> ## Documentation Index
> Fetch the complete documentation index at: https://docs.levelblue.com/llms.txt
> Use this file to discover all available pages before exploring further.

# Assigning Credentials to Assets

|                       |           |              |             |             |
| --------------------- | --------- | ------------ | ----------- | ----------- |
| **Role Availability** | Read-Only | Investigator | **Analyst** | **Manager** |

USM Anywhere enables you to assign credentials to an asset, to an asset group, or to members of an asset group.

<Note>
  **Note:** Credentials assigned directly to an asset have higher priority than those assigned to an asset group.

  When USM Anywhere runs a scan or executes a system-level action, it uses the credential set assigned directly to the asset, if there is one. If those credentials don't connect or the asset doesn't have an assigned credential set, it uses the credential set assigned to the group where the asset is a member, if that asset is a member of an asset group.
</Note>

## Assigning Credentials to an Asset

In USM Anywhere, you assign a defined credential set to an individual asset in order to use the credentials for authenticated scans, active directory (AD) scans, and BlueApp for Forensics and Response actions on the host. You can assign assets to a credential set in the Credentials page, or you can perform this task from the Assets page.

**To assign a credential on the Credentials page**

1. Go to **Settings > Credentials**.

2. In the line of the credential you want to assign, click the <img src="https://mintcdn.com/levelblue-5324744e/COENAgK6Qeclbd0h/images/usm-anywhere/wrench.svg?fit=max&auto=format&n=COENAgK6Qeclbd0h&q=85&s=af241df8079709a75e46292aac465c23" className="inline" width="20" height="20" data-path="images/usm-anywhere/wrench.svg" /> icon.

   <Frame>
     <img src="https://mintcdn.com/levelblue-5324744e/WKvzNH1Td8kzeWqz/images/usm-anywhere/credentials-usage.webp?fit=max&auto=format&n=WKvzNH1Td8kzeWqz&q=85&s=11d9b4064cdd55ee8b5558d55b4b63a6" alt="" width="1228" height="443" data-path="images/usm-anywhere/credentials-usage.webp" />
   </Frame>

   A dialog box opens.

   <Frame>
     <img src="https://mintcdn.com/levelblue-5324744e/58jWJ18C3bcpNz-l/images/usm-anywhere/credentialsmanageassets.webp?fit=max&auto=format&n=58jWJ18C3bcpNz-l&q=85&s=c6fd4631081a027849a15b56323ebb5d" alt="" width="474" height="360" data-path="images/usm-anywhere/credentialsmanageassets.webp" />
   </Frame>

3. Enter part of the asset name in the field at the bottom of the dialog box

   <Frame>
     <img src="https://mintcdn.com/levelblue-5324744e/WKvzNH1Td8kzeWqz/images/usm-anywhere/credentialsassetselect.webp?fit=max&auto=format&n=WKvzNH1Td8kzeWqz&q=85&s=bb0c19e8d2f8b37396f25a24a67e4b6a" alt="" width="480" height="492" data-path="images/usm-anywhere/credentialsassetselect.webp" />
   </Frame>

   This displays the matching items below the field. You can enter more text to filter the list further.

4. Select the asset to assign to the credential set.

   The credentials overwrite dialog box opens.

   <Frame>
     <img src="https://mintcdn.com/levelblue-5324744e/58jWJ18C3bcpNz-l/images/usm-anywhere/credentialsoverwrite.webp?fit=max&auto=format&n=58jWJ18C3bcpNz-l&q=85&s=5a0ea2b1a861fdcaa7840f5034c2c05a" alt="" width="317" height="198" data-path="images/usm-anywhere/credentialsoverwrite.webp" />
   </Frame>

   <Danger>
     **Warning:** If the asset has already assigned credentials, these credentials are going to be overwritten.
   </Danger>

5. Next to the displayed asset name, click **Test** to execute a test connection to the asset using the credentials.

   If the test detects any warnings, a Permissions Warnings section displays. This section contains a Warning column that lists the individual warnings.

   <Frame>
     <img src="https://mintcdn.com/levelblue-5324744e/58jWJ18C3bcpNz-l/images/usm-anywhere/credentialstesting.webp?fit=max&auto=format&n=58jWJ18C3bcpNz-l&q=85&s=740a96472384640efe38d8b3affa282c" alt="" width="477" height="360" data-path="images/usm-anywhere/credentialstesting.webp" />
   </Frame>

   A permissions error doesn't prevent the scan from running, but it can result in the incomplete information being detailed in the scan results.

