Password Vault: Users

Password Vault enables your team to securely manage and share credentials and website applications. This article guides users on utilizing Password Vault through the user portal.

Migrated Data in Password Vault

Folders and Access Permission post migration will be retained within Password Vault.
Note that this section only applies to users moving from legacy Password Manager to Password Vault. New users can skip to Accessing Password Vault. A comparison of Access Permission level and its respective mapping post migration from Legacy Password Manager to Password Vault is summarized in the table below.

Password Vault Access Permission Legacy Password Manager Access Permission Description
Connect Folder Member Only allows users to auto-login on to the websites without exposing the credentials
View - New Access Permission, unavailable in Legacy Password Manager. Users can view the secret and autofill credentials on website forms.
Edit Item Manager Users can add, edit, delete credentials and websites present in the folders. Users can view the secret and autofill credentials on website forms.
Manage Folder Manager Provides users with complete ownership of the websites/credential. Users can view, edit, share, and delete the websites/credentials and folder.

Accessing Password Vault

After logging in the JumpCloud user portal, users can find the Password Vault in the left navigation.

Overview

This page gives an overview of some of the most important password vault statistics of credentials and websites that are owned and shared by the user  like:

  • Password Health
  • Website Count
  • Credential Count
  • Folder Count
  • Most Connected Websites
  • Expiring and Expired credentials
  • Weak Passwords and Inactive Credentials

The View All button next to each tile takes you to the respective tab in Password Vault where all the resources are filtered. For example, clicking the View All button in the Weak Passwords tile takes you to the Credentials tab where all the weak passwords are filtered and displayed.

Websites

The Websites page lists the URLs and applications that your organization (or you) have configured. You can add new websites and link credentials to these websites.

Adding your websites to password vault is the most secure and efficient way to centralize credentials and control who has access. This section will walk you through adding a new website, from basic setup to enabling advanced security with our Web Shield gateway.

Adding a New Website

The website page allows users to configure and manage a non-SSO website application. The users can add multiple passwords to the same website and share with users and user groups. 

To add a new website:

  1. Open Password Vault.
  2. Go to Websites and click the +Add button.
    A screenshot showing websites tab in password vault
    The Add Website page is displayed.
  3. On this page, enter the following details:
    A screenshot showing the 'Add Website' page in password vault.
    • Name: A clear name to help you identify the site (e.g., "Company LinkedIn Account")
    • URI: The full website address (URL) for access.
    • Tags
    • Folder
    • Notes

For every website, you can perform following actions:

  • Connect: Launch the website and autofill the details using linked credentials.
  • Edit the website details.
  • View the website details.
  • Create a duplicate of the website.
  • View the website managers.
  • Archive the website data.
  • Delete the website.

Additional Actions

You can perform the following additional actions on this page:

  • Search: Search from available credentials.
  • Filter: Filter the websites according to various parameters.
  • Refresh: Click this button to refresh the Websites page.
  • Export: Click this button to export the available websites’ data.

Credentials

This page allows users  to manage and share passwords, keys, and other traditional credentials. There are no limitations on the number of credentials you can add to the Password Vault.

Credentials are categorized into two types:

  • Organizational: By default (this setting can be changed) we assume all credentials that are not personal are organizational and can be managed by administrators who can 'take ownership' of the credentials and manage access. These credentials support folder-based sharing and can be added to Shared folders.
  • Personal: These can’t be accessed by the Organizational Admin and will be deleted once the user leaves the Org. These can be organized into personal folders, but cannot be shared via folders. Personal credentials can only be shared individually.

Based on the access permission level, you can perform the following actions based on the access permission level for each credential.

  • View Secret: allows the user to view the secret of the credential.
  • View the meta data of the credential You can also view secrets after clicking Take Ownership.
  • Click the three dots next to the View Secret button to view activity details, duplicate, archive, or delete the credential.

Adding a Credential

To add a credential from the Credentials tab:

  1. Log in to the JumpCloud User Portal.
  2. Go to Password Vault > Credentials.
    A screenshot showing the 'Credentials' home page.
  3. Click + Add button and enter the following required credential information.
    A screenshot showing 'Credential Details' page in password vault.
    • Credential Type
    • Name
    • Username
    • Email
    • Password 
    • Expiration Date
  4. Turn on the personal credential toggle button to save as a personal credential.
  5. Select the required tags and folder from the dropdown.
  6. Under Link Websites, select from dropdown or add websites to link to this credential.
    A screenshot showing the Link Websites section in password vault.
  7. In Sharing Preferences, click Add to share the credential with other users. Also, assign them appropriate access by selecting the required checkboxes next to their names.
    A screenshot showing sharing preferences for credential in password vault.
  8. Click Save to store the credential.

Credentials can be shared based as per 4 access permission levels: Connect, View Secret, View Detail and Manage.

Access Permissions Description
Manage Provides full ownership of the credential to the end user. The user can edit, share, and delete the credential.
View Detail Allows users to view the metadata of the credentials. This includes ID, created at, modified, etc.
View Secret Allows users to view the credentials.
Connect Allows users to auto-fill without exposing the secret.

Note:

Credentials can be shared either individually or via shared folders.

Additional Actions

You can perform the following additional actions on this page:

  • Search: Search from available credentials.
  • Filter: Filter the credentials according to various parameters.
  • Refresh: Click this button to refresh the Websites page.
  • Export: Click this button to export the available websites’ data.

