Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

If you are using an account that requires a password or private key, these secrets must be kept safe. These secrets should not be stored in an unencrypted file or on a piece of paper under your keyboard! Using a password safe is one good option. For security keys, you can also consider using a key management solution that has more features to manage the full key “lifecycle”. Western has a service from Microsoft, Azure Key Vault, that functions as a hardware security module, or HSM. You can open a ticket with ATUS if you want to learn more. Whatever solution you use, make your secrets are protected using industry standard and current encryption algorithms. Lastly, access to view, store and delete keys should be auditable, and your storage solution should support versioningmanager is a best practice.

Informational Resources

Managed Service Accounts and Group Managed Service Accounts on Windows

...