If a vault administrator is locked out of a vault, the CSP Vault administrator can Rescue the vault.

Rescuing a vault resets the vault authentication to local authentication. Each vault administrator is sent an email with a new temporary password. They can then log on to the vault using the temporary password and reconfigure the vault.

Important: If two-factor authentication is enforced for the vault, then the user will need to add the one time password after the temporary password.

To rescue a vault

  1. Log into the Cryptographic Security Platform Vault Management webGUI using an account with Security Admin privileges.

  2. Locate the required vault and select Edit.

  3. In the Rescue Vault section, select Rescue.
    You are asked to confirm that you want to continue as rescuing the vault resets authentication to local authentication.

  4. Select Yes, Reset Authentication.

The vault authentication is reset and a confirmation message appears.

An email is sent to vault administrators confirming that the vault has been rescued. The email includes a new temporary password to use to sign in to the vault.