Resolved

User vault security

avatar

We use Devolutions server as our repository for company systems.

We would like to use user vaults to secure personal information, but some users voiced their concerns that although the system seems secure, how can they be assured that a malicious administrator couldn't access their personal information, since it has the ability to change settings or in worst case scenario change the user password or remove 2FA configurations.

Is there support on Devolutions server to secure the user vaults against this kind of scenario? (ex: personal encryption key, unremovable OTP, Yubikey, etc...)

All Comments (1)

avatar

Hello,

It's a good question that you are asking and we have created a KB article to respond to it properly.

Please consult https://docs.devolutions.net/kb/general-knowledge-base/vault-privacy-administrators-users/ to get better explanation.

Sorry for the delay of my response by the way.

Best regards,

Jeff Dagenais