PAM Secret Owner and Vault Owner are unable to update secrets when logged into a Secondary site
search cancel

PAM Secret Owner and Vault Owner are unable to update secrets when logged into a Secondary site

book

Article ID: 397432

calendar_today

Updated On:

Products

CA Privileged Access Manager (PAM)

Issue/Introduction

PAM users with a Secrets Management role that of a Vault Owner or Secret Owner cannot update secrets while logged on to secondary site. 

Cause

On PAM secondary site nodes only Secret Viewing capability is enabled for a Secret Owner and Vault Owner, but Managing Secrets (Create, Update and Delete Secrets) capability is not enabled.  On the other hand, on PAM primary site nodes Secret Viewing as well as Managing Secrets capability (Create, Update and Delete Secrets) is enabled for a Secret Owner and Vault Owner.

Resolution

Use PAM Secret Owner and Vault Owner logged on a primary site node for Managing Secrets (Create, Update and Delete Secrets),