Using secrets
When setting up secrets, you should:
-
Enable AntiVirus Scan and apply an antivirus profile.
-
Enable DLP Status and apply a DLP profile.
-
Enable SSH Filter and apply an SSH filter profile.
-
Enable Requires Checkout to get exclusive access to a secret for a limited time.
-
Enable Requires Approval to Launch Secret and apply an approval profile.
This ensures that the user sends out a request to approvers to get access to the secret.
-
In the Permission tab, ensure that the permissions are set to the minimum before sharing the secret, e.g., set the permission to View before you share the secret.
See Creating a secret in the latest FortiPAM Administration Guide.