Import domain users into Vault Professional from Vault Client on a workstation that is not joined to the domain. When Vault Client needs domain access, the Active Directory access dialog prompts for domain credentials. Sign-in works when the Windows account matches a Microsoft Entra ID account.
Use this topic to import a domain user or group from Vault Client on a non-domain workstation. It does not cover these tasks:
Administrators who manage Vault user and group accounts.
From a non-domain workstation, the Active Directory access dialog supports these tasks in User and Group Management:
Sign in to Vault Client as an administrator.
On the menu bar, click Tools > Administration > Global Settings.
In Global Settings, click the Security tab, and then click Manage Access.
In User and Group Management, click the Users tab.
Click Actions > Import Domain User.
In the Active Directory access dialog, enter the domain credentials:
Click Connect.
Vault Client uses the credentials to reach the domain from the workstation.
Enter or validate the user name to import, and then click OK.
The domain user is added to the Vault user list.
Sign in to Vault Client as an administrator.
On the menu bar, click Tools > Administration > Global Settings.
In Global Settings, click the Security tab, and then click Manage Access.
In User and Group Management, click the Groups tab.
Select a Vault Server group, and then click Actions > Import Domain Group.
In the Active Directory access dialog, enter the domain credentials:
Click Connect.
Vault Client uses the credentials to reach the domain from the workstation.
Enter or validate the group name to import, and then click OK.
The Vault Server group is mapped to the domain group.