4.1.1 Predefined User Groups

The following predefined user groups and users are readily created for the default * user. Not all predefined user groups contain users. The predefined user groups have default permissions. The following default groups implicitly have “*” permissions to the relevant modules:

  • Access Administrators: Administrators who manage privileged access to resources.

  • Admin: Global Administrators.

  • Agent Administrators: Administrators who manage agents.

  • API Users: Group membership that has the role which gives permission to make API calls using a secret key that the user generates. The key would be used for authentication in place of user ID and password.

  • Audit Administrators: Auditors who monitor user activities.

  • Auditors: Auditors who monitor user activities.

  • Compliance Auditors: Auditors who review user activities.

  • Package Management Administrators: Administrators who manage package repository.

  • SSO Administrators: Application SSO Administrators.

  • User and Group Administrators: Administrators who manage local users, groups and their permissions.

  • User Requests Administrators: Administrators who manage user access requests.

  • Vault Administrators: Administrators who manage Credential Vaults and password management.

NOTE:In case you are upgrading from previous versions of Privileged Account Manager to 4.0 version, you will find that the roles and permissions are already mapped. If you are starting with a fresh installation of Privileged Account Manager 4.0 version, you can add the users to the default predefined user groups.