This article clarifies the configuration capabilities for session and idle timeouts within CA Privileged Access Manager (PAM), specifically addressing whether these timers can be applied to individual target devices or specific servers.
This is a product inquiry regarding the granularity of timeout configurations for specific migration activities or device-specific requirements.
Privileged Access Manager currently does not support the configuration of timeout values for specific target devices.
All timeout settings are global and apply to every session managed by the appliance.
The following timers are configured globally and cannot be overridden at the device or policy level:
To adjust these values for all devices:
If your business requirements necessitate per-device timeout controls, please submit an enhancement request (Idea) through the Broadcom Community. Product Management reviews these submissions during the release planning cycle.