A CyberArk Privileged Vault Web Access (PVWA) credential entry in Remote Desktop Manager Windows centralizes authentication for connections. The entry can either target a specific CyberArk account or display a selectable list at connect time.
Open Remote Desktop Manager and select CyberArk PVWA (Credentials).

| SETTINGS | DESCRIPTIONS |
|---|---|
| Resolving mode |
|
| Web service URL | Enter the CyberArk server address in this format to connect to your CyberArk instance: https://<server name>.<our domain>.loc/.The following is what your Web services URL will be, depending on your CyberArk subscription:
|
| Virtual directory | Enter a Virtual directory. This field is either /privilegecloud or empty. |
| Version | Select a Version in the drop-down list. This refers to the CyberArk PVWA version seen on the CyberArk authentication page. Please note that we only support the CyberArk V12 API for now and that CyberArk version 12.1 is required. |
| Authentication | Select the Authentication mode used to connect to the CyberArk instance (CyberArk, Windows, LDAP, RADIUS,SAML, PKI, or PKIPN). SAML authentication is supported with CyberArk in Remote Desktop Manager starting in version 2022.3.25. Important improvements and bug fixes were added in later versions. We recommend to at least update to the 2023.1 version of Remote Desktop Manager if your current version is older. In 2023.1, you no longer need to provide the identity provider IdP sign-in URL when configuring SAML authentication. If you have trouble with your SAML authentication, consult SAML Configuration and Troubleshooting. SAML authentication for CyberArk Privilege Cloud requires Remote Desktop Manager 2023.2.17 or newer. Your CyberArk vault administrator should provide you with the authentication model being used. In PVWA, if you select a link that matches your corporate domain name, that typically indicates that LDAP model is in use. |
| Account | Select the account this credential entry is going to use. Check Always prompt with list and let the user choose the account. |
| SETTINGS | DESCRIPTIONS |
|---|---|
| MFA delimiter | The MFA delimiter option exists in Remote Desktop Manager to mirror the one that already exists with CyberArk. The character that is entered in the delimiter field will be used to separate the values of the SecurID code and the password that are then sent to the API. |
| Domain search method |
|
| Domain field |
|
If you need the domain specified most of the time, you need to set the Domain search method to Field and then the Domain field to Address.