This section is intended for setting privileges of PAM administrative users in Indeed PAM management console.
After the first login to the administrator console, you will need to add the current user to the Administrator role, for this:
The Administrator, Operator and Supervisor roles will be available right after the installation.
All claims are enabled for the Administrator role.
The Operator role includes claims that allow you to create or revoke permissions (for example, process access requests), as well as check privileged Accounts and the availability of target Resources.
The Supervisor role is for finding and viewing values, except for Account passwords. The claims to add and modify values are disabled. The role will be useful for monitoring the work of PAM administrators.
To perform operations on roles, you need the privileges to manage access roles. |
Follow these steps:
Follow these steps to assign claims to the management console users:
Go to the Members section and add the required users.
If a user is added to several roles, then he receives the sum of privileges from all his roles. |
Go to the Roles section, select the required roles, click Remove.