Reference Guide
...
Password Vault
Password Vault Group
to view in a tree structure and to define group based permissions, password vault accounts can be grouped adding accounts to groups can be made mandatory by defining the following parameter in the system configuration manager parameter name parameter value sapm group required true password vault groups are created in the tree structure users with portal rights can view the created groups or create password vault groups themselves the ability to create a password vault group is specific to the user if other user groups are given permission, other users can see it in addition, users can be permitted to create a parent group or only to be able to create a sub group the reason for this distinction is that password vault management can be done entirely by admins, or end users can manage their groups therefore, the following parameter is defined in the system configuration manager parameter name parameter value sapm create parent group right true password vault groups with the same name can be created at different levels in the tree structure for each password vault group to be unique, case sensitivity is defined by the following parameter in the system configuration manager parameter name parameter value sapm allow\ case insensitive group name false the following portal functions are used for password vault group rights password vault groups module visibility the members have the right to see the vault tab account and group related rights should be given individually sapm group manager the members have the right to see the vault tab as well as the right to add new groups account and group related rights should be given individually sapm group system manager the members have the right to see the vault tab as well as the right to add new accounts, groups, or sub groups account and group related rights should be given individually