立即与支持人员聊天
与支持团队交流

Identity Manager 9.2.1 - Administration Guide for Privileged Account Governance

About this guide Managing a Privileged Account Management system in One Identity Manager Synchronizing a Privileged Account Management system
Setting up the initial synchronization of a One Identity Safeguard Customizing the synchronization configuration for One Identity Safeguard Running synchronization Tasks following synchronization Troubleshooting Ignoring data error in synchronization Pausing handling of target system specific processes (Offline mode)
Managing PAM user accounts and identities Managing assignments of PAM user groups Login credentials for PAM user accounts Mapping PAM objects in One Identity Manager
PAM appliances PAM user accounts PAM user groups PAM assets PAM asset groups PAM asset accounts PAM directory accounts PAM account groups PAM directories PAM partitions PAM entitlements PAM access request policies Reports about PAM objects
PAM access requests Handling of PAM objects in the Web Portal Basic data for managing a Privileged Account Management system Configuration parameters for managing a Privileged Account Management system Default project template for One Identity Safeguard Editing One Identity Safeguard system objects One Identity Safeguard connector settings Known issues about connecting One Identity Safeguard appliances

Displaying the PAM directory account overview

For a directory account, you see an overview of the user account in the directory, the PAM user accounts, the access request policies and partitions associated with the directory account.

To view an overview of a directory account:

  1. In the Manager, select the Privileged Account Management > Appliances > <appliance> > Privileged Objects > Directory accounts category.

  2. Select the directory account in the result list.

  3. Select the PAM directory account overview task.

Displaying main data of PAM directory accounts

Only selected properties of directory accounts can be edited in One Identity Manager. You can set a risk index and assign owners to directory accounts.

To display the properties of a directory account

  1. In the Manager, select the Privileged Account Management > Appliances > <appliance> > Privileged Objects > Directory accounts category.

  2. Select the directory account in the result list.

  3. Select the Change main data task.

Related topics

Specifying risk indexes for PAM directory accounts

NOTE: This function is available if the QER | CalculateRiskIndex configuration parameter is set.

For more information, see the One Identity Manager Risk Assessment Administration Guide.

To define a risk index for a directory account

  1. In the Manager, select the Privileged Account Management > Appliances > <appliance> > Privileged Objects > Directory accounts category.

  2. Select the directory account in the result list.

  3. Select the Change main data task.

  4. Set a value for the Risk index between 0 and 1.

  5. Save the changes.

PAM account groups

An account group is a collection of asset account and directory accounts. An account group can be added to the scope of an access request policy. Account groups are imported into the One Identity Manager database during synchronization. Changes to the object properties of individual account groups can be re-imported by single object synchronization.

Related topics
相关文档

The document was helpful.

选择评级

I easily found the information I needed.

选择评级