Shared access credential check-out process

In a privileged identity management workflow, you can check out shared access credentials for a managed resource automatically.

You can log on to a managed resource with a shared access credential without knowing the shared access credential.

  1. Choose the supported application for the managed resource. For example: PuTTY.

    See Prerequisite software requirements.

  2. Specify the target managed resource.
  3. When prompted, choose to log on with shared credentials.
  4. When prompted with the AccessAgent reauthentication prompt, specify your IBM® Security Access Manager for Enterprise Single Sign-On password. See Configuring the reauthentication prompt.
  5. If your Wallet does not contain any IBM Security Identity Manager credentials, you are prompted to provide them.
  6. When prompted, choose a credential pool to check out shared access credentials.
    Note: Enter a justification for the credential check-out.

    After you choose the credential pool, IBM Security Privileged Identity Manager checks out the shared access credential from the IBM Security Identity Manager:

    You are logged on to the managed resource with a shared access credential.

  7. If session recording is enabled, when prompted, provide your consent for session recording to begin.
  8. IBM Security Privileged Identity Manager enters the shared access credential into the client application.