Unable to get resources after doing url rewrite using IIS
I have accidentally posted under announcement but was unable to edit it. So any moderator who come across that post can remove it. Below is my current setup One point to know is the web server (aa.bb.cc) resides on a different server from ADSS+ I am able to access the login page normally using ADSS+ server ip My current configuration to access ADSS+ login page is as follows. Url: aa.bb.cc/password Rewrite url: http://<ADSS+ ip address>: 8888/showLogin.cc The login page can be shown but all the resources
Golden Image Install
Good Morning, Are there any steps that need to be taken when installing the ADSelfService GINA Agent to a golden image workstation that will be captured and copied for new workstations. I am primarily concerned with any issues that may be caused if the GINA agent assigns an ID to the machine when it gets installed, which would then be copied to all subsequent copied machines. Thank You, James Leitz
Introducing Weak Password Reporter Free Tool
The importance of using strong passwords for users’ end-point systems is critical to ensure the very survival of your organization as they could be easy gateways to access your organization’s mission critical data. Using strong passwords more of than not slows down, and even defeats the various attacks on users’ systems. For this very reason, IT administrators all around the globe continue to impress upon users the need for a strong password that contains a healthy mix of upper and lower case letters,
[Free Webinar] Secure Windows logons with two-factor authentication (2FA)
Social engineering attacks have increased and the advancements in these attacking techniques sure cause a concern about organization’s security. The easiest way to break into a network is by misusing a user’s identity. A strong password can also be compromised and we have to come to terms with password strengthening not being the only answer to protecting user accounts from these attacks. Join our product expert in this session to learn how to boost your organization’s security with an additional
ADSelfService Plus 5702 - Hotfix released !!!
Hi everyone, We're delighted to announce the release of ADSelfService Plus 5702 build. This build fixes several issues which include the following. Fixes: Issue of product crashing when the configured GINA Frame Text exceeded the character limit during translation. Issue which permitted users to close the password reset/account unlock window of the Windows logon agent is fixed. XSS vulnerability in the employee search, and the self-update layout. Issue in translating certain fields in the self-update
No Reports and new Technicians after switching Database?
Hello everyone, After switching the Database from one mysql to another mysql Database, we are no longer able to see auditreports or define new technicians. All we get is a message similiar to "No Reports available" and if we want to add a technician, we get a white Square, but the Users won't get listed. Is there any known way to fix this without reinstalling the tool? Thanks in advance - Dave
Change WebServer Port by Server
Hi Support team, Could you send me the procedure to change the webserver port by the server? I know to change it using the web console, however, the application is unavailable because of the port. Thank you.
ADSelfService Plus 5701 released with enhancements and issue fixes!
Hi everyone, The latest build of ADSelfService Plus rolls-out with enhanced mobile app deployment feature and couple other issue fixes. Enhancements: Trial mode: Test drive this feature by deploying the ADSelfService Plus iOS app for ten users’ mobile devices, with minimal configurations. Automated CSR signing from ManageEngine while configuring APNs. Schedulers to automate iOS app installation status. Fixes: An XML External Entity vulnerability that occurs while uploading product license is fixed.
[RESOLVED] ADSelfService Plus in a subdirectory from reverse proxy (nginx)
I have a website "example.org" and I want to add ADSelfService Plus to this website under "example.org/password". The problem I have is that I cannot make the configuration work. If I make it available from "example.org", everything works as it should. The moment I have it through "/password" I cannot log in or access any css files, only the indez page shows up. I have a rewrite url in IIS on the ADSS+ server so that it is avaible from http://serverip:80 Then I have the reverse proxy on another
Configure ADSelfServicePlus to use SQL server
Good day, For one my customers I'm trying to setup ADSelfServicePlus in a POC environment. The procedure for pointing the installation to SQL server (https://download.manageengine.com/products/self-service-password/configure-adselfservice-plus-with-mssql.pdf) is failing for me. When running changeb.bat I select MS SQL Server in the list box, I get a message I need to install the SQL native client first. But it's already installed. What is going wrong here? See attachment with screenshot. Thank you
Support for multiple domains - aggregated stats
Hello all, We have 2 domains registered in ADSS. What we found was that you have to log in with a user from each domain to see only stats for that particular domain. There is no aggregated view of both domains that we can see in ADSS. Can you assist or guide us in the right direction? Regards, Stephan Terblanche
Can't chnage password
When ever I try to change password, it fails complaining about password policy/complexity. I've met the complexity requirements, but fails. What I've tried: 1. Set adselfserve service to admin account 2. Set domain auth account to admin account 3. Set domain password settings to no complexity and mim password age to 4 days 4. Enabled LDAPS on selfserve settings Nothing has worked. Details: latest version of AD Self serve Windows 2016 with latest patches AD self server installed directly on DC
ADSelfService Plus 5700 released with enhancements!
