DoubleLock Objects and Relationships

You are viewing documentation for a version of Secret Server that is no longer supported. Delinea supports Secret Server for one year after release. This version has passed that window and will no longer receive updates. We strongly recommend upgrading to a supported version. Visit the current version of this page for the latest documentation.
For release dates, end-of-support timelines, and upgrade guidance, see the Secret Server Product Lifecycle page.
You can view the latest version of the Secret Server documentation here.

The doublelock system is a group of interrelated objects (see the following diagram):

  • Doublelock object: A named object that is associated with one or more secrets and one or more users (via password objects). Doublelock objects, or simply doublelocks, point to secrets (what can be accessed) and doublelock password objects (who can access it).
  • Doublelock password object: An encrypted password that is associated with one user. The same doublelock password object, or simply doublelock password, is used for all doublelocks to which a user has access. Once a user is assigned to a doublelock, that user has access to any secret using that doublelock, using a single password. A doublelock password has nothing to do with the user's Secret Server access password.
  • Secret: A secret that has a single doublelock assigned to it. Multiple secrets can have the same doublelock assigned to them.
  • User: A Secret Server user, which can have a single doublelock password assigned to it.

Figure: DoubleLock Object Relationships

1557427607161