A Python-based tool designed to verify the installation and compatibility of Privileged Session Manager Proxy (PSMP) on Linux systems. This tool evaluates PSMP and SSHD service statuses, supported Linux distributions, configuration compliance, and generates necessary system logs for diagnostic purposes.
git clone https://github.com/TalMaIka/PSMPAssistant.git
cd PSMPAssistant
Requirements are Python3.6 +To use the tool, run the PSMPAssistant.py script with optional arguments.
Run the script without any arguments to check the PSMP compatibility with the current system:
python3 PSMPAssistant.pyTo collect logs from specified locations and create a zip file, use the logs argument:
python3 PSMPAssistant.py logsTo execute the PSMP RPM repair process repair argument:
python3 PSMPAssistant.py repairTo generate a PSMP connection string, use the string argument:
python3 PSMPAssistant.py string- Ensures that the installed PSMP version is compatible with the detected Linux distribution and version based on official CyberArk documentation.
- Checks and verifies the status of PSMP and SSHD services.
- Checks communication between PSMP and Vault server, including options to update the Vault IP address if needed.
- Disable NSCD - https://docs.cyberark.com/pam-self-hosted/latest/en/content/pas%20inst/before-installing-psmp.htm#DisableNSCD
- Verifies if the installed OpenSSH version meets the required version.
- Checks if the system hostname is set to a unique value to avoid future issues.
- Monitors CPU and memory usage to ensure they are within acceptable limits and verifies if there is sufficient disk space.
- Validates the NSswitch configuration based on the PSMP version.
- Ensures proper configuration of the SSHD service to allow proper PSMP flow.
- Collect logs from specified locations and create a zip file for analysis.
- Checks if the SSHD debug level is set to DEBUG3.
- https://community.cyberark.com/s/article/00003368
- Automates the pre-installation steps by locating the RPM folder matching the PSMP installed version and executing the repair.
- Generates a PSMP connection string based on user input.
- Searches the
PSMPTrace.logandsecurefiles for specific error patterns and alerts to diagnose potential issues.



