Safes

Safe directly regulates user access to monitored servers. It specifies available protocols’ features, policies and other details concerning users and servers relations.

../../_images/safes_view.png

Adding a safe

Warning

Data model objects: safes, users, servers, accounts and listeners are replicated within the cluster and object instances must not be added on each node. In case the replication mechanism fails to copy objects to other nodes, contact technical support department.

Note

  • The system safe can only contain system account.
  • The portal safe can only contain the portal account.
  • Operator, admin and superadmin users always have access to the system safe.
  • User type users cannot have access to the system safe.
  1. Select Management > Safes.
  2. Click Add.
  1. Enter object’s name.
  1. Select Blocked option to disable access to object after it’s created.
  2. Select Login reason option, to display prompt upon logging in, asking user to enter login reason.
  3. Select Notifications option and choose notifications sent out to Wheel Fudo PAM administrator.
  1. Assign security policies in the Policies field.
  2. In the Protocol functionality section, select allowed protocols’ features.
  3. In the Permissions section, add users allowed to manage this object.
  4. In the Object relations section, add users allowed to connect to servers using accounts assigned to this safe.
  5. In the Accounts field, add privileged accounts used to connect to monitored servers.
  6. In the Listeners field, add listeners used to initiate connections with monitored hosts.
  1. Click Save.
../../_images/add_safe.png

Editing a safe

  1. Select Management > Safes.
  1. Find and click desired object to open its configuration page.
  2. Modify configuration parameters as needed.

Note

Unsaved changes are marked with an icon.

../../_images/unsaved_changes.png
  1. Click Save.

Deleting a safe

Warning

Deleting a safe definition will terminate all current connections to servers which use selected safe to regulate access to servers.

  1. Select Management > Safes.
  2. Find and select desired objects.
  3. Click Delete.
  4. Confirm deletion of selected objects.

Related topics: