Reference Guide
...
Password Vault
Account Base Approval Mechanism
1 min
the approval mechanism is activated for each account and sub account under the group different manager user groups can be assigned for account approvals approvals can be made through the kron pam gui, by email, or through the kron pam mobile application all users, except the password vault admin user, are forced to run through the approval mechanism even if a user group has permission for an account or group, it must first get approval creator users also need to get approval for their accounts in the password vault tree structure, approval for sub accounts can be obtained from any parent group on the tree if there are differences in approval levels, a multi level approval structure can be activated in this way, more authorized managers can approve a higher level in addition, escalation can be provided for the manager at each level if the managers at that level do not take any action, the approval request is added to the escalated managers the following parameter is defined in the system configuration manager to activate the approval mechanism parameter name parameter value description sapm approval workflow accountbasedmanager the parameter is defined to activate the approval mechanism sapm account manager level count 3 (default is 2) passes the approval structure to the multi level structure