Secrets
Overview
Mamori allows you to store binary(file) or text secrets. Access to a secret can then be provided via a direct grant, a role or as an on-demand resource.
To provision access to a secret configure a secret resource and grant it to a user or role.
Secrets are any string or binary data that you would like to store and provision access to. If you need to store SSH or other encryption keys, then click here to go to manage keys
Create Secret
Click Secrets
Click
Set the properties
Field Description Name Your reference for the resource Type Secret, Multi-Secret or File Common fields
Field Description Username Host Protocol Secret type Secret Secret value Expires At Datetime of when this secret expires YYYY-MM-DD HH24:MM:SS Expiry Alert At Datetime of alert prior to expiry Expiry Alert The Alert to trigger Description Your description for the resource Multi-Secret field
Field Description Secrets Select the secrets the multi-secret combines File field
Field Description Secret Select the file (ascii or binary) that contains the secret Click Save
Grant Access
Manual Grant
- Click Secrets
- Find the resource in the grid and click
- Click Manager Assigned Users or Manager Assigned Roles
- For time grants toggled advanced options
- Click on the grantee to add or remove the grant
Setup On-Demand
- Click Secrets
- Find the resource in the grid and click
- Click Manage Request Grants
- Click Add Grant
- Enter the grant information
- Click Save
Accessing Secrets
To access a secret:
- Login to the Mamori portal
- Click Secrets
- Find the resource you want to access
- Click the Connect button
Users can also access secrets via the Web Portal.