none
PAM users for a pre-existing bastion forest. RRS feed

  • Question

  • we're adding a MIM PAM deployment to an existing bastion forest.  How can we start using these bastions accounts to make PAM requests?  I see how to recreate new accounts, but not use existing ones.  

    Monday, November 4, 2019 8:27 PM

All replies

  • You can do that simply creating the MIM accounts for them and skipping the other steps

    Nosh Mernacaj, Identity Management Specialist

    • Proposed as answer by Nosh Mernacaj Thursday, December 5, 2019 1:16 PM
    Thursday, December 5, 2019 12:50 AM
  • Import existing bastion accounts in PAM using New-PAMUser with -PrivOnly switch.
    Sunday, December 22, 2019 3:24 PM