[Tips & Tricks] Updating cached credentials in ADSelfService Plus without a VPN
ADSelfService Plus adds a Reset Password/Unlock Account link to the Windows login screen, enabling remote users to reset their passwords after verifying their identity via modern MFA methods like FIDO Passkeys or biometric authentication. Once their identity
Password reset failed
When resetting the password via email, after entering the verification code and the corresponding answer, it will prompt 'You do not have permission to perform this action'! How to view the log?
ADSelfService Plus' build 6503 offers cached credential updates without a VPN
Hello Everyone, We are glad to announce the release of ADSelfService Plus' latest build, 6503. Feature Cached credentials in Windows machines can now be updated without a VPN. Learn more about updating cached credentials using ADSelfService Plus. Issue
Splashtop bypasses ADSelfService MFA
We have MFA working well for users, but when using our remote software Splashtop and the "Log in" button feature it has, MFA isn't prompted for users. I found another thread elsewhere talking about LogMeIn also bypassing MFA from a couple years ago. Is
GINA Client wrong badpdwcount
Hello, we are currently enrolling the ADSelfService and we found out that a login failure into a windows machine is counting wrong in Active direcory when the GINA Client for MFA is installed on the machine. The user itself is not in the AD SelfSevice
Authenticator Mobile App - approve/deny from notification panel/lock screen + machine name
Can your development team look at adding Approve/Deny functionality directly from the lockscreen, similar to what Microsoft, Google, and Duo authenticator do? It will be much more useful than having to tap the notification or unlock the phone and open
When server not available (updating product/Win Updates/Reboot), users trying to login get MFA-041 error. Anyway around this?
When server not available (updating product/Win Updates/Reboot), users trying to login get MFA-041 error. Once service backup, then all is good. 1) Assuming correct behavior? 2) Is there anyway around this? Turn off temporarily? Or does everyone run in
QR Code Enrollment
Is it possible to send an enrollment notification e-mail that includes the Microsoft Authenticator QR code for that user? Or possible to generate the QR code ourselves and we can send email through other means. Thanks! Jeff
Permission Denied. Please Contact Your Administrator
I am trying to setup the AD password expiration reminder tool. I am unable to select any domains. When I go to Domain Settings > status is successful, but when I try to update objects I get "Permission Denied. Please contact your Administrator". The service
How AD Self Service can change user passwords if they have MFA enforced on the office365 tenant?
Hello guys, In my recent scenario, i have ADSS for users to unify their local AD and 365 passwords because they are independent from each other. recently the organization enabled MFA for some users on the office 365 tenant and now those users won't change
Cleaning up Patch Folder
Can the old Patches in the Patch folder be cleaned up at all in any fashion? Especially the exploded directories, if not the ppms?
Implement MFA for Outlook client
My company sees the implementation of MFA for OWA/ECP as a very positive step, and I highly appreciate this initiative. However, MFA has not been enabled for the Outlook client yet. I suggest that the Admin add MFA feature for Outlook as well to enhance
ADSelfService Plus' build 6501 released with bug fixes
Hello Everyone, Issue fixes An issue that caused incorrect messages to be displayed during failed CAPTCHA attempts has now been fixed. An issue that occurred while restricting unowned licenses when multiple accounts with the same username exist across
MFA for support accounts
Any suggestions on how I enable MFA for our support accounts? To explain further, we have some AD accounts which are used by 3rd party support companies (ie not employees) to support our internal applications/systems. They are purely an Active Directory
📅Mark Your Calendar: CyberShield 2024 IAM and Cybersecurity Seminar in Dubai and Abu Dhabi!
Hello! We are thrilled to send you this exclusive invite to be a part of CyberShield 2024: An IAM and Cybersecurity seminar in Dubai on July 23and Abu Dhabi on July 25. Our senior technology evangelists will be sharing their thoughts on how you can better
Secure Your Spot at ManageEngine's SHIELD - CyberDefence in Manchester and London: Where Cricket Meets Cybersecurity
United Kingdom's First Shield Cyberdefence Hello, We're thrilled to invite you to "SHIELD - Cyberdefence," a one-of-a-kind symposium where cricket meets cybersecurity, conducted by ManageEngine! This is an exciting opportunity to learn how cutting-edge
ADSelfService Plus' build 6500 released with major component upgrades
Hello Everyone, We are glad to announce the release of ADSelfService Plus' latest build, 6500. Enhancements The PostgreSQL database bundled with ADSelfService Plus has been updated to version 14.12 for 64-bit machines. The Apache Tomcat version used in
ADSelfService Plus – Have I Been Pwned Integration
Hi Team, Could you please confirm if the integration with HIBP is included at no additional cost with the ADSelfService Plus subscription, or if there are any charges involved? We are planning to proceed with the HIBP integration and would appreciate
[Webinar series] 📢 New and improved security and management capabilities from ManageEngine
ManageEngine's What's new 📢 webinar series Register now June 17, 18, 19, 20, 21 at 11 AM GST | 3 PM SGT | 11 AM EDT | 4 PM BST Note: Register just once to attend all the sessions in this series. Join our long-awaited expert-led What's New webinar series
Need Cert for 6400 ADSS
I'm trying to upgrade our version from 6303 to the latest but when I try to install the 6400 update I'm getting a "Signature does not match with any available certificates" error. I downloaded the latest one but that doesn't appear to work for this build.
