One Identity Safeguard for Privileged Passwords proxies all sessions to target resources. ... Users do not have direct access to resources, therefore, the enterprise is protected against viruses, m...
On the Authentication tab, specify the authentication settings for the user. ... An authentication provider can be the same or different as the user's identity provider. ... Use valid combinations ...
The Discovered Services tab displays information on the services dependent to a selected account. ... This tab is only available for Windows and Active Directory accounts. ... Use these buttons to ...
SPP allows you to schedule the generation of an activity audit log report, which will then be sent via email. ... The emailed report will be an attachment in the selected .csv or .json format. ... ...
The following table lists the appliance states and what actions are available when the appliance is in a particular state. ... EnrollingReplica (only applies to replica appliances in a cluster) ......
Once you have completed Deploying the Secrets Broker Vault, the following configuration is available: ... Getting the vault root token from the connected Safeguard for Privileged Passwords appliance
On the Information tab, define the directory or network information for the discovery job. ... StarlingAgent ... If you select Directory, directory assets that are shared can be discovered into any...
Use the following information to back up and recover a SPP virtual appliance. ... Factory reset is not an option for virtual appliances. ... To factory reset a virtual appliance, just redeploy the ...
When you delete an account, SPP does not delete it from its associated asset; it simply removes it from SPP. ... If you delete a service account, SPP changes the asset's authentication type to None...
The History tab allows you to view or export the details of each operation that has affected the selected asset. ... To access History: ... The top of the History tab contains the following informa...
Use the Appliance Information option on the Recovery Kiosk to view basic appliance information and edit the IP addresses. ... If you are using Azure, configure the SPP VM with a static IP address i...
Frequently asked questions > How do I configure external federation authentication > How do I create a relying party trust for the STS ... The process for creating the relying party trust in your S...
Authorized users can authorize connections, view active connections, limit access to specific resources, be alerted if connections exceed pre-set time limits, and even close connections. ... Typica...
The Account Discovery tab is only available after an Active Directory or Safeguard for Privileged Sessions asset has been created. ... On the Account Discovery tab, the default is Do not perform ac...
ServiceNow is a cloud-based issue tracking system. ... SPP can exchange the following ticket types with ServiceNow: ... The data items specific to ServiceNow may be optional based on your configura...
The process for creating the relying party trust in your STS (Security Token Service) will differ between applications and services. ... However, as stated earlier, you can download a copy of SPP's...
It is the responsibility of the Security Policy Administrator to link a user to an account. ... Once linked, these linked accounts can be used to access assets and accounts within the scope of an a...
The Lights Out Management feature allows you to remotely manage the power state and serial console to Safeguard for Privileged Passwords using the baseboard management controller (BMC). ... When a ...
If you are unable to delete an account, review the considerations below. ... Wrong account name: ... As an Asset Administrator, you may receive this error if you attempt to delete an account : This...
In order to add a SCIM user group, you must first configure SCIM provisioning. ... For more information on configuring SCIM provisioning, see Adding identity and authentication providers. ... Name:...
Manual intervention is possible when automatic Offline Workflow Mode is enabled. ... In the cluster view (left pane) of the offline appliance, click the member of the cluster that is offline. ... I...
On the Connection tab, you can configure SPP to authenticate to a managed system using an SSH authentication key. ... To rotate SSH keys, you must select the Manage SSH Key option in the asset's pr...
Each Asset Administrator can set a unique default partition and profile so that all new assets that administrator adds are automatically assigned to the default partition and default profile. ... T...
Before you add systems to SPP (Adding an asset), you must ensure they are properly configured. ... Create a functional account (called a "service" account in SPP) on the asset and assign it a passw...
Use the Trace Route test to obtain route information, such as the paths packets take from one IP address to another. ... web client: Navigate to Appliance > Network Diagnostics. ... Timeout in mill...
© ALL RIGHTS RESERVED. Feedback Terms of Use Privacy Cookie Preference Center