You are viewing limited content. For full access, please sign in.

Question

Question

gMSA Group Managed Service Accounts and Connection Profiles in Workflow

asked on January 11, 2022

Hi Everyone (especially Sam),

Is it possible set up Workflow Connection Profiles using gMSAs? I've tried but had no luck. It works with Repository and LFDS accounts, of course, but the customer would like all accounts to use password managed in a password manager, or to be gMSAs. Import Agent, Audit Trail, and Quick Fields (triggered by QF Agent) are configured using LFDS (or Repo) accounts but should work with gMSAs AOK. Workflow is my challenge!

 

-Ben 

0 0

Answer

SELECTED ANSWER
replied on January 12, 2022

Workflow connection profiles do not support domain accounts.

0 0
replied on January 12, 2022

Thanks Miruna :)

 

0 0
replied on January 12, 2022 Show version history

Miruna beat me to it =)

As a related note, I highly recommend using repository user accounts for Workflow connection profiles rather than LFDS users. The former has lower authentication overhead. It's not enough to notice for an interactive user login, but can measurably impact the performance of certain high-frequency Workflow activities. The same goes for Import Agent and Audit Trail, both of which can generate huge numbers of login events. 

The accounts used for Workflow Connection Profiles use a special built-in license key for their repository sessions and do not require a Named User license.

1 0
replied on January 12, 2022

Thanks for the extra detail, @Samuel :) 

0 0

Replies

You are not allowed to reply in this post.
You are not allowed to follow up in this post.

Sign in to reply to this post.