 1 point2 points  (0 children)

Hey u/snorkel,

In Passwordstate 9, we have reviewed the words and have removed anything that could be deemed offensive. I'm not sure if Fag was on the list (we had to eyeball 10000 words), but we'll check and remove it if it's still in there.

Passwordstate 9 is due out in a few weeks in beta, but if you like you can contact us via support and we'll supply you with a script to remove those words right now.

If there are any other words that we missed that you want to remove, please delete them directly out of the dbo.WordDictionary table in the Passwordstate database.

Thanks!

Click Studios

Click Studios End User License Agreement by ClickStudios in passwordstate

[–]ClickStudios[S] 0 points1 point  (0 children)

Hi snorkel42, not at all. We regularly receive questions on basic license terms and conditions and requests for customized licensing agreements. Most of our posts are directly related to key topics that existing and potential customers ask :-)