Anyone using Twilio for SMS message sending?
I'm trying to get the Server Settings 'custom' page to work with Twilio's API to send messages and so far I've not hat much luck, I hope I'm just missing something obvious. Are you actively using Twilio as your service provider and if so what parameters did you have to pass from ME to get it to work? Thank You, John
ADSelfService Plus' build 6410 released with issue fixes
Hello Everyone, We are glad to announce the release of ADSelfService Plus' latest build, 6410. Issue Fixes An issue that occurred from builds 6407 up to 6409, where the User Attempts Audit Report displayed the ADSelfService Plus server's loopback IP address
VPN and 2FA
Hi, I am trying to configure ADSS vpn to enable password sync. We currently are using the Sophos Authenticator with our user VPN and want to use the same VPN for the password sync. Sophos uses OpenVPN and I can configure it to talk to our server, but
[Seminar]Secure Your Spot Now: Shield 2024 IAM and Cybersecurity Seminar on June 11, 12 and 13 at New Zealand!
Hello! We are thrilled to send you this exclusive invite to be a part of Shield 2024: An IAM and Cybersecurity seminar in Auckland on June 11, Wellington on June 12 and Christchurch on June 13. Our senior technology evangelists will be sharing their thoughts
[Seminar]Secure Your Spot Now: Shield 2024 IAM and Cybersecurity Seminar on June 11 at Kuala Lumpur!
Hello! We are thrilled to send you this exclusive invite to be a part of Shield 2024: An IAM and Cybersecurity seminar in Manila, Philippines on June 11. Our senior technology evangelists will be sharing their thoughts on how you can better manage, monitor,
SMS Gateway not working
Hello, I am trying ADSelf Service for my company as a reset tool for our employees , one of the important features that I need is to reset password through SMS , so I contacted my Service provider to send me API access to send SMS in our company name
Account "blocked"
We have a user who is unable to reset their password using ADSelfService Plus. When they try, they get the following error message: "Your acount is blocked. You can't perform "Password Reset" / "Account Unlock". Contact your administrator. Their domain account is not locked. I've had this problem in the past and I cannot remember what the solution was. Can someone point me in the right direction? Thanks!
ADSelfService Plus' build 6409 released with issue fixes
Hello Everyone, We are glad to announce the release of ADSelfService Plus' latest build, 6409. Issue Fixes An issue that prevented the use of images with uppercase extensions in the product has now been fixed. An issue that prevented SSO logins to Microsoft
PostgreSQL 13?
Hello everyone, We are somehow forced to upgrade our PostgreSQL Databases from Version 11 to 13. ADSelfService doesn't support PostgreSQL in Version 13. Is there any ETA when that will be posssible? Thanks in Advance.
How to turn off Q & A
I want to use service for my company, And i want it to be as easy as possible for users. How do i turn off Questions when users register?
[Seminar]Secure Your Spot Now: Shield 2024 IAM and Cybersecurity Seminar on June 04 at Manila!
Hello! We are thrilled to send you this exclusive invite to be a part of Shield 2024: An IAM and Cybersecurity seminar in Manila, Philippines on June 04. Our senior technology evangelists will be sharing their thoughts on how you can better manage, monitor,
New Jersey - We are coming back with ManageEngine User Conference
The ManageEngine User Conference is back in the USA, and we are super excited to meet our customers. This year, the conference will take place on May 14 and 15 in Newark, New Jersey. New Jersey Date: May 14-15, 2024 Venue: Newark Liberty International
ADSelfService Plus' build 6408 released with bug fixes
Hello Everyone, We are glad to announce the release of ADSelfService Plus' latest build, 6408. Issue fixes An issue caused by duplicated authenticator priority values, that resulted in the update of ADSelfService Plus from version 6221 to 6403 to fail,
[Product update] Insightful new reports and SSO for ManageEngine apps now available in ADSelfService Plus
Hello Everyone, We are glad to announce the release of ADSelfService Plus' latest build, 6407. Features New reports for deeper insights: ADSelfService Plus now offers fourteen new reports that provide deeper insights on user behavior pertaining to MFA
Edit Dashboard Reports
I've been looking for this for a while, but no luck at all: Is it possible to change the dashboard reports to ignore disabled accounts and to only look in specific OUs? AdSeflservice its actually restricted to certains OUs. Thanks in advance.
Custom Notification of Account Expiration sent to users manager
We have external users which receive the a custom account expiration notification and would also like to inform the manager using a notification that we can also customize. What is the best way to achieve this as the only notification I see that goes
MFA on Endpoint: Error Code MFA-102
We encountered the following problem: in the login window with MFA we receive the message bellow
Vulnerability Management
Hi, We working with ADSelfservice Plus Our vulnerability Mangenent generate alerts of discoverd vulnerabilities On the server hosted ADselfservice plus is found a uvlnerabilitie indentified as CVE-2022-42889 2 files located in the prograk folder of Manaeengine
Feature Request: Time Based MFA Authentication
Would be nice to have the ability to set a max length of time (such as 24hrs) a user can be authenticated for and after that they are prompted for MFA
Report/Audit on Policy or Configuration Changes to AD Self Service Plus
Hello! I am in need of a way to audit which admin makes changes to various features with the app. For example - when an admin adds prohibited words to our password policy. Is there a way to obtain this information?
Next Page