What is Imprivata Privileged Access Management? #
Imprivata Privileged Access Management is an agentless solution that provides a secured database to manage privileged accounts and secrets, establishes secure sessions for users through a standard web browser and automates the execution of jobs or tasks without disclosing or sharing access.
Why Should You Use the Imprivata Privileged Access Management Connector? #
The Imprivata Privileged Access Management connector provides visibility into the user in your environment. You can use this visibility to:
-
ensure user are managed per your security policies
-
derive relationships between assets, users, applications, and data
How Does This Connector Work? #
Meridian executes read-only requests to the Imprivata Privileged Access Management REST API and ingests only meta-data about Imprivata Privileged Access Management users. Meridian does not retrieve any data stored on your assets.
Configuring the Connector in Meridian #
| Field | Description | Example |
|---|---|---|
| URL | The URL for the Imprivata Privileged Access Management API. The URL format is https://xtam.<company>.com:<port>/xtam | https://xtam.lucidum.com:443/xtam/ |
| CAS | The URL for the XTAM federated sign-in. The URL format is https://xtam.<company>.com:<port>/cas/ | https://xtam.lucidum.com:443/cas |
| API Token | API Token for an Imprivata Privileged Access Management account with read access to API data. To generate a new token: Click the Generate Token button and populate the fields (leave Expiration empty to generate a token that will not expire). When finished, click the Generate button to generate the token. Once generated, the actual token will appear in the read-only Token field. | ************ |
Source Documentation #
Creating a User #
For details on creating a local account for Meridian to use to ingest data, see:
Generating an API Token #
For details on generating an API token for the Meridian local account, see:
https://help.xtontech.com/content/developers/token-authentication.htm?Highlight=api%20token
Required Permissions #
The user account should have view-only access to records in Imprivata Privileged Access Management.
For example, the Global Role “Auditor” provides view-only access to the Audit Log (record and system), Session History (record and system), Job History (record and system) as well as Administration Reports.
API Documentation #
API version V2.3
https://www.xtontech.com/xtam-api-docs/index.html#/User/get_6