Account & Group Creator Users
the user who created it can create their own static and dynamic accounts a device realm is required when creating vault accounts, except for certain static configurations each user created account and group is private to the user other user groups need permission to view and manage these accounts and groups to create a private account, the following parameters must be entered on the system config manager screen parameter name parameter value description sapm private option default value yes (default value is no) the parameter that creates the private account sapm private option hide true (default value is false) parameter that removes the "private" field from the vault accounts tab creator user groups must have the following function groups function group description sapm management the main password vault function group sapm account module visibility function group that grants the authority to see the vault account list sapm group module visibility function group that grants the authority to see the vault group list sapm group admin authorizes the user to create an account sapm group manager a uthorizes the user to create a group sapm historical password viewer authorizes the user to see old password values