MSSQL SSO Server

(Versions 7.5.2+)

The MSSQL SSO Server allows users to access SQL Server databases through SQL Server Management Studio without the password ever being on their machine.

This page describes the steps needed to use the MSSQL SSO functionality of Pleasant Password Server.

For this example scenario, we connect to:

  • a server called srvmssql running Microsoft SQL Server (MSSQL)
  • on port 2212
  • with username/password: dbadmin/dbpass

Creating a MSSQL Entry

The first step is to add the entry to Pleasant Password Server. To do this:

  1. Login to the Password Server Web Client using your username/password (eg. admin/admin123)
  2. Navigate to the Home tab > Click on a folder > Select the Add Entry button and enter values:ms_cred_1.png
    • Title: (e.g. MSSQL Server 1)
    • Username: (e.g. dbadmin)
    • Password: (e.g. dbpass)
    • Url: (e.g. srvmssql,2212)
      • Format is: hostname,portnumber OR IP,portnumber
      • Default portnumber: is 1433 
    • Click Add
  3. Right-click on the new entry, select SSO and enter a unique value in the field:
    • Unique Identifier: (e.g. abc)


ActionsSSO.PNGms_cred_2.png

 

Enabling MSSQL SSO

The next step is to make sure the MSSQL SSO server is turned on.  The first time you enable MSSQL SSO, you will want to do so while browsing from your Password Server Host machine.

To start the SSO:

  1. Navigate to the SSO Server tab > SSO Server Status window
  2. Set the MSSQL SSO Server toggle to ON (if it is not on yet)
    • The Password Server host machine may popup requesting firewall access
    • Grant the MSSQL SSO server access to listen on port 3333

  ms_set_2.png

Connecting to MSSQL SSO

The final step is to use the MSSQL SSO server in an application that connects to MSSQL. The following steps explain how to do this for the SQL Server Management Studio (SSMS).

  1. First, open up SSMS, and enter these values:

    ms_ssms_1.png


    • Server Name and Port: (e.g. localhost,3333)
      • Format is: hostname,portnumber OR IP,portnumber
      • This is from the SSO Settings page
    • Login: (e.g. admin:abc)
      • Format is:  username:UniqueIdentifer
    • Password: (e.g. admin123)
      • This is the user's password (e.g. not the MSSQL Entry password)
  2. Connection Time-Out
    • Click the Options button (or Connection Properties tab) and increase the Connection time-out field to 60 seconds.
      • Note: this allows more time for the initial connection, to prevent early time-outs, and can be decreased in the future.

        ms_ssms_2.png

  3. Press Connect! You should successfully be connected to your MSSQL instance.
     

ms_ssms_3.png

Tag page
You must login to post a comment.