20.2.2 Credential slots

As mentioned previously, every vault segment contains one or more credential slots. Slots are "drawers" where portlets store and retrieve a user's credentials. Each slot holds one credential and links to a resource in a vault implementation. There are four different types of slots:

A system slot stores system credentials where the actual secret is shared among all users and portlets. It is a shared slot that belongs to an administrative segment.

An administrative slot allows each user to store a secret for an administrator-defined resource (for example, Lotus Notes). It is an unshared slot that belongs to an administrative segment.

A shared slot stores user credentials that are shared among the user's portlets. It is a shared slot that belongs to the user segment.

A portlet private slot stores user credentials that are not shared among portlets. It is an unshared slot that belongs to the user segment.

You will find an example of using private slots in Chapter 21, The Credential Vault.


Redbooks
ibm.com/redbooks