Importing Credentials

You can bulk import credentials into the Password Vault using a CSV or Excel file.

  1. Go to Credentials.
  2. Click Import.
  3. Upload your file. If you do not have a file ready, click Download Template to use our pre-formatted spreadsheet.
  4. Map your file's columns to the corresponding fields in the Password Vault.

Note:

When mapping the “website URL” field for Password types, the option Create a single website for passwords with the same URL is selected by default. Keep this enabled to automatically group entries.

  1. Select your desired sharing preferences or shared folder. Credential can be shared either individually or via folders. Both actions are not possible.
  2. Click Import to start the process.

Folders

The folders page allows users to group multiple websites and credentials in folders and share it across to both users and user groups.
A screenshot showing the Folders page in password vault
You can create the following types of folders:

  • Personal folders: Used to store personal credentials. These can’t be accessed by the Organizational Admin and will be deleted once the user leaves the Org.
  • Shared folders: Used to share websites and credentials with Users and Groups with four different access permissions:

    Folder Access Permissions in Password Vault

    Folder Access Permission Description
    Connect Only allows users to auto-login on to the websites without exposing the credentials
    View New Access Permission, unavailable in Legacy Password Manager. Users can view the secret and autofill credentials on website forms.
    Edit Users can add, edit, delete credentials and websites present in the folders. Users can view the secret and autofill credentials on website forms.
    Manage Provides users with complete ownership of the websites/credential. Users can view, edit, share, and delete the websites/credentials and folder.

Personal Folders

The credentials saved in these folders are visible to you only. These can’t be accessed by others unless shared individually by the folder owner. When you click a folder, all the credentials in it are displayed along with their details.

Adding a New Personal Folder

To add a new personal folder:

  1. Log in to the JumpCloud User Portal.
  2. Go to Password Vault > Folders.
  3. Click the Add button.
  4. Enter the following details:
    • Folder name and description
    • Folder type: Turn the Toggle on for Personal Folder.
  5. Click Next.
  6. Add Websites/ Credentials: Choose the resources to add this folder.
  7. After selecting all the credentials, click Create Folder.
    A new personal folder is created.

Shared Folders

Use Shared Folders to organize and securely distribute credentials to team members.

Note:
  • Credentials can be shared either individually or via a folder, but not both.
  • A credential or website can be assigned to only one folder at a time.
  • Credentials can be shared either individually or via a folder, but not both.
  • A credential or website can be assigned to only one folder at a time.

Adding a New Shared Folder

To add a new shared folder:

  1. Log in to the JumpCloud User Portal.
  2. Go to Password Vault > Folders.
  3. Click the Add button.
  4. Enter the following details:
    1. Folder name and description
    2. By default, unless personal folders are toggled, the created folder will be a shared folder.
  5. Click Next.
  6. Add Websites/ Credentials: Choose the resources to add the shared folder. Click Next.
  7. Select users/ user groups with whom you want to share the contents of the folder.
    A screenshot showing 'Sharing Preferences' page in Shared Folder.
  8. Once done, click Create Folder.
    A new shared folder is created. Once shared, it appears in the folders tab for all the added users/ users groups.

You can perform the following actions on this page:

  • Search for websites and credentials.
  • Filter by credential types.
  • Refresh: Refresh the folder data.
  • Add: Add existing credentials to the folder.
  • Share: Share the folder content with more users/ user groups.
  • Edit: Edit the folder name and description.
  • Delete: Delete the folders.

Sharing Use-Cases

Sharing Individual Credentials/Websites

There are new sharing capabilities available in Password vault. Users can share individual credentials. You can also share credentials as part of websites as well. You can share credentials and resources through groups. User tags are filtered to easily sort credentials that are part of the folder and vault.

Credentials can be shared based as per 4 access permission levels: Connect, View Secret, View Detail and Manage.

Access Permissions Description
Manage Provides full ownership of the credential to the end user. The user can edit, share, and delete the credential.
View Detail Allows users to view the metadata of the credentials. This includes ID, created at, modified, etc.
View Secret Allows users to view the credentials.
Connect Allows users to auto-fill without exposing the secret.

Websites can be shared as per 3 access permission levels: Manage, View Detail, and Connect.

Access Permissions Description
Manage Provides full ownership of the website allowing the user to edit and delete the website.
View Detail Allows users to view the metadata of the website.
Connect Allows users to launch the website URL.

Sharing Individual Credentials/Websites in Bulk

Admins can efficiently organize and secure access to credentials and websites by managing permissions at the user group level, while maintaining a clear overview of access rights.

To share multiple resources:

  1. Go to the Users tab.
  2. Next to a user group, click the Manage Permissions button.
  3. In the Add Resources popup, select the websites and credentials that you want to share with the user group. Also, select the permissions on the right.
    - Manage: The user can manage, edit, delete the resource.
    - View Detail: View more details such as ID, URI, Name, etc.
    - View Password (Only for Credentials); View the password.
    - Connect: Open the website and log in.
    The selected permissions will determine the level of access that the users have for these resources.
    Managing Permissions for resources in password vault
  4. Once done, click Save.
  5. Now you can see the selected resources and the respective assigned permissions for this user group.

To remove everyone’s access in a user group, click the three dots next to a user group and then click Revoke Access.

Note:

Add both the website and the linked credential to ensure that users in the group can successfully launch the website using that credential.

Back to Top

List IconIn this Article

Still Have Questions?

If you cannot find an answer to your question in our FAQ, you can always contact us.

Submit a Case