Hello Everyone! The latest build of ADSelfService Plus supports the updated version of JRE, Apache Tomcat server and PostgreSQL server, for improved security. Enhancements: JRE bundled with ADSelfService Plus is updated to version 1.8.0.162. Apache Tomcat server bundled with ADSelfService Plus is updated to version 8.5.32. PostgreSQL server bundled with ADSelfService Plus is updated to version 9.4.14. How to update? Update using service pack. New to ADSelfService Plus? Download the latest version
AD Self Service - Password Expiry Notification
Good Morning, I am just starting to use these Manage Engine tools for the first time so apologies if this is a basic question. I am about to set up Password Expiry Notification via email (on AD Self Service) I have set all the settings as I want. A colleague has informed me that they have tried to get this set up before and it hasn't gone well due to the fact that we use an old email client and the email doesn't display in a very good format once it is sent. I have made a few alterations and also
ADSelfService Plus 5606 released with enhancements and issue fixes!
The latest build of ADSelfService Plus allows access to Password Expiration Notifier free tool by the technicians and supports rebranding of the self-service password reset/account unlock window of the Windows logon agent. This build also fixes important
SSL Cert for AD SelfService Question
Hello All, First, I just want to say that I'm new to SSL, please pardon my stupidity. We're in process of encrypting the connection from the outside to our server. I have a few questions and need help with. 1. Should I be using a self-signed or commercially signed cert? 2. If I need a commercially signed cert, which one should I purchase? https://www.godaddy.com/web-security/ssl-certificate Help would be appreciated!
ADSelfService Plus (5605) now supports AD-based security questions as an MFA method
The latest build of ADSelfService Plus supports Active Directory-based security questions as an MFA method. Feature: Active Directory-based security questions as an MFA method: You can set up AD-based security questions to authenticate users at the time of self-service password reset and account unlock by comparing their answers with the corresponding AD attributes' value. How to update? Update using service pack. New to ADSelfService Plus? Download the latest version of the free Password Expiration
ADSelfService Plus 5604 hotfix released
We’ve fixed a vulnerability issue in the latest build. Issues fixed: An XSS vulnerability has been fixed. How to update? Update using service pack. New to ADSelfService Plus? Download the latest version of the free Password Expiration Notifier tool Download the fully functional 30-day free trial now. Regards, ADSelfService Plus Team Toll Free: +1-84-245-1104 Direct: +1-408-916-9890 Email: support@adselfserviceplus.com An integrated Active Directory self-service password management and single sign-on
ADSelfService Plus 5603 released with enhancements and an issue fix!
The latest build of ADSelfService Plus brings you the single-logout feature and also adds ADFS to the list of identity providers through which users can access its web console. This build also fixes an important issue in the product. Highlights: SAP NetWeaver password synchronization: Synchronize AD password changes with SAP NetWeaver in real-time. Single Sign-on with Active Directory Federation Services (ADFS): ADSelfService Plus adds ADFS to the list of SAML-based identity providers through
Pre-Configure IOS App
Hi all We use VMWare AirWatch for our MDM and when i deploy the android app, i can preconfigure the webaddress, port and protocol as part of the deployment, but i cannot seem to be able to see this in the IOS version. Does anyone know if it is possible and if so how to do it? Thanks.
SSL certificate issue
Hi, We've recently purchased ADselfservice plus portal, we've gone through of configuring everything so where able to access the portal outside the network however I want to make it more secure, but we are having some issues with installing the SSL Certificate. We already have an wildcard SSL certificate and when I go to download the certificate from 123 Reg, it isn't an download file but text. Do we copy this text into notepad to then convert it to a pfx format file? I have done the above and
Error when changing, resetting or unblocking user "Account blocked."
We are presenting the error attached to the platform in an exporadic but concurrent way, when changing the password, resetting the password and regardless of the type of user authentication "SMS or Googl Authenticator" says that the user is blocked even though the policy is configured option to unlock the user once the key is reset or changed. already validate the user in the active directory and it is not blocked, could it be an error in the application ?.
Running 2 instances of ADSS on the same AD
Hello, I would like to know whether it is possible to have 2 separate instances of AD SelfService Plus on the same AD. We want to use one of those as internal and the other that we already have will be external. Would we need separate licensing for the second one? Thanks Zhivko
[ManageEnginge] Effective AD password management techniques revealed
Hello, Whether you are an administrator or an end user, managing passwords is hard. It doesn't have to be that way anymore! Attend our Effective password management techniques for your Active Directory environment webinar and learn simple techniques that boost up both the productivity and security of your IT environment. ..Book your spot now.. What's in it for you By attending our webinar you will learn how to: Enable password self-service and self-account unlock for end users. Group or OU-specific
Error when changing, resetting or unblocking user "Account blocked."
