Chat now with support
Chat with Support

Identity Manager 9.1 - Administration Guide for Privileged Account Governance

About this guide Managing a Privileged Account Management system in One Identity Manager Synchronizing a Privileged Account Management system
Setting up the initial synchronization of a One Identity Safeguard Customizing the synchronization configuration for One Identity Safeguard Running synchronization Tasks following synchronization Troubleshooting Ignoring data error in synchronization Pausing handling of target system specific processes (Offline mode)
Managing PAM user accounts and employees Managing assignments of PAM user groups Login information for PAM user accounts Mapping of PAM objects in One Identity Manager PAM access requests Handling of PAM objects in the Web Portal Basic data for managing a Privileged Account Management system Configuration parameters for managing a Privileged Account Management system Default project template for One Identity Safeguard Editing One Identity Safeguard system objects One Identity Safeguard connector settings Known issues about connecting One Identity Safeguard appliances

Displaying the PAM user group overview

For a user group, you see an overview of the user accounts and entitlements associated with the user group. For directory groups, the associated Active Directory group or LDAP group is displayed.

To obtain an overview of a group

  1. Select the Privileged Account Management > User groups category.

  2. Select the group in the result list.

  3. Select the PAM user group overview task.

PAM assets

Assets are computers, servers, network devices, or applications that are managed by a PAM appliance.

Assets are imported into the One Identity Manager database during synchronization. Changes to the object properties of individual assets can be re-imported by single object synchronization.

To display the properties of an asset

  1. In the Manager, select the Privileged Account Management > Appliances > <appliance> > Privileged Objects > Assets category.

  2. Select the asset in the result list.

  3. Select the Change main data task.

For an asset, you see an overview of the asset groups, asset accounts, and the access request policies associated with the asset.

To view an overview of an asset

  1. In the Manager, select the Privileged Account Management > Appliances > <appliance> > Privileged Objects > Assets category.

  2. Select the asset in the result list.

  3. Select the PAM asset overview task.

Related topics

PAM asset groups

An asset group is a collection of assets. An asset group can be added to the scope of an access request policy.

Asset groups are imported into the One Identity Manager database during synchronization. You cannot edit the properties of asset groups. Changes to the object properties of individual asset groups can be re-imported by single object synchronization.

To display the properties of an asset group

  1. In the Manager, select the Privileged Account Management > Appliances > <appliance> > Privileged Objects > Asset groups category.

  2. Select the asset group in the result list.

  3. Select the Change main data task.

For an asset group, you see an overview of the assets and access request policies associated with the asset group.

To obtain an overview of an asset group

  1. In the Manager, select the Privileged Account Management > Appliances > <appliance> > Privileged Objects > Asset groups category.

  2. Select the asset group in the result list.

  3. Select the PAM asset group overview task.

Related topics

PAM asset accounts

An asset account is a unique ID for the access to an asset, for example, a user account, a group or a service account. For asset accounts, passwords can be requested for accessing the assets.

Asset accounts are imported into the One Identity Manager database during synchronization. Changes to the object properties of individual asset accounts can be re-imported by single object synchronization.

To view an overview of an asset account:

  1. In the Manager, select the Privileged Account Management > Appliances > <appliance> > Privileged Objects > Asset accounts category.

  2. Select the asset account in the result list.

  3. Select the PAM asset account overview task.

To display the properties of an asset account:

  1. In the Manager, select the Privileged Account Management > Appliances > <appliance> > Privileged Objects > Asset accounts category.

  2. Select the asset account in the result list.

  3. Select the Change main data task.

For an asset account, you see an overview of the account groups and the access request policies associated with the asset account.

To define a risk index for an asset account

  1. In the Manager, select the Privileged Account Management > Appliances > <appliance> > Privileged Objects > Asset accounts category.

  2. Select the asset account in the result list.

  3. Select the Change main data task.

  4. Set a value for the Risk index between 0 and 1.

    This input field is only visible if the QER | CalculateRiskIndex configuration parameter is set. For more information, see the One Identity Manager Risk Assessment Administration Guide.

  5. Save the changes.

Related topics
Related Documents

The document was helpful.

Select Rating

I easily found the information I needed.

Select Rating