Secret Permissions
For information technology teams, securely sharing passwords is crucial. Due to the sensitive nature of sharing secure information, Secret Server ensures shared passwords are tracked and guarded via permissions.
Secrets can be shared with groups or individual users. The Sharing tab in a secret's page allows for permissions and access to be configured:
There are four permission levels when sharing secrets with another user or group:
-
List: The user may see a secret in a list, such as a list returned by running a search, but will not be able to view any more details about that secret or edit it.
- View: The user can see all data of the secret, such as username, password, metadata, permissions, auditing, history, and security settings.
- Edit: The user can edit the secret data as well as deactivate secrets. This permission also allows users to move the secret to another folder unless the Inherit Permissions from Folder setting is turned on, in which case the user needs the Owner permission to move the secret.
- Owner: The user may change all of the secret's metadata.