Password Vault Group
to view the vault accounts in a tree structure and to set group based permissions, password vault accounts can be grouped adding accounts to groups can be made mandatory by adding the following parameter in the system configuration manager parameter name parameter value sapm group required true password vault groups are created in a tree structure users with portal rights can view the created groups or create password vault groups themselves the ability to create a password vault group is specific to the user if other user groups are given permission, users belonging to these can also see it in addition, users can be permitted to create a parent group or only a sub group the reason for this distinction is that password vault management can be done entirely by admins, or end users can manage their groups therefore, the following parameter is defined in the system configuration manager parameter name parameter value sapm create parent group right true password vault groups with the same name can be created at different levels in the tree structure for each password vault group to be unique, case sensitivity can be ensured with the following parameter in the system configuration manager parameter name parameter value sapm allow\ case insensitive group name false the following portal functions are used for password vault group rights password vault groups module visibility user group members have the right to see the vault tab account and group related rights should be given individually sapm group manager user group members have the right to see the vault tab as well as the right to add new groups account and group related rights should be given individually sapm group system manager user group members have the right to see the vault tab as well as the right to add new accounts, groups, or sub groups account and group related rights should be given individually