Chat now with support
Chat with Support

Password Manager 5.13.2 - Administration Guide (AD LDS Edition)

About Password Manager Getting Started Password Manager Architecture
Password Manager Components and Third-Party Solutions Typical Deployment Scenarios Password Manager in a perimeter network Management Policy Overview Password Policy Overview reCAPTCHA Overview User Enrollment Process Overview Questions and Answers Policy Overview Data Replication Phone-Based Authentication Service Overview Configuring Management Policy
Management Policies
Checklist: Configuring Password Manager Understanding Management Policies Configuring Access to the Administration Site Configuring Access to the Legacy Self-Service Site and Password Manager Self-Service Site Configuring Access to the Helpdesk Site Configuring Questions and Answers Policy Workflow overview Custom workflows Custom Activities Legacy Self-Service or Password Manager Self-Service Site workflows Helpdesk Workflows User Enforcement Rules
General Settings
General Settings Overview Search and Logon Options Import/Export Configuration Settings Outgoing Mail Servers Diagnostic Logging Scheduled Tasks Web Interface Customization Instance Reinitialization Realm Instances AD LDS Instance Connections Extensibility Features RADIUS Two-Factor Authentication Internal Feedback Password Manager components and third-party applications Unregistering users from Password Manager Bulk Force Password Reset Fido2 key management Working with Redistributable Secret Management account Email templates
Upgrading Password Manager Password Policies Enable 2FA for Administrators and Enable 2FA for HelpDesk Users Reporting Accounts Used in Password Manager for AD LDS Appendix B: Open Communication Ports for Password Manager for AD LDS Customization Options Overview Feature imparities between the legacy and the new Self-Service Sites Third-party contributions Glossary

Clear Old Records from Reporting Database

Use this task to clean up records in the reporting database. The administrator needs to provide a date range and select particular record types to delete the records. The administrator can schedule a task on a specific date and time.

To schedule the task:

  1. Connect to the Administration Site by typing the Administration Site URL in the address bar of your Web browser. By default, the URL is http://<ComputerName>/PMAdminADLDS/.

    NOTE: When prompted to log in, provide your domain user name in a domainname\username format.

  2. On the menu bar, click General Settings, then click the Scheduled Tasks tab.

  3. Click Edit under Clear Old Records from Reporting Database to open the console.

  4. Select the The task is enabled checkbox.

  5. Select Archive and Clear Records or Clear Records.

  6. Select the date range from the From Date and To Date date pickers.

  7. Select the checkboxes corresponding to the record types that you want to clear, in Select Record Types section.

  8. Alternatively, select the Select All checkbox to select all the record types to clear.

  9. Select the date and time from the Start at date picker to schedule the task to clear the records.

  10. Select the Password Manager instance to run the task.

  11. Click Save to save all the settings, and schedule the task.

Web Interface Customization

Web Interface Customization provides a simple and convenient way to customize the appearance of the Self-Service and Helpdesk sites. For example, you can change the company and product logos, splash screen logos, and modify the color scheme.

The default Product logo and the Company logo specific to Legacy Self Service site are transparent images which are not applicable to the Password Manager Self-Service Site. Therefore, the transparent images may appear to be missing from the Password Manager Self-Service Site.

Enabling Self-Service UI 5.13.2

The following options appear only in case of an Inplace Upgrade of Password Manager to version 5.13.2 since inplace upgrade is the only upgrade, which retains the Legacy Self Service site along with the Password Manager Self Service site(Self-Service UI version 5.9.5 onwards).

  • Maintain Self-Service Site (pre-5.9.5)

  • Switch to Self-Service Site (5.9.5 or later)

IMPORTANT:

  • The default product logo and the company logo image used in the Legacy Self Service site may not be compatible with the Password Manager Self Service site as there is a limitation to the pixels in the image.

  • Users could apply any valid custom product logo and company logo to the Legacy Self service site and the same gets applied on the Password Manager Self-Service Site (Self Service UI 5.9.5 or later).

To replace product and company logos with custom images

  1. On the home page of the Administration Site, click General Settings, then click the Web Interface Customization tab.

  2. Under the Product logo (all interfaces and versions) option, click Upload to browse your custom image. The uploaded image appears as a preview. Note, the image size must be 400 by 48 pixels and the image must be saved as a PNG with transparency.

  3. Under the Company logo (all interfaces and versions) option, click Upload to browse your custom image. The uploaded image appears as a preview. Note, the image size must be 210 by 48 pixels and the image must be saved as a PNG with transparency.

  4. Click Save.

NOTE: When you click Reset to Default, the customized product logo/ company logo gets reset to default.

