Skip to main content

CSV PAM

Description​

The CSV PAM connector imports account data exported from a PAM (Privileged Access Management) tool such as CyberArk, BeyondTrust, or Delinea. The imported records populate the PAM Inventory and are used for reconciliation against accounts discovered by other scanners.

This connector is separate from the general CSV connector because imported records are treated as PAM inventory records rather than discovered accounts.

System Type Classification​

FieldValue
System TypePAM Tool
Default Scan Priority500

Version Support​

OrbisID EditionSupported
CommunityYes
ProYes
EnterpriseYes

CSV PAM scanning is available in all editions.

Supported Sources​

Source TypeDescription
File UploadUpload a CSV file directly to OrbisID via the browser
Network PathSpecify a UNC or local path accessible from the On-Premise Agent host

What OrbisID Imports​

CSV PAM imports create PAM Account records in the PAM Inventory. Map CSV columns to:

OrbisID FieldRequiredDescription
accountNameYesThe privileged account name as stored in the PAM tool
systemNameNoThe managed system name in the PAM tool
platformNoPAM platform/template (e.g., WinDomain, Unix)
safeNameNoSafe, vault, or container name
usernameNoUsername on the target system
addressNoTarget system hostname or IP
pamRiskLevelNoRisk classification from the PAM tool

NHI Subtype Classification​

NHI Subtype is not applicable to this connector. CSV PAM is a distinct ingest pipeline into the PAM Inventory (PamAccount), not into Account — NHI Subtype isn't a modeled concept on PamAccount. The linked Account gets its real NHI classification from the actual target-system connector scan, not the PAM tool import.

Configuration Steps​

  1. Navigate to Systems in the sidebar
  2. Click Add System
  3. Set OS Type to CSV PAM
  4. Fill in the fields:
FieldValue
NameDescriptive name (e.g., cyberark-export)
System TypePAM Tool (auto-selected)
Source TypeFile Upload or Network Path
File Path(Network Path only) Path to the PAM export file
Delimiter,, ;, \t, or |
Has Header RowYes/No
Column MappingsMap CSV columns to PAM Account fields
  1. Upload the CSV file (if File Upload) or verify the network path is accessible
  2. Click Test Connection to validate the file
  3. Click Save

PAM Reconciliation​

After importing PAM data, run a reconciliation to compare the PAM inventory against accounts discovered by other scanners. See PAM Inventory — Reconciliation for details.

Automating PAM Exports

Most PAM tools support scheduled exports. Configure your PAM tool to write an export to a network share and use a scheduled OrbisID scan policy to import it automatically, keeping reconciliation data current.

Troubleshooting​

SymptomLikely CauseResolution
Records imported but do not appear in reconciliationSystem linking not configuredEnsure the systemName or address field matches an OrbisID target system
Duplicate records after re-importAccount name not uniqueVerify the accountName column contains unique values
Test connection fails for network pathShare not accessible from agentCheck that the On-Premise Agent has read access to the share