BeyondTrust - Password Safe - Linux Tools Use Case - V1.0
BeyondTrust - Password Safe - Linux Tools Use Case - V1.0
Document Details
Document Details.
Page 1
Contents
Linux Tool Use Cases .................................................................................................................................... 1
A. WinSCP to connect to Linux Managed Systems via PAM Direct Connect ............................................ 3
B. MobaXTerm to connect to Linux Managed Systems via PAM Direct Connect ..................................... 6
C. X11 Forwarding through putty.............................................................................................................. 8
D. For quick connect using SSH to target Linux Server............................................................................ 11
List of Figures
Figure 1 WINSCP Tool Advance option ......................................................................................................... 3
Figure 2 WINSCP Tool Endurance option ...................................................................................................... 4
Figure 3 Password Safe Portal SSH Session Page .......................................................................................... 4
Figure 4 Password Safe SSH Session Connection Page ................................................................................. 5
Figure 5 WINSCP Login Page ......................................................................................................................... 5
Figure 6 WINSCP Connection to Server ........................................................................................................ 6
Figure 7 WINSCP Working Session ................................................................................................................ 6
Figure 8 Password Safe SSH Session Page .................................................................................................... 7
Figure 9 Password Safe SSH Session Connection Page ................................................................................. 7
Figure 10 MobaXTerm Login Page ................................................................................................................ 8
Figure 11 MobaXTeram Working Session after logged in............................................................................. 8
Figure 12 X11 App Setting 1 .......................................................................................................................... 9
Figure 13 Putty Setting for Use of X11 .......................................................................................................... 9
Figure 14 Password Safe SSH Session Page .................................................................................................. 9
Figure 15 Password Safe SSH Connection Page .......................................................................................... 10
Figure 16 Putty Login Page for X11 ............................................................................................................. 10
Figure 17 X11 Login Session ........................................................................................................................ 11
Figure 18 Gedit............................................................................................................................................ 11
Figure 19 Server Name in Password Safe for SSH Connection ................................................................... 12
Figure 20 Putty Page for Direct Connect..................................................................................................... 12
Figure 21 Prompt for normal WBI Account Password on SSH Console ...................................................... 13
Page 2
A. WinSCP to connect to Linux Managed Systems via PAM Direct
Connect
Below steps to use WINSCP tool for file transfer using PAM Solution.
Note: Beyond Trust PAM Solution Does not Support SCP Protocol to use it via WINSCP
Pre-requisites:-
If the reconnect is enabled and the one time token is used. It can cause repeated invalid session
requests, So it is recommend unchecking the Automatic reconnect in WinSCP.
The Automatic Reconnect settings can be found under Advanced → Logging then go to Endurance
Page 3
Figure 2 WINSCP Tool Endurance option
Method:-
Page 4
Figure 4 Password Safe SSH Session Connection Page
6. In WINSCP tool paste the copied Username/IP Parameter in Hostname section. Enter port
number 4422. For you can see hostname is pam.nxp.com and string in username.
Page 5
Figure 6 WINSCP Connection to Server
This document shows how to allow users to use MobaXterm to connect to Managed System through
Password Safe via Direct Connect.
Method:-
Page 6
Figure 8 Password Safe SSH Session Page
5. In MobaXTerm tool paste the copied Username/IP Parameter in Remote Host section. Enter
port number 4422
Page 7
Figure 10 MobaXTerm Login Page
Pre-requisites:-
1. In Xming Application Display settings dialog box, select Multiple windows and set the Display
number as 0.
Page 8
Figure 12 X11 App Setting 1
2. In putty Set the X display location as :0.0, go to Connection > SSH > X11
Method:-
Page 9
3. From password safe portal, click on Open SSH Session Button.
4. Copy the Username/IP parameter. This is the one time token.
5. In Putty tool paste the copied Username/IP Parameter in Host Name section. Enter port number
4422
Page 10
Figure 17 X11 Login Session
8. Launch Gedit
Figure 18 Gedit
Format of String:
<WBIDomainName>\<WBIAccountName>@<IAMOUDDomainName>\<LinuxAdminAccountName>@<Ta
rgetServerNameShowingInPAM>@<PAMSolutionName>
Example:
Page 11
Figure 19 Server Name in Password Safe for SSH Connection
wbi.nxp.com\[email protected]\nxf123-a@[email protected]
1. Open Putty
2. Enter the above string format into Hostname Option
3. Enter the port number 4422
4. Click on Open
5. SSH Console will prompt for your Normal WBI Account Password, enter.
Page 12
Figure 21 Prompt for normal WBI Account Password on SSH Console
Page 13