New policies
  • 3 minutes to read
  • Dark
    Light
  • PDF

New policies

  • Dark
    Light
  • PDF

Article summary

This document provides information about the Policies form screen, which can register the credential’s policies.

Path to access

  1. On senhasegura, in the navigation bar, hover over the Products menu and select PAM Core.
  2. In the side menu, select Management > Credentials > Policies > New policy

Information tab

This section provides information on the Information tab with data about the policy to be registered.

ItemTypeRequiredDescription
Policy credential name*Text fieldYesCredential policy identifier name.
Status*Toggle buttonYesEnables or disables the status of the policy being created.
Password strength*Dropdown menuYesDetermines the level of password strength that the policy will have. The options are: High, Average and Low.
Priority*Quantity inputYesDefines the policy application priority if senhasegura finds more than one policy that applies to the credential.
Allow simultaneous viewing?*Toggle buttonYesEnables or disables the simultaneous viewing of the password, regardless of the user with custody of the password, everyone who is part of this policy will have access.
Allow simultaneous session?*Toggle buttonYesEnables or disables the possibility of starting sessions with the same credential simultaneously.
Expiration time by viewQuantity input and Dropdown menuNoSets the time interval in which senhasegura will automatically change the password after viewing it by a user. First choose a number and then a unit to which that number will refer. The options are: Minutes, Hours, Days and Months.
Expiration time by periodQuantity input and Dropdown menuNoDefines the maximum period of validity of a password, counting from the last time it was changed. First choose a number and then a unit to which that number will refer. The options are: Minutes, Hours, Days and Months.
Reuse same password forQuantity input and Dropdown menuNoDefine Defines the period during which all credentials under the same policy share the same password, starting from the first password change execution for any credential in that policy. The options are: Minutes, Hours, Days, or Months. During this time, all changed credentials will receive the same password. For example, if the period is set to two hours and 10 password changes occur within that interval, all 10 credentials will have the same password.
Info

By default, for strong passwords the system ensures that they won’t be repeated.

Days of expiration section

ItemTypeRequiredDescription
All daysCheckboxNoIf enabled, the policy will expire every day. If disabled, select the days of the week on which the policy will expire.

Hours of expiration section

Add time by period

ItemTypeRequiredDescription
AddButtonNoAdds a new line to insert a new time.
Time tableTableNoTimetable data added.

Add hours per view

ItemTypeRequiredDescription
AddButtonNoAdds a new line to insert a new time.
Time tableTableNoTimetable data added.

Criteria tab

This section provides information about the Criteria tab with information about the policies criteria.

ItemTypeRequiredDescription
DeviceToggle buttonNoEnables or disables the text field for including devices.
Device (comma separated)Text fieldNoDevice registration name. In the text Device Field There are possible ways to fill in this field.
ProductToggle buttonNoEnables or disables the text field for including device models.
Product (comma separated)Text fieldNoDevice models name.
Additional informationToggle buttonNoEnables or disables the text field for including additional information.
Additional information (separated by comma)Text fieldNoText with additional information about the registration.
Device TagsToggle buttonNoEnables or disables the text field for including tags for devices.
Device Tags (comma separated)Text fieldNoTags registered for devices.
Credential TagsToggle buttonNoEnables or disables the text field for including tags for credentials.
Credential Tags (separated by commas)Text fieldNoTags registered for credentials.
Site*Dropdown menuYesOptions with the types of sites that will be visible to the policy. The available options will be as registered in senhasegura.
Device type*Dropdown menuYesOptions with the types of devices that will be visible to the policy. The options are defined according to the types of registered devices.
Credential type*Dropdown menuYesOptions with the types of credentials that will be visible to the policy. The options are: All, SSH Key, Domain User, Local User and Local administrator.
Attention

For filling out the Device (comma separated) field, there are rules that need to be followed. More information in About Filling Out the Device and Username Fields.

Review tab

This section provides summary information about the choices made in the previous steps. The information is grouped by each tab respectively.


Was this article helpful?