Local user configuration settings

The following table provides a brief explanation of the User object configuration settings for creating local user accounts.

Field Description

Login Name

Name the user will use to log in to the administration console. This is a mandatory field.

First Name

User’s first name.

Last Name

User’s last name.

Email

User’s email address. This field is important for email notifications.

Password/Confirm

Password required for the user to log in to the administration console.

NOTE  Local passwords are not stored in clear text.

Create a strong password by using a

  • minimum of 12 characters
  • combination of at least three of the following:
    • one or more lowercase letters
    • one or more uppercase letters
    • one or more numbers
    • one or more special characters

NOTE  You can configure password age notifications for local identities in Venafi Trust Protection Platform. For more information, see User object.

Master Admin

The Master Administrator role grants the user all permissions to all objects in the Trust Protection Platform Administration Console. This role is equivalent to the Local:Admin user.

You must be a Master Administrator to assign this role to other administrators.

WARNING!  Use this role with extreme caution. It gives the user full permissions to every object in the Trust Protection Platform database, including certificates, private keys, and credentials.

WARNING!  You cannot hide objects from a user with the master admin role.

Allow Web SDK Access

Gives the current administrator access to the Web SDK REST APIs. If this option is not selected, the user will not be able to log in through the Web SDK.

You can disable permissions enforcement for all users who authenticate into Trust Protection Platform.