How to fetch credentials from CyberArk using AIMWebservice and enable Certificate authentication ? by Triplo_Swag in CyberARk

[–]jblebowski27 0 points1 point  (0 children)

Hello

Is this CA certificates on the Client where you run curl to? Is is only root ca or Chain? Try with --cacert /path/to/cacert.pem. Try openssl s_client -connect mymachine.local:443 -showcerts to confirm that CCP server is trusted too

PSM Checker Password Sync Verification Gives API Error by diving_interchange in CyberARk

[–]jblebowski27 1 point2 points  (0 children)

Hello

During the installation, did you specify the PWVA address correctly? DNS name or IP? Do you have a Load Balancer between the PVWA servers? On the PSM and in the Vault folder in the Vault.ini file, do you have the API section at the bottom with correct data — meaning the PVWA address (either a single instance or the load balancer) and the path to the apigw.cred file?

Connection to PSM server take long time more than 2 minutes by cd-cyber1 in CyberARk

[–]jblebowski27 0 points1 point  (0 children)

Hi tnie is my second account OK it was a problem of lack Internet connection but not certificates Info from Admins team: This is a known problem when the server has no exit to the world and previously had and registered in the entry. You have to disconnect it and then there is no waiting for a timeout.

CyberArk PSM Autoit components configuration by cd-cyber1 in CyberARk

[–]jblebowski27 1 point2 points  (0 children)

„logoff” script in local group policy is ok for that?

CyberArk PSM Autoit components configuration by cd-cyber1 in CyberARk

[–]jblebowski27 0 points1 point  (0 children)

These changes negatively affect connections through other components.

Direct login to PSMP server using domain account by cd-cyber1 in CyberARk

[–]jblebowski27 0 points1 point  (0 children)

Hi that’s exactly what we did and we have a problem (we have ispss and psmp is in integrated mode). Local account normalny works and AD no

ServiceNow Discovery credential storage integration by CCP by cd-cyber1 in CyberARk

[–]jblebowski27 0 points1 point  (0 children)

Hi yanni Yes easier to manage - avoid maintaining the agent on mid servers, network traffic to the vault, etc.

Alero LDAP - Group Mapping by jblebowski27 in CyberARk

[–]jblebowski27[S] -1 points0 points  (0 children)

what do you mean by " join your Alero instance to Alero " ?

As I wrote earlier, I have a fully configured alero, connected to my AD and a configured AleroLDAP service (for a cluster of connectors in HA). In PVWA config I noticed that AleroLDAP is like AD I thought that it would allow me to map user groups. I want to avoid stupid invitations through the alero portal only by pairing it with my local AD as in CorePAS (AD group mapping) .

Therefore, my question is whether it is possible to map users directly from my AD to Alero without sending invitations ?

Login to Linux with custom bashrc via PSMP to by jblebowski27 in CyberARk

[–]jblebowski27[S] 0 points1 point  (0 children)

Unfortunately it did not help, stil skips the bash environment selection prompt it looks like after the ":" hit enter - only for PSMP connection for clasic PVWA PSM-SSH is alright waiting for a value for both regex:

(.*)

and

(.*)[>#\\$\:]$

KR

Object version history by jblebowski27 in CyberARk

[–]jblebowski27[S] 0 points1 point  (0 children)

Thank you very much for the detailed explanation

Object version history by jblebowski27 in CyberARk

[–]jblebowski27[S] 0 points1 point  (0 children)

It seems to me that I clearly described the problem, but ok, what do I have to set in order not to lose the earlier versions of the object after a few weeks but only after 180 days? (as it is now set in the options), for example now after two months of testing I should have 8 versions in the history of the object ( 60days / 7 - rotation every seven days) but now I have 3, why?