Secrets Vault Password Rotation As a Service

Password Rotation As a Service

Safeguard privileged local accounts on Azure AD joined and on premises AD joined Windows computers from being compromised and reduce the chances of Pass-the-Hast (PtH) attacks.

  • – Local Administrator Account Password
  • – Alternative Administrator Account Password
  • – Local User Account Password
  • – Auditing
  • – Integrated Remote Desktop and Remote Assistance
  • – MFA for Password Retrieval
  • – Account Logon Name Rotation

Random Logon Name and Random Password

Private Vault extension

Your secrets remain under your control. Authorized administrators must authenticate with their MFA enabled Privileged Access Management account to retrieve the passwords.

  • – Access using MFA only.
  • – Optionally, limit PAM access on dedicated network only.
  • – Audit logs

MFA enabled

Multiple Local Accounts Management extension

Use Alternate Administrator Account for troubleshooting purposes instead of the Built-In Administrator Account. