It's great for any company that relies on active-directory as their primary source of user password authentication and other data. It's ability to integrate with a host of other tools such as Google Workspace, Azure AD (if you aren't using ADFS/DirSync/etc.), FreshService, Trello, etc. as well local apps like Postgres, i/AS400, and more make it a great middleware tool for SS.
PMP is great for sorting passwords into different groups depending on the category of application access. This makes it easy to find the password that you are looking for.
Application credentials can easily be saved to the clipboard to make it easier to copy and paste them into the appropriate log in screen.
Different types of credentials for the same application can be stored next to each other and are easy to distinguish by the icon next to the name. For example, SSH credentials, web credentials, and local root credentials are all easy to sort under one application group.
This tool is essentially a hack, making the user experience pretty weak. For example, we use it in an application which has a box to type your password. Every time you enter some data, ESSO steals the focus and types your password into the box, even if you aren't about to submit the form requiring the password.
This tool creates a 2nd CN in the directory and this broke some of our applications which were only expecting a single CN per user in the directory. Why can't it use a traditional database instead?
This tool caused performance issues with Putty. It would peg our CPUs at 100% if the user had Putty running. It took a very long time to resolve the issue.
ManageEngine Password Manager Pro has an amazing interface for all kind of users. It is easy to use over different ambient and for anybody. T he privileges use have much more control over his password databases and its action for its teams. The auditors have many reports on differents formats, type of reports, filters o action and more.
The contact is very easy. It is by mail. The resolution isn't easy because the support don't speak spanish and its english isn't good. In my opinion, ManageEngine Password Manager Pro should be have a Spanish Call Center for America.
Planning the implementation with the Team leader of end users. At the begining start with two server in High Availability. Organice the data base structure of resources and users access before that to deploy in production.
We evaluated one on-premise solution, Password Manager Pro, one cloud-based solution called Passwordstate to store all sensitive password information and also secure notes. The latter was licensed by users, so we knew as the team grew it would cost quite a lot more to maintain. We wanted access for various users within the information technology and systems department at a granular level to have separation of the various passwords into categories which we then give permission relevant for the right users.
There's no substitute for properly developed applications that delegate authentication to an external system like Active Directory or a cloud identity provider. That way, the issues with screen scraping and constantly-breaking integration are solved permanently.
We spent a lot of time implementing it on different applications. However, because it uses screen scraping, every time our apps upgraded, it broke the integration with ESSO, so we had to keep fixing the integration. After a few years, we have stopped integrating new apps with it due to this headache.