Creation of additional local accounts using SPE centralized console (version 9.x and above)
search cancel

Creation of additional local accounts using SPE centralized console (version 9.x and above)

book

Article ID: 403200

calendar_today

Updated On:

Products

Protection Engine for Cloud Services Protection Engine for NAS

Issue/Introduction

When upgrading SPE to version 9.x or later, and you need to create additional local accounts using SPE Basic Authentication, and you wish to add the new accounts on your SPE Centralized Console.

Environment

SPE 9.x and above

Cause

In the SPE Centralized Console (installed locally on the machine), it is no longer possible to create additional console login accounts (as it was available on older builds 8.2 and below).

If SPE Basic Authentication was selected during installation, only the admin account created at that time can be used to access the console. While it is possible to create additional SPE API accounts for different users, console access remains limited to the original admin account.

Resolution

Recommendation: Use LDAP Authentication for Multi-User Console Access

If there is a requirement to allow multiple administrators to access the SPE console using separate credentials, it is recommended to select LDAP authentication during the installation of SPE.

This enables you to configure an LDAP group whose members can log in to the SPE console using their individual LDAP admin accounts.

Important Note: The SPE centralized console should be installed on only one machine. Installing the console on multiple machines is not supported and may result in configuration conflicts or resets for newly added scanners.