There are different approaches using the Remote Desktop Manager Cyberark PSM Components. Although this guide covers many ways and techniques, it cannot cover every possible avenue. Here are the main approaches and techniques associated with them:
Initial import
From CSV (give a CSV template)
Synchronization (using the Remote Desktop Manager synchronizer entry)
From Active Directory synchronizer
From comma-separate values (CSV) synchronizer
Dynamic utilization
Quick connect
Host
Initial import of Cyberark connections from CSV
Create the Cyberark PSM server entry (or multiple)
CyberArk PSM Server
Select the Connection Mode you elect on the server.
Custom (AD Account with permissions to RDP into the PSM server and an associated account in Cyberark).
In this example, Custom is in force; Username/domain/password has been populated manually.
Then choose an RDP Template created beforehand, this template defines the setting of the initial connection on the PSM server.
RDP Template created beforehand
Once the Cyberark PSM Server has been added, get the ID of the new entry (Property – Entry Information).
In our example, the ID is 33628378-d4a6-431f-8438-16b75921aef9.
ID of the new entry
Create the Cyberark PSM connection template
Go to File – Templates – Templates.
File – Templates – Templates
Add a new template.
Add a new template
Select CyberArk PSM Connection (Pro-tip: you can filter in the Search field).
CyberArk PSM Connection
Give the template a significant name, some of the remaining fields can be filled, but the CSV should be complete enough if filled properly.
Template name
Create a CSV file for the import
The fields are mapped like this:
Columns
Description
Name
Name of the entry
ConnectionType
“CyberArk PSM Connection”
CyberArkPSM\Component
For RDP: PSM-RDP (several options available)
CyberArkPSM\CyberArkJumpConnectionID
ID of the Cyberark PSM Server entry
CyberArkPSM\PrivilegedAccount
Privileged account to use
Host
End point Hostname/IP
Import
Once the PSM Server entry has been created, and the CSV File is populated.
Go to File – Import – Import Session Csv Wizard.
File – Import – Import Session Csv Wizard
Browse and select the Csv File created beforehand, and click Next.
Import Csv Wizard
Select Selected template.
Select the template we created and click Finish.
PSMImport
Note: You must tick the Generate Direct Mapping check box.
Generate Direct Mapping check box
Imported connections
Synchronization (using the Remote Desktop Manager synchronizer entry)
Both those techniques are used to connect to a third-party repository. The first one will connect to a domain controller and list the servers and computers according to filters and settings.
The general approach and principle of using synchronizers are to keep a list of servers updated from an external information repository, such as Domain Controller, VM host, or even a simple CSV file exported periodically from another system.
Those entries are created following a template, created and configured beforehand.
It’s also granted that the Cyberark PSM integration is already configured and working (PSM Connection and Server Components, Remote Desktop Manager templates, etc.)
From Active Directory synchronizer
This approach will create entries from an LDAP request on a domain controller.
One downside of this setup is that only the Host field will be filled from the synchronizer, the Privileged Account and the component have to either remain empty, or all using the same setting (coming from the template).