Edit a User Account
Required User Role: Administrator
You can edit a user account configuration, including the user's full name, password, roles, access, and public SSH keys.
Before you begin:
To edit a user account:
-
Log in to Tenable Core, as described in Log In to Tenable Core.
-
In the left navigation bar, click Accounts.
The Accounts page appears.
-
Click the user account you want to edit.
The account page for the user account appears.
-
On the user account page, you can:
Section Action Full Name Type a name for the user account. Roles - To grant the user account administrator access, add wheel to the list of groups.
- To remove administrator access from the user account, remove wheel from the list of groups.
Note: Users should be added to indegy on OT Sensor instances, and indegy and docker on OT and OT-EM instances. Adding the wizard-created user to these groups enables that user access to the OT directory and the ability to check the status of containers without running sudo.
Access - To lock or unlock the user account, select Account Expiration control under Options. You can set an expiration date by selecting Expire account on or Never expire account.
-
To configure the account to remain unlocked indefinitely:
Note: If you do not configure the account to remain unlocked indefinitely, Tenable Core automatically locks the account on the set expiration date.
-
Click Never lock account.
The Account Expiration window appears.
-
Select the Never lock account option.
-
Click Change.
Tenable Core sets the account to remain unlocked indefinitely.
-
- Select an expiration date for the account:
Click Never lock account.
The Account Expiration window appears.
- Select the Lock account on option.
Click the box next to the Lock account on option.
A calendar drop-down box appears.
In the calendar drop-down box, select the date when you want the account to age out.
Click Change.
Tenable Core sets the expiration date for the user account.
Password - To set a new user account password:
Click Set Password.
The Set Password window appears.
In the New Password box, type the password you want to use for the account.
Note: Your password must meet the following minimum requirements:
- Minimum 14 characters long
- Cannot be a palindrome (i.e., a word or phrased spelled the same backward and forward)
Click Set.
Tenable Core updates the user account password.
- To force a user to change their user account password:
Click Force Change.
The Force password change window appears.
Click Reset.
Tenable Core disables the password for the user account. The user must change the password on the next login attempt.
- Configure the user account password to remain active indefinitely:
Note: If you do not configure the password to remain active indefinitely, Tenable Core automatically ages out the password on the set expiration date.
Click Never expire password.
The Password Expiration window appears.
- Select the Never expire password option.
Click Change.
Tenable Core sets the password to remain active indefinitely.
- Select an expiration date for the user account password:
Click Never expire password.
The Password Expiration window appears.
- Select the Require password change every [blank] days option.
In the Require password change every [blank] days section, type the number of days that you want to pass between password expiration dates (for example, type 90 if you want the password to age out every 90 days).
Click Change.
Tenable Core sets the expiration date for the user account password.
Authorized Public SSH Keys - To add a public SSH key to the user account:
In the Authorized Public SSH Keys table, click the icon.
The Add public key window appears.
- In the text box, type or paste your public SSH key.
Click Add key.
Tenable Core adds the SSH key to the user account.
- To remove a public SSH key:
In the Authorized Public SSH Keys table, next to the key you want to remove, click the icon.
Tenable Core removes the SSH key from your account.