Before You Begin
- 
Obtain CyberArk server information and credentials. - 
Create application with certification authentication. For the procedure to create the application, see CyberArk documentation. 
- 
Provide the Retrieve accounts permission to the application on required safes. 
- 
Use the ApplicationId and certificate to configure CyberArk. 
 
- 
- 
Generate a Certificate Signing Request (CSR) on the CommServe by obtaining a signed certificate from a certificate authority (CA). The certificate must be in the .p12 format. 
Procedure
- 
From the Command Center navigation pane, go to Manage > Security. The Security page appears. 
- 
Click the Credential vault tile. The Manage credentials page appears. 
- 
Click the Vault configuration tab, and then click Add from the upper-right corner of the page. The Add credential vault dialog box appears. 
- 
From the Vendor list, select CyberArk, and then enter the following information: - 
Name: Enter a unique name for the CyberArk credential vault. 
- 
Server URL: Enter the URL for the CyberArk server, including the port number. 
- 
Application ID: Enter the application ID of CyberArk. 
- 
Certificate: Click Upload Certificate, browse the SSL certificate, and then upload it. 
- 
Certificate Password: Enter the password that you specified while creating the certificate. 
- 
Access Nodes: Displays the default node that can access the BeyondTrust vault. You can select other nodes from the list. 
- 
Description: Enter a short description of the CyberArk credential vault. 
 
- 
- 
Click Save.