6. Click the <img src="https://mintcdn.com/levelblue-5324744e/jo1779yzvGjLisJx/images/usm-anywhere/close-thin.svg?fit=max&auto=format&n=jo1779yzvGjLisJx&q=85&s=9559f77128e397d6b3626597fba1834f" className="inline" width="24" height="24" data-path="images/usm-anywhere/close-thin.svg" /> icon to close the dialog box.

**To assign a credential on the Assets page**

1. Go to **Environment > Assets** and locate the asset.

2. Next to the asset name, click the <img src="https://mintcdn.com/levelblue-5324744e/jo1779yzvGjLisJx/images/usm-anywhere/chevron-down.svg?fit=max&auto=format&n=jo1779yzvGjLisJx&q=85&s=49cdbebf7934499f2df552d32ed9aa74" className="inline" width="20" height="20" data-path="images/usm-anywhere/chevron-down.svg" /> icon and select **Assign Credentials**.

   The assign credentials dialog box opens.

   <Frame>
     <img src="https://mintcdn.com/levelblue-5324744e/WKvzNH1Td8kzeWqz/images/usm-anywhere/credentialsassign1.webp?fit=max&auto=format&n=WKvzNH1Td8kzeWqz&q=85&s=05222ebbc744f1bbc743e3136e9a426c" alt="" width="558" height="221" data-path="images/usm-anywhere/credentialsassign1.webp" />
   </Frame>

3. In the Available Credentials drop-down list, select the credential to use.

   <Frame>
     <img src="https://mintcdn.com/levelblue-5324744e/WKvzNH1Td8kzeWqz/images/usm-anywhere/credentialsassign2.webp?fit=max&auto=format&n=WKvzNH1Td8kzeWqz&q=85&s=eb879155f2002d1a77acca0b991f198b" alt="" width="557" height="281" data-path="images/usm-anywhere/credentialsassign2.webp" />
   </Frame>

   <Note>
     **Note:** If the needed credentials do not already exist, you can select **Add New Credentials** to define them in USM Anywhere. See [Creating Credentials](/documentation/usm-anywhere/user-guide/vulnerability-assessment/creating-credentials) for more information. Use the <img src="https://mintcdn.com/levelblue-5324744e/2zcwC17_yhGqZqy4/images/usm-anywhere/pencil-new.svg?fit=max&auto=format&n=2zcwC17_yhGqZqy4&q=85&s=3fe3fa0ee6ce2b44857bf81d5ab975d9" className="inline" width="24" height="24" data-path="images/usm-anywhere/pencil-new.svg" /> icon to modify any information.
   </Note>

4. (Optional.) Select the **Jump Box** option if you want to authenticate through another asset.

   Select the checkbox and use the field to search for the asset you want to use as an authentication server.

5. Click **Test** to execute a test connection to the asset using the selected credentials.

   If the test detects any warnings, a Permissions Warnings section displays. This section contains a Warning column that lists the individual warnings and a Remediation that provides a suggested solution to resolve each warning. A permissions error doesn't prevent the scan from running, but it can result in the incomplete information being detailed in the scan results.

6. Click **Save**.

## Assigning Credentials to an Asset Group

In USM Anywhere, you assign a defined credential set to an asset group to use the credentials for authenticated scans, AD scans, and BlueApp Forensics and Response actions on members of the group. You can assign asset groups to a credential set in the Credentials page, or you can perform this task from the Asset Groups page.

<Warning>
  **Important:** When you assign a credential to an asset group, USM Anywhere assigns the credential to the asset group instead of assigning it to all of its members. If you want to assign a credential to all members of a group, see Assign Credentials to Group Members.
</Warning>

**To assign a credential on the Credentials page**

1. Go to **Settings > Credentials**.

2. In the line of the credential you want to assign, click the <img src="https://mintcdn.com/levelblue-5324744e/COENAgK6Qeclbd0h/images/usm-anywhere/wrench.svg?fit=max&auto=format&n=COENAgK6Qeclbd0h&q=85&s=af241df8079709a75e46292aac465c23" className="inline" width="20" height="20" data-path="images/usm-anywhere/wrench.svg" /> icon.

   <Frame>
     <img src="https://mintcdn.com/levelblue-5324744e/WKvzNH1Td8kzeWqz/images/usm-anywhere/credentials-usage.webp?fit=max&auto=format&n=WKvzNH1Td8kzeWqz&q=85&s=11d9b4064cdd55ee8b5558d55b4b63a6" alt="" width="1228" height="443" data-path="images/usm-anywhere/credentials-usage.webp" />
   </Frame>

   A dialog box opens.

