Apply password rotation to PAM provider credentials

This workflow is used to apply a PAM managed account as a PAM provider identity. The objective is to have a password rotation applied to the PAM provider's credentials.

A PAM vault must be set up before following the steps below.

  1. Open Devolutions Server.

  2. Go to Administration - Privileged access - Providers to create a provider.

    Administration - Privileged access - Providers
    Administration - Privileged access - Providers

  3. In the provider window, select Custom in the Credential type drop-down menu.

  4. Open a PAM vault.

  5. Add a Domain user to the PAM vault by clicking + icon (Add).

    Add a domain user to the PAM vault
    Add a domain user to the PAM vault

  6. Manually populate the fields and select the provider.

  7. Enter the username and the current password.

    Populate the fields and select the provider
    Populate the fields and select the provider

  8. Apply the Password rotation schedule.

  9. Click Add.

  10. The account is out of sync (not verified yet). Right-click on the account.

  11. Select Check Synchronization Status.

  12. The synchronization status should turn green.

  13. Go back to Administration - Privileged Access - Providers.

  14. Select your provider and change the Custom credentials for Linked credential.

  15. The Privileged account window opens.

  16. Select the account added beforehand.

  17. Click OK to save and close the window.

Devolutions Forum logo Give us Feedback