Displaying the PAM directory account overview
For a directory account, you see an overview of the user account in the directory, the PAM user accounts, the access request policies and partitions associated with the directory account.
To view an overview of a directory account:
-
In the Manager, select the Privileged Account Management > Appliances > <appliance> > Privileged Objects > Directory accounts category.
-
Select the directory account in the result list.
-
Select the PAM directory account overview task.
Displaying main data of PAM directory accounts
Only selected properties of directory accounts can be edited in One Identity Manager. You can set a risk index and assign owners to directory accounts.
To display the properties of a directory account
-
In the Manager, select the Privileged Account Management > Appliances > <appliance> > Privileged Objects > Directory accounts category.
-
Select the directory account in the result list.
-
Select the Change main data task.
Related topics
Specifying risk indexes for PAM directory accounts
NOTE: This function is available if the QER | CalculateRiskIndex configuration parameter is set.
For more information, see the One Identity Manager Risk Assessment Administration Guide.
To define a risk index for a directory account
-
In the Manager, select the Privileged Account Management > Appliances > <appliance> > Privileged Objects > Directory accounts category.
-
Select the directory account in the result list.
-
Select the Change main data task.
-
Set a value for the Risk index between 0 and 1.
-
Save the changes.
PAM account groups
An account group is a collection of asset account and directory accounts. An account group can be added to the scope of an access request policy. Account groups are imported into the One Identity Manager database during synchronization. Changes to the object properties of individual account groups can be re-imported by single object synchronization.
Related topics