Documentation Index

Fetch the complete documentation index at: https://docs.senhasegura.io/llms.txt

Use this file to discover all available pages before exploring further.

How to change a credential password via LDAP with Kerberos authentication

Prev Next

This document provides information on how to change a credential password via LDAP with Kerberos authentication.

Requirements

  • A valid credential.
  • Active Directory configured.

Step 1: Set device connectivity

  1. On Segura® Platform, in the navigation bar, hover over the Products menu and select Devices.
  2. In the side menu, select Devices.
  3. In the Devices report, select the device that will be edited or click + Add to create a new device.
  4. In the Device form, click the Information tab.
  5. In the Device name (Hostname, IP, URL or website name, application name...) * field, enter the device name.
  6. In the IP, Hostname or management URL * field, enter the device’s FQDN.
  7. In the Connectivity tab, go to the Connectivity section and click + Add.
  8. In the Connectivity field, select LDAPS.
  9. In the Port field, enter the port number 636.
  10. Go to the Review tab and click Save.

Step 2: Configure the credential

  1. On Segura® Platform, in the navigation bar, hover over the Products menu and select PAM Core.
  2. In the side menu, select Credentials > All credentials.
  3. In the Access credentials report, select the credential that will be edited or click + Add to create a new credential.
  4. In the Credential report, click the Information tab.
  5. In the Domain field, select the domain that was created for this credential.
    Attention

    The domain that will be used for the credentials used for authentication via Kerberos demands that the domain name is in capital letters. For example: WINRM-KERBEROS.

  6. Click Continue.
  7. In the Execution settings tab, select the Enable automatic change checkbox.
  8. In the Change plugin field, select LDAP.
  9. In the Change template field, select AD - Change User Password.
  10. Select the Use Kerberos authentication checkbox.
  11. Go to the Review tab and click Save.

Step 3: Request the password change

After configuring your device and your credential, you can request the password change. More information in How to request a password change from the credentials list.