When sealed mode is enabled, the following settings are automatically applied:
- 
One Identity Safeguard for Privileged Sessions (SPS) cannot be accessed remotely via SSH for maintenance. 
- 
The root password of SPS cannot be changed in sealed mode. 
- 
It is not possible to upload or delete plugins in sealed mode. 
- 
Sealed mode can be disabled only from the local console. For details, see Disabling sealed mode. 
To enable sealed mode use one of the following methods:
- 
Select the Sealed mode option during the Welcome Wizard. 
- 
Select Basic Settings > System > Sealed mode > Activate sealed mode on the SPS web interface. 
- 
Log in to SPS as root using SSH or the local console, and select Sealed mode > Enable from the console menu. 