We are presenting the error attached to the platform in an exporadic but concurrent way, when changing the password, resetting the password and regardless of the type of user authentication "SMS or Googl Authenticator" says that the user is blocked even though the policy is configured option to unlock the user once the key is reset or changed. already validate the user in the active directory and it is not blocked, could it be an error in the application ?.
SSL Certificate Issues on ADSelfService Plus
Hi All, I have installed an SSL certificate on my ADSelfService Plus deployment. The cert seems to bind fine, and works perfectly on the site. However, when I go to configure the mobile app deployment, I see the following error: Name in SSL certificate conflicts with server name in URL The server name is selfservice.mydomain.ie, The CSR was created to that effect and issued by GoDaddy. Any help greatly appreciated. Thanks Chris.
ADSelfService Plus - HIPAA
I hope this is the right place to post but does anyone know where I can find info on weather ADSelfService Plus is HIPAA compliant?
Logs To Syslog Server : Error Destination host unreachable
When trying to direct the log of Ad Self Service Plus to our log server, it gives the following error.of our product to our log server, it gives the following error. What would be the reason? Destination host unreachable
Self-Service plus 5601 - not able to unlock the user account
Hello, I am currently evaluating the latest Self-Service Plus. I was able to install, integrate it to the AD without any problems. Then I started to test the features: a. User Enrollment: test passed b. To change Password: test passed c. Forgot/reset Password: test passed d. Unlock account : Having difficulties. I go through the unlock process from A to Z and I get the final message that the account is successfully unlocked, but when I check in AD the account is not unlocked.
ADSelfService Plus 5602 released with a bunch of enhancements and issue fixes
The latest build of ADSelfService Plus now has an option to specify the length of the verification codes and also provides the ability to install GINA/CP logon agent using DNS hostname. This build also fixes some important security issues in the product.
Best Practice for License Recovery in ADSelfService?
Hello. We are currently in a reactive cycle where we manually remove licenses in bulk for disabled, deleted, and unowned licenses. Is there a proactive or automated process where we can recover a license when a user is deleted or disabled from our directory? After reading the documentation I see that we can perform removals in bulk through license management, which makes the process quick, but we would prefer to be proactive about it. Thanks in advance!
Photo Attribute used in ADSelfService
Where does the user's photo come from? We have deleted all our user photo's (long story) but there are a number of users that still show a photo. I have checked and none of these users have the photo, or jpegPhoto or thumbnailLogo or thumbnail Photo attributes populated! I have cleared cache, new profile and even a new workstation, but the photo remains. Thanks Bob
ADSelfService Plus 5601 released with Hebrew language support.
We've updated ADSelfService Plus to 5601. This release includes the following enhancement: Highlight: ADSelfService Plus now supports Hebrew language. How to update? Update using service pack. New to ADSelfService Plus? Download the latest version of
Force Password Change on Enrollment
How can I force users to change their password after enrolling?
Clear Enrollment
How does my help desk staff clear security questions for someone who forgot their answers? My staff has "Operator" role in the "Technician Settings." They do not have an option to clear enrollment or questions for users. There is only 2 roles, admin and operator. Or maybe there is another way?
Cannot generate CSR
Hi, I installed selfservice on windows server. I went to the admin area and filled out the generate CSR form. I click generate and nothing happens. Any ideas?
Two Factor Authorization Problems
Hello everybody, I would like to implement the two factor authorization. That works so far. If a user wants to reset his password he must connect to the Webportal an log in with his domain user name. In the next step the user can choose the option how he would like to reset the password. Either by mail or via the Mobile Phone Number. Is there a way to ban this selection? I would like the user only needs to specify his domain user name and then automatically gets an SMS on the deposited Mobile Phone
Admin Login option gone
I made a customized login page logo change, and now I can't find the tab to allow for admin login. How do I restore the ability to login as an admin? Is there another port or page to access the admin login directly or does it share the function with the standard domain user login only?
SAML Authentication using ADFS?
Hi @ all, I was wondering if it's possible to use the new SAML-Feature with ADFS? Because, everytime we want to upload the given SP_Metadata.xml into the ADFS, we are getting the attached Error-message. (ADFS-error) Alternatively: Could you please state, which type of Data from the SP_Metadata.xml you have to enter in the following pictures 01 to 03, when trying to add it manually? Thanks in advance!
ADSelfService Plus 5600 released! Sports a new flat UI for its password expiration notifier free tool
ADSelfService Plus’ free tool—Password Expiration Notifier—gets a makeover with a new flat user interface for easier configuration. We’ve also fixed some issues in this release. Highlight: The Password Expiration Notifier free tool gets a makeover with a new flat user interface that makes configuring password expiration notifications easier than ever. Issues fixed: Issue in expanding parent OUs to select child OUs in the GINA/Mac logon agent installation page. Issue in disabling product and event
Next Page