Skip to main content
Version: Axidian Privilege 3.0

Resource Operations

Resource Editing

The function allows you to change the following parameters of the resource:

  • Resource Name
  • Description
  • Organizational Unit
  • Policy
  • User Connection
  • Service Connection

To edit a resource, click  in the resource page to the right of the desired parameter.

Removing Connected Entities

It is possible to remove values of the following fields of the resource:

  • Policy;
  • Service Connection.
caution

When a service connection is removed from a resource, all services associated with it are also removed. Removed services cannot be restored, you can only view them via extended search in the Services section.

To remove a Policy or a Service Connection from a resource, click the trash can icon on the resource page to the right of the desired parameter.

Adding User Connection

The function allows you to add one or more user connections available for a given resource.

  1. Click Add on the User connections tab.
  2. Select the type of connection.
  3. Specify the address, connection port and other parameters of user connection.

Adding an Account

The function allows adding local resource accounts to Axidian Privilege, which can be used to provide access to the resource.

  • Click Add account in Resource Profile
  • Enter an Account Name and Description

Password and SSH Key

If a service connection of the SSH type is configured for the resource, then when adding an account, it will be possible to generate or manually add not only a password, but also an SSH key. Also, for such accounts it is possible not to set a password, the setup wizard will display an additional item when setting a password — Not set

Below we will consider an example of adding *nix account. When adding Windows OS and DBMS accounts, the Not set item will be missing when setting up a password, and there will be no page for generating or manually installing an SSH key.

Password Settings

  • Select Not setGenerate random password, or Set password manually
  • Enter a password or continue by selecting Not set or Generate random password

SSH Key Settings

  • Select Not setGenerate new SSH key, or Set SSH key manually
  • Select the SSH key file and enter its password, or continue by selecting Not set or Generate new SSH key
  • Finish adding your account

Checking the Connection to the Resource

The function allows you to check the network availability of the resource, the correctness of the address, name and password of the service account.

  • Click Check connection in the resource page

Synchronization

The function allows you to get the correct resource name, OS or DBMS version, local resource accounts and security groups they belong to. Synchronization is available only for resources with a configured service connection, otherwise the Synchronization function will not be present in the resource. 

  • Click Sync on the resource page
note

Accounts that have been added to Axidian Privilege using the Synchronize function will be marked with a  symbol. To continue working with them, you must set or reset their password. A detailed description of the account verification process is described in the article

Block

The function allows you to suspend all permissions that use the resource.

  • Click Block in the resource profile
note

The resource will be marked with a  symbol. All permissions in which the resource is a contributor will be marked with a symbol.

Remove / Rollback a Resource

Removing a Resource

Before removing a resource, you must remove all accounts that were added from this resource.

caution

When a resource is removed, all services associated with it are also removed. Removed services cannot be restored, you can only view them via extended search in the Services section.

  1. Open the resource page.
  2. Click Remove.

Rolling Back Resources

caution

When restoring a resource, the services associated with it are not restored. You will need to add the services again. You can view the information about removed services via extended search in the Services section.

  1. Click Extended search in the Resources section.
  2. Enter the Resource name or Address (DNS name/IP address) in whole or in part.
  3. Select Removed for the State field and click Search.
  4. Open the resource page and click Rollback.
  5. Enter the reason for the recovery and click Rollback.