Chat now with support
Chat with Support

Password Manager 5.11 - Administration Guide

About Password Manager Getting Started Password Manager Architecture
Password Manager Components and Third-Party Solutions Typical Deployment Scenarios Password Manager in Perimeter Network Management Policy Overview Password Policy Overview Secure Password Extension Overview reCAPTCHA Overview User Enrollment Process Overview Questions and Answers Policy Overview Password Change and Reset Process Overview Data Replication Phone-Based Authentication Service Overview
Management Policies
Checklist: Configuring Password Manager Understanding Management Policies Configuring Access to the Administration Site Configuring Access to the Self-Service Site Configuring Access to the Helpdesk Site Configuring Questions and Answers Policy Workflow overview Custom workflows Custom Activities Self-Service Workflows Helpdesk Workflows Notification Activities User Enforcement Rules
General Settings
General Settings Overview Search and Logon Options Import/Export Configuration Settings Outgoing Mail Servers Diagnostic Logging Scheduled Tasks Web Interface Customization Instance Reinitialization Realm Instances Domain Connections Extensibility Features RADIUS Two-Factor Authentication Password Manager components and third-party applications Unregistering users from Password Manager Bulk Password Reset Working with Redistributable Secret Management account Email Templates
Upgrading Password Manager Administrative Templates Secure Password Extension Password Policies Enable S2FA for Administrators & Enable S2FA for HelpDesk Users Reporting Password Manager Integration Appendixes Glossary

Configuring Administrative Templates

To configure the settings of the administrative templates on the Domain Controller

  1. Open the Group Policy Management Editor (gpmc.msc).
  2. Right click the domain node and, then on the short cut menu, click Create a GPO in the domain and Link it here' to link the policy.
    1. Enter a name to the New GPO, say "OneIdentity".
  3. Right click the new GPO (OneIdentity) and set Enforced to apply the policy.
  4. Right click the new GPO (OneIdentity) and select Edit.
  5. Expand the newly created GPO and perform the following
  6. To view the latest Administrative Template

    1. Expand the newly created GPO.
    1. Go to Computer Configuration >> Policies.

    2. Expand Administrative Templates: Policy Definitions(ADMX files) retrieved from the central store >> One Identity Password Manager >> Generic Settings.

 

Updating Administrative Templates

To update the administrative templates from .adm to .admx on both Domain Controller and Client computer, follow the steps mentioned below

Updating Templates on Domain Controller

Before updating the templates, you must remove the existing .adm templates and then proceed updating the templates.

To remove the administrative templates (.adm) on Domain Controller

  1. Open the Group Policy Management (gpmc.msc).
  2. Right click on the GPO you have created and set Enforced to disable.
  3. Again, right click on the GPO, and on the shortcut menu, click Edit. Group Policy Management Editor opens.
  1. On the left pane (console tree) of Group Policy Management Editor, expand Computer Configuration\Policies.
  2. Right-click the Administrative Templates node, and then click Add/Remove Templates.
  3. In the Add/Remove Templates dialog box, select the prm_gina.admx file and click Remove.

To update the administrative templates (.admx) on Domain Controller

  1. Copy the Administrative Template Configuration folder from <CD>/Password Manager/Setup/Tools.
  2. Copy the Administrative Template folder into the Machine from <CD>/Password Manager/Setup/Template.
  3. Double click QPM.AdministrativeTemplateConfiguration.exe tool.
  4. Browse the Administrative Template folder path and verify the Path to Policy Definitions.
  5. Click Execute to run the tool.
  6. Once the execution is complete, launch the Group Policy Management utility.
  7. Right click the domain node, then on the shortcut menu, click Create a GPO in the domain and Link it here to link the policy.
  8. Enter a name to the New GPO, say "OneIdentity".
  9. Right click the new GPO (OneIdentity) and select Enforced to apply the policy.
  10. Again, right click the new GPO (OneIdentity) and select Edit.
  11. Go to Computer Configuration ->Policies ->Expand "Administrative Templates: Policy Definitions (ADMX files) retrieved from the central store" ->Expand "One Identity Password Manager" -> Click on "Generic Settings" to view the newly checked in Administrative Template.

 

Updating templates on client computer

To remove the administrative templates (.adm) on client computer

  1. Open the Local Group Policy Management Editor (gpedit.msc).
  2. Expand Computer Configuration\Policies.
  3. Right-click the Administrative Templates node, and then on the shortcut menu, click Add/Remove Templates.
  4. In the Add/Remove Templates dialog box, select the prm_gina.admx file and click Remove.

To update the administrative templates (.admx) on the client computer manually

  1. Copy the prm_gina.admx file into %windir%\PolicyDefinitions folder directory.
  2. Copy the prm_gina.adml file into %windir%\PolicyDefinitions\en-us directory.
  3. Open the Local Group Policy Management Editor (gpedit.msc) and navigate to the Computer Configuration\Administrative Templates\One Identity Password Manager directory to see the policy settings.

Removing Administrative Templates

To remove the administrative templates (.admx) on Domain Controller

  1. Open the Group Policy Management (gpmc.msc).

  2. Right click on the GPO you have created and set Enforced to disable.

  3. Navigate to C:\Windows\SYSVOL\sysvol\domain name\Policies\PolicyDefinitions path.
  4. Delete prm_gina.admx file.
  5. Navigate to the %systemroot%\SYSVOL\sysvol\domain name\Policies\PolicyDefinitions\en-US folder and delete prm_gina.adml file.

 

To remove the administrative templates (.admx) on the client computer manually

  1. Navigate to the %windir%\PolicyDefinitions folder directory. Delete the prm_gina.admx file.
  2. Navigate to the %windir%\PolicyDefinitions\en-us folder. Delete the prm_gina.adml file.

  3. Update the policy.

Secure Password Extension

Related Documents

The document was helpful.

Select Rating

I easily found the information I needed.

Select Rating