Managing access to vaults and passwords by role enables you to quickly update permissions for entire sets of users simultaneously.
All users in a role have access to vaults using scopes that are assigned to that role. A scope is a collection of one or more vaults. For example, multiple users can be added to a named role—like Technician or Auditor. The role is then assigned to one or more scopes.
A user has access to vaults and passwords based on their combined role and user permissions. A user is always given the best combined permissions of both their role and user permissions.
Adding Roles
Once added, a role can be deleted or edited.
General Settings tab
Scopes tab
Toggle a scope tile to add or remove it from the role. You can select or removed all scopes.
Role Members tab
Toggle a user tile to add or remove it from the role.