Reference Guide
...
Shared Accounts Password Manag...
Split Password Feature
3 min
in order to secure the two part approval process, tan sapm account password can be split in two and each part retrieved by different users after placing the users in different user groups, follow these steps navigate to device management > device groups open the device group realms tab create the device group realm between the user groups and the device group containing the target device navigate to sapm management > sapm management search for the accounts click the sapm account options button select permissions to open the permissions pop up window define the read only first part permission type for the user group that will receive the first part of the password define the read only second part permission type for the user group that will receive the second part of the password close the permissions pop up window navigate to policy control > portal functions create a portal realm with the sapm management function group for both user groups after completing these steps, the users log in and retrieve their parts of the password from the sapm management section, just like with a normal password retrieval they can log in to the target system using the sapm username and the password combined in the correct order if one or two level approval applies to the user, the user will receive the password part via email, once the approval process is completed