Reference Guide
...
Secrets
Password Vault

BIN For Vault Accounts

The system should be able to allow deleted Vault accounts to be listed and restored later.

A new group called Recycle Bin will be created on the Vault screen under Unassigned Accounts. When the user deletes any Vault account, the deleted account will be automatically assigned to this group. Admin account will be displayed on all vault accounts in the Recycled Bin group. Otherwise, the user will display moved users in the Recycle Bin only who have deleted users.

Vault Account Has Been  Delete Account & Recycle Bin Group Screen
Vault Account Has Been Delete Account & Recycle Bin Group Screen

System Configuration Manager Screen
System Configuration Manager Screen

  1. A general parameter will be defined in the System Configuration Manager screen. This parameter will store the number of days after which accounts moved to the Recycle Bin group will be permanently deleted.
    • Parameter Value: Defined_by_user (must be day)
    • There will be a new job and the job will run every day to check the accounts in the Recycle Bin group whose time has expired and will permanently delete them from this group.
  2. If the time has not expired yet for deleted accounts, the user will be able to list and restore them.
  3. If a Vault's group has been deleted before restoring the vault then like the below figure:
Document image


If the user selects Recover Accounts from Recycle Bin Group and wants to change the Vault Account there will be an Account Name field the user can change to the Vault account name.

If the Vault's group has been deleted before the Recover Vault account and the user selected Recover Account the case system will move to the Vault Account from Recycle Bin to Unassigned Accounts.

Document image


When the user finds the account, they want to recover from the Recycle Bin group and clicks on the Properties button, two buttons labeled Restore Account and Permanently Delete will appear on the screen. If the user clicks the "Restore" button, the system will make the relevant account available for use again.

If the Permanently Delete button is clicked, the system will permanently delete the account, and there will be no way to recover.

Permanently Delete Vault Account Option
Permanently Delete Vault Account Option

  • Permanently Delete option should be allowed for the below users;
    • PAM Admin
    • Owner of the Account
    • Password Vault Admin (Vault Admin)