Behavior of BYOV activity

Hey everyone, I’m curious if anyone else has been making use of the BYOV activity logon account type. I followed the below Netwrix guidance to connect to the Netwrix DB as a BYOV in order to checkout credentials without disabling the accounts; however I am seeing some odd behavior that might be a misunderstanding on my part of how the BYOV accounts are supposed to work.

(for reference Netwrix Documentation)

I have a pretty basic activity that checks out an account using a BYOV, and strips the domain section of the logon, in order to use to access a server. Everything works completely fine until the activity is de-provisioned at which point it looks like the “disable user script” is trying to run, and then fails because it can’t actually “manage” this server as you would normally expect. I was under the impression that the BYOV login account type would remove the steps of “enabling” and “disabling” an account and that it would instead simply use the BYOV connector to check in and check out the credential. Does anyone have experience with this working for them?

I haven’t reached out to support yet, as I am not sure if this is a bug or a misunderstanding on my part for what the functionality is. Would love to hear from anyone who has made use of the BYOV connectors a bit more than me. Below is the activity in question. It’s blurred but the login account template is filled out to be the correct account for the BYOV checkout script to find it :slight_smile:

Hi David - which version of Privilege Secure are you running?

We’re currently running 25.6.30001.0

Thanks for the info! Let me look into this and get back to you.

1 Like

Hey David,

I’m not sure why I am just seeing this one but there is also a small change we need to make in the database (the setting should be exposed in the UI in a coming version). This change prevents the enable/disable with these accounts and a credential release. I’d suggest going ahead and opening a ticket and support can connect and login to the database and make that change. If you’d like to reference this conversation it may help support by directing them my way.

2 Likes

Thank you! I will reach out to support now.

1 Like

For future reference, after our call today we discovered the database entry had moved and low and behold it has been added to the UI on a per account basis.

2 Likes

This topic was automatically closed 60 days after the last reply. New replies are no longer allowed.