Skip to main content

Example: Audit recorded sessions

Additional requirements

This example assumes that a vault account has been checked out with the secure browser disclosure method, creating a recorded session.

Only screenshots are recorded.

Configure session monitoring privileges
  1. Log in to the front-end as superuser.

  2. Click Manage the system > Security > Access to user profiles > Self-service rules.

  3. Select ALL_SELF_REQUEST.

  4. Add the Manage recorded sessions privilege.

    This will give all users the manage recorded sessions privilege. If you require specific users from a user class to have access to the Session Monitor app, create a new self-service rule.

  5. Click Update.

  6. Click Manage the system > Privileged access > Managed system policies.

  7. Select the managed system policy:

    • ONBOARDED_ACCOUNTS for onboarded accounts

    • VAULT_MSP for team vault accounts

    • SYSTEM_VAULT_MSP for system vault accounts

  8. Click the Authorizers tab.

  9. Specify authorizers in Search recorded sessions and Download recorded sessions and/or View recorded sessions.

  10. Click Update.

Audit recorded sessions
  1. Log in to Bravura Security Fabric as an end user with session monitoring privileges.

  2. Click Session monitor under PRIVILEGED ACCESS TO MANAGED SYSTEMS.

    The Session monitor app opens.

  3. Search for and select the session to view.

  4. Click Request view to request view access to the session.

    Sessions can be in-process, in which case a short delay exists.

  5. Click Request download to submit a request to download the package.

    Searching, viewing, and downloading sessions are separate privileges that can be granted.

Revoke access while viewing an in-progress session
  1. Log in to Bravura Security Fabric asa help desk user with session monitoring and check-in access privileges.s.

    The Session monitor app opens.

  2. Search for and select the vault account session.

  3. Click View .

  4. Click Check in access .

  5. Confirm the check-in.