PAM service

The PAM service handles PAM tasks features, PAM provider actions, and Gateway token generation. Here are the steps to follow in order to create a new PAM service:

Step 1: Create a new application identity

  1. In Devolutions Hub Business, go to AdministrationApplication identities.

Administration – Application identities
Administration – Application identities
  1. Click on the Add application identity icon (+), enter a Name for the application, and click Add.

Add a new application identity
Add a new application identity
  1. Copy the Application secret and Application key, and paste them somewhere safe. Alternatively, you can download them as a PDF file. These will be needed during Devolutions Hub Services' installation later on.

Save application secret and key
Save application secret and key

Step 2: Edit permissions for application identities and all system vaults

  1. Head over to AdministrationSystem permissions.

Administration – System permissions
Administration – System permissions
  1. Click on the Edit icon (+).

Edit system permissions
Edit system permissions
  1. In the System tab, give both Manage privileged access tasks and Manage privileged access providers permissions to your application identity created during step 1. Click on Update.

Add permissions to your application identity
Add permissions to your application identity
  1. Then, in the Vaults tab, give the Contributers role to your application identity. Click Update.

Add Contributers role to your application identity
Add Contributers role to your application identity

Step 3: Install Devolutions Hub Services

  1. Download Devolutions Hub Services, and launch the installer.

  2. After reading and accepting the End-user license agreement, check PAM from the Custom setup feature list.

Install the PAM module
Install the PAM module
  1. Enter your Host URL, as well as the Application secret and Application key you save at the end of step 1. You can then test your connection to see if everything is working properly. Click on Finish.

Enter PAM service information
Enter PAM service information

Step 4: Create PAM application service

  1. Back in Devolutions Hub Business, navigate to AdministrationApplication services.

Administration – Application services
Administration – Application services
  1. Click on the Add icon (+), and select PAM service.

Add a PAM service
Add a PAM service
  1. Choose a Name, and select the application identity created at the end of step 1 in the Application identity drop-down menu. Click on Save.

Link to the application identity created during step 1
Link to the application identity created during step 1

See also

Devolutions Forum logo Give us Feedback