Default Templates
When you first use PAM, default templates are available for each account type (PostgreSQL, MySQL, MS SQL, MongoDB, SSH, Kubernetes, AWS IAM, Windows, Windows AD). Each has sensible defaults like 1-hour session duration. If the defaults work for you, you can skip straight to adding accounts.Creating a Custom Template
If you need different rules — say, 4-hour sessions with MFA for production — create a custom template.1
Navigate to Account Templates
Go to Privileged Access Management → Account Templates and click Create Template.
2
Set the basics
3
Configure policies
4
Configure system settings
5
Save
Click Create. The template is now available when adding accounts.
How Templates Work with Accounts
Every account references a template. The account inherits everything from that template — session limits, MFA requirements, Gateway, recording storage, and so on. This means you can:- Apply the same rules to many accounts by having them use the same template
- Change rules for all those accounts at once by editing the template
- Have different accounts in the same folder use different templates (if they need different rules)
Next Steps
With templates set up, you’re ready to add accounts to your folders.PostgreSQL Accounts
Add PostgreSQL database accounts.
SSH Accounts
Add SSH server accounts.