To replace splash screen product and company logos with custom images

  1. On the home page of the Administration Site, click General Settings, then click the Web Interface Customization tab.

  2. Under the Splash Screen Product logo (Self-Service UI 5.9.5 onwards) option, click Upload to browse your custom image. The uploaded image appears as a preview. Note, that the image size must be 600 by 150 pixels and the image must be saved as a PNG with transparency. The Splash Screen Product logo appears as soon as you launch the self-service and help-desk sites.

  3. Under the Splash Screen Company logo (Self-Service UI 5.9.5 onwards) option, click Upload to browse your custom image. The uploaded image appears as a preview. Note, the image size must be 400 by 200 pixels and the image must be saved as a PNG with transparency.

  4. Click Save.

NOTE: When you click Reset to Default, the customized product logo/ company logo gets reset to default.

To replace large product logo for the Helpdesk Site

  1. Under the Large product logo (Helpdesk Site logon page) option, click Upload to browse your custom image. The uploaded image appears as a preview. Note, the image size must be 440 by 70 pixels and the image must be saved as a PNG with transparency.

  2. Click Save.

NOTE: When you click Reset to Default, the customized product logo/ company logo gets reset to default.

By modifying the color scheme you can customize the appearance of the Self-Service and Helpdesk sites to fit your corporate standards. Each color scheme offers a main color, page title, text, hyperlink, icon, button, button text and error text colors. The main color defines the logo bar color.

To modify the color scheme

  1. On the home page of the Administration Site, click General Settings, then click the Web Interface Customization tab.

  2. Under the Color scheme option, select the required color scheme for the Self-Service and Helpdesk sites.

  3. To preview the selected color scheme on the Password Manager Self-Service Site, click Preview (Self-Service UI version 5.9.5 onwards) link.

  4. To preview the selected color scheme on the Legacy Self-Service Site and Helpdesk Site, click Preview (Self-Service UI / Helpdesk pre 5.9.3) link.

  5. To adjust your own color scheme, click Custom and navigate to various components listed for the customization of the Helpdesk Site and the legacy self service site. The components that can be customized are Main color, page title color, text color, hyperlink color, icon color, button color, button text color, error text color.

  6. Click Save.

NOTE:

  • Reset to Default option resets the customized components and resets it back to the default in the Helpdesk Site and the Legacy self service site.

  • Custom color scheme cannot be applied to the Password Manager Self service site (Self-Service UI version 5.9.5 onwards)

Feedback Form

Feedback form is introduced in Password Manager Self service site (Self-Service UI version 5.9.5 onwards). The feedback form allows the users of the Password Manager Self service site to share the feedback on the user experience.

NOTE: No personal information of the users are collected and stored, and the survey is anonymous. By default, the Feedback form in enabled in the Password Manager Self service site.

To enable or disable feedback option

  1. On the home page of the Administration Site, click General Settings, then click the Web Interface Customization tab.

  2. In the Customize the appearance of the Self-Service and HelpDesk sites section, switch the toggle key in the Self-Service feedback form (5.9.5 onwards) to enable or disable the feedback option. By default, the feedback option is enabled.

  3. Click Save.

Instance Reinitialization

This section provides information on how to reinitialize an instance of Password Manager Service. Reinitialization means changing any of the settings you specified during initialization: the certificate for encrypting traffic between the standalone Self-Service and Helpdesk sites and the Password Manager Service, port number, encryption algorithm and key length, and hashing algorithm.

You may want to reinitialize the Password Manager instance to change any of the settings you specified when initializing the instance.

Modifying Service Connection Settings

Using service connection settings you can specify the following:

  • Certificate name: use this setting to enter the name of the certificate for authentication and traffic encryption the Password Manager Service and the web sites (Self-Service and Helpdesk). By default, Password Manager uses a built-in certificate issued by One Identity for this purpose. If you install the web sites on a standalone server, it is recommended to replace the default certificate with a custom certificate issued by a trusted Windows-based authentication authority.

    For more information on obtaining and installing custom certificates, see Specifying Custom Certificates for Authentication and Traffic Encryption Between Password Manager Service and Web Sites.

  • Port number - use this setting to specify the port that the Self-Service and Helpdesk sites will use to connect to the Password Manager Service. By default, port 8081 is used.

    IMPORTANT: If you change the certificate and port number, the Self-Service and Helpdesk sites installed on standalone servers will be unavailable to users until you reinitialize the sites using the updated settings. For information, see Installing Legacy Self-Service, Password Manager Self-Service, and Helpdesk Sites on a Standalone Server.

To modify the service connection settings

  1. On the home page of the Administration Site, click General Settings, and then click the Reinitialization tab.

  2. Under Service connection settings, from the Certificate name drop-down list, select the required certificate for authentication and traffic encryption between the Web sites (Self-Service and Helpdesk) and the Password Manager Service.

  3. In the Port number text box, enter the port number you want the web sites to use to connect to the Password Manager Service.

  4. Click Save.

Related Documents

The document was helpful.

Select Rating

I easily found the information I needed.

Select Rating