   <Frame>
     <img src="https://mintcdn.com/levelblue-5324744e/58jWJ18C3bcpNz-l/images/usm-anywhere/credentialsmanageassets.webp?fit=max&auto=format&n=58jWJ18C3bcpNz-l&q=85&s=c6fd4631081a027849a15b56323ebb5d" alt="" width="474" height="360" data-path="images/usm-anywhere/credentialsmanageassets.webp" />
   </Frame>

3. Click the **Asset Groups** tab.

4. At the bottom of the dialog box, enter part of the asset group name in the field.
   This displays the matching items below the field. You can enter more text to filter the list further.

5. Select the asset group to assign to the credential set.

   <Frame>
     <img src="https://mintcdn.com/levelblue-5324744e/WKvzNH1Td8kzeWqz/images/usm-anywhere/credentials-asset-group-select.webp?fit=max&auto=format&n=WKvzNH1Td8kzeWqz&q=85&s=72525eae349f31aad3b7c91271137d23" alt="" width="593" height="400" data-path="images/usm-anywhere/credentials-asset-group-select.webp" />
   </Frame>

   After you select the asset group, the dialog displays the item at the top. If needed, you can enter text for another asset group name and select it to assign multiple asset groups for the credential set.

6. Click the <img src="https://mintcdn.com/levelblue-5324744e/jo1779yzvGjLisJx/images/usm-anywhere/close-thin.svg?fit=max&auto=format&n=jo1779yzvGjLisJx&q=85&s=9559f77128e397d6b3626597fba1834f" className="inline" width="24" height="24" data-path="images/usm-anywhere/close-thin.svg" /> icon to close the dialog box.

**To assign a credential on the Asset Groups page**

1. Go to **Environment > Assets** and locate the asset.

2. Next to the asset name, click the <img src="https://mintcdn.com/levelblue-5324744e/jo1779yzvGjLisJx/images/usm-anywhere/chevron-down.svg?fit=max&auto=format&n=jo1779yzvGjLisJx&q=85&s=49cdbebf7934499f2df552d32ed9aa74" className="inline" width="20" height="20" data-path="images/usm-anywhere/chevron-down.svg" /> icon and select **Assign Credentials**.

   The assign credentials dialog box opens.

   <Frame>
     <img src="https://mintcdn.com/levelblue-5324744e/WKvzNH1Td8kzeWqz/images/usm-anywhere/credentialsgroupassign1.webp?fit=max&auto=format&n=WKvzNH1Td8kzeWqz&q=85&s=cb6c673cf49466fbcf9c5395b0444bde" alt="" width="558" height="368" data-path="images/usm-anywhere/credentialsgroupassign1.webp" />
   </Frame>

3. In the Available Credentials drop-down list, select the credential to use.

<Note>
  **Note:** If the needed credentials do not already exist, you can select **Add New Credentials** to define them in USM Anywhere. See [Creating Credentials](/documentation/usm-anywhere/user-guide/vulnerability-assessment/creating-credentials) to create the new credential set. Use the <img src="https://mintcdn.com/levelblue-5324744e/2zcwC17_yhGqZqy4/images/usm-anywhere/pencil-new.svg?fit=max&auto=format&n=2zcwC17_yhGqZqy4&q=85&s=3fe3fa0ee6ce2b44857bf81d5ab975d9" className="inline" width="24" height="24" data-path="images/usm-anywhere/pencil-new.svg" /> icon to modify any information. Click **Remove Current Credentials From Asset Group** to remove that credential from the asset group.
</Note>

4. Click **Save**.

## Assigning Credentials to Group Members

1. Go to **Environment > Asset Groups**.

2. Click the <img src="https://mintcdn.com/levelblue-5324744e/jo1779yzvGjLisJx/images/usm-anywhere/chevron-down.svg?fit=max&auto=format&n=jo1779yzvGjLisJx&q=85&s=49cdbebf7934499f2df552d32ed9aa74" className="inline" width="20" height="20" data-path="images/usm-anywhere/chevron-down.svg" /> icon next to the asset group name and select **Full Details**.

3. Click **Actions > Assign Credentials to Group Members**.

   The Configure Asset Group Members dialog box opens.

   <Frame>
     <img src="https://mintcdn.com/levelblue-5324744e/WKvzNH1Td8kzeWqz/images/usm-anywhere/configureagmembers.webp?fit=max&auto=format&n=WKvzNH1Td8kzeWqz&q=85&s=7c6de0f634625990519605ca043ccdb0" alt="" width="636" height="434" data-path="images/usm-anywhere/configureagmembers.webp" />
   </Frame>

4. Select the credentials to use or create a new one, see [Creating Credentials](/documentation/usm-anywhere/user-guide/vulnerability-assessment/creating-credentials)

5. Click **Save**.
