Average Ratings 0 Ratings

Total
ease
features
design
support

No User Reviews. Be the first to provide a review:

Write a Review

Average Ratings 0 Ratings

Total
ease
features
design
support

No User Reviews. Be the first to provide a review:

Write a Review

Description

Keywhiz serves as a robust solution for the management and distribution of sensitive information, making it particularly compatible with service-oriented architectures (SOA). This presentation provides a concise overview of its functionalities. Traditional methods often involve placing secrets within configuration files adjacent to the source code, or transferring files to servers through out-of-band methods; both approaches pose significant risks of exposure and complicate tracking efforts. In contrast, Keywhiz enhances the security and ease of secret management by allowing secrets to be centrally stored in a clustered environment, with all data encrypted in a database. Clients securely access their authorized secrets using mutually authenticated TLS (mTLS), ensuring a high level of security during transmission. Administrators can manage Keywhiz through a command-line interface (CLI), facilitating user-friendly operations. To support various workflows, Keywhiz offers automation APIs that utilize mTLS for secure communication. Every organization invariably has services or systems that necessitate the safeguarding of secrets, including items such as TLS certificates, GPG keys, API tokens, and database credentials. While Keywhiz is dependable and actively used in production environments, it is worth noting that occasional updates may disrupt backward compatibility of the API. As such, organizations should remain vigilant about testing changes before deployment.

Description

Address team frustrations related to password management by allowing access to a centralized password pool through a dedicated Slack group. Ensure that all team passwords are securely encrypted and stored in a protected environment, thus reducing the chances of passwords being compromised by existing in multiple insecure locations. We provide a comprehensive documentation of the encryption design and make the complete source code available for public review, enabling thorough code assessments and verification of the zero-knowledge protocol in place. To generate a link for the editor to create a secret, note that this link will expire after 15 minutes. Additionally, to ensure the secret becomes inaccessible, it is essential to manually delete it from the S3 password storage. The setup process for the password storage requires only a single execution, streamlining the implementation. For those looking to obtain a one-time-use link to access secret content, remember that this link also expires in 15 minutes. For detailed instructions on establishing your own password server, visit our GitHub project, and feel free to test commands on your Slack team using our designated test server to familiarize yourself with the functionality. This approach not only enhances security but also fosters a more efficient way to manage sensitive information within teams.

API Access

Has API

API Access

Has API

Screenshots View All

Screenshots View All

Integrations

Slack

Integrations

Slack

Pricing Details

No price information available.
Free Trial
Free Version

Pricing Details

No price information available.
Free Trial
Free Version

Deployment

Web-Based
On-Premises
iPhone App
iPad App
Android App
Windows
Mac
Linux
Chromebook

Deployment

Web-Based
On-Premises
iPhone App
iPad App
Android App
Windows
Mac
Linux
Chromebook

Customer Support

Business Hours
Live Rep (24/7)
Online Support

Customer Support

Business Hours
Live Rep (24/7)
Online Support

Types of Training

Training Docs
Webinars
Live Training (Online)
In Person

Types of Training

Training Docs
Webinars
Live Training (Online)
In Person

Vendor Details

Company Name

Keywhiz

Founded

2015

Website

square.github.io/keywhiz/

Vendor Details

Company Name

Talpor

Founded

2018

Website

scale.talpor.com

Product Features

Privileged Access Management

Application Access Control
Behavioral Analytics
Credential Management
Endpoint Management
For MSPs
Granular Access Controls
Least Privilege
Multifactor Authentication
Password Management
Policy Management
Remote Access Management
Threat Intelligence
User Activity Monitoring

Product Features

Password Management

Credential Management
Multifactor Authentication
Password Generator
Password Reset
Password Synchronization
Single Sign On
User Management

Alternatives

Alternatives

Psono Reviews

Psono

esaqa GmbH
Bravura Safe Reviews

Bravura Safe

Bravura Security
Knox Reviews

Knox

Pinterest