Next Topic

Previous Topic

Book Contents

Roles

Managing access to vaults and passwords by role enables you to quickly update permissions for entire sets of users simultaneously.

All users in a role have access to vaults using scopes that are assigned to that role. A scope is a collection of one or more vaults. For example, multiple users can be added to a named role—like Technician or Auditor. The role is then assigned to one or more scopes.

A user has access to vaults and passwords based on their combined role and user permissions. A user is always given the best combined permissions of both their role and user permissions.

Adding Roles

Once added, a role can be deleted or edited.

General Settings tab

Scopes tab

Toggle a scope tile to add or remove it from the role. You can select or removed all scopes.

Role Members tab

Toggle a user tile to add or remove it from the role.