Bastionhost supports O&M applicant review. After O&M Approval is enabled on the Control Policies page, an O&M engineer can log on to the required assets and perform O&M operations only after the administrator approves the O&M application. This topic describes how to review an O&M application as the administrator.

Prerequisites

O&M Approval is enabled on the Control Policies page. For more information, see Create a control policy.

Procedure

  1. Log on to your bastion host. For more information, see Log on to the console of a bastion host.
  2. Review the O&M application on an asset.
    1. In the left-side navigation pane, choose Approval > To-Do List
    2. On the To-Do List page, click O&M Approval
    3. On the O&M Approval tab, find the asset and click Allow or Deny.
      After you click Allow, you can configure the following parameters in the Approval Validity Period dialog box:
      • Time: Specify the period of time within which the submitter of the O&M application can log on to the asset. After you configure this parameter, the submitter can log on to the asset only within the specified period of time.
      • Allowed Logon Attempts: Specify the number of times that the submitter can log on to the asset. If you select Only Once, the submitter can log on to the asset only once.
        Note You can select only Unlimited for Allowed Logon Attempts when you review an O&M application on a database.
  3. Optional:View review records.
    1. In the left-side navigation pane, choose Approval > Handled Items
    2. On the Handled Items page, click O&M Approval
    3. On the O&M Approval tab, view the review records.
    Note To view the review process, choose Asset O&M > O&M Application Records.