Multiple, separate sessions/tools vaults with one shared credential vault?

Multiple, separate sessions/tools vaults with one shared credential vault?

avatar

I use RDM with one SQL Server data source. I have 3 separate teams of users with different security requirements for their sessions/tools. Currently each team is setup with a separate vault within the data source. This works well because each team uses completely different sessions, tools, etc. But, all three teams would like to use one common credential vault shared across each of their current sessions/tools vaults. Is this possible?

All Comments (4)

avatar

Hello,

Yes it is possible using the Role Base Security System. You can create a role per team and assign permissions to those roles on folders and/or entries. You will find more information on the following online help pages.
https://help.remotedesktopmanager.com/securitysystem.htm
https://help.remotedesktopmanager.com/rolebasedsecuritysystem_advancedsecurity.htm

Best regards,

Érica Poirier

avatar

>> Currently each team is setup with a separate vault within the data source. ... would like to use one common credential vault shared across each of their current sessions/tools vaults.

I tried this but was unable to get it to work. When I try to reference the credentials in the shared credential vault from the separate session vaults, the credentials don't show up in the drop-down "Credentials" dialog box, only "Prompt on connection" appears. I was only able to get it to work by duplicating (just a small subset of the whole tree in the credentials vault so far) into (just one so far of) the separate team vaults.

>> Yes it is possible using the Role Base Security System.

  1. We are using the Role Based Security System.
  2. We are using RDM version 2020.1.20.0 64-bit


Sorry, but after spending a good bit of time yesterday and this morning trying to get this to work, I was unable to get the separate team sessions vaults to successfully reference the common credential vault. Of course, you can give the _users_ of the separate team vaults permissions to access the "common credential vault", but that doesn't seem to give them a way to use the "common credential vault across each of their current sessions/tools vaults."

@NOTWJ1836 - Were you able to get this to work yourself using the suggestions provided by @epoirier?

Only the credentials in the same "separate" vault appear in the "Credentials" drop-down box. The ones in the "one common credential vault" which is being attempted to be "shared" with the sessions vaults do not appear there.

Annotation_2020-04-30_093819.png

avatar

Hello,

Regarding using credentials or sessions across multiple vaults, sadly it is not possible. Sorry that I forgot to mention this important information in my previous post. I should have mentioned that each team will have their own vault with credentials and sessions with restricted access to the corresponding team. And one shared vault that contains credentials and sessions that is accessible by every team.

Best regards,

Érica Poirier

avatar

>> Regarding using credentials or sessions across multiple vaults, sadly it is not possible.
Therefore it sounds like the answer to the original question regarding "one common credential vault shared across each of their current sessions/tools vaults" is "no".

When additional teams were acquired, the previous RDM administrator (manager of the teams) had separated the sessions into separate vaults. As I discovered and you explain, the Password Lists will need to be in the same vault. Thanks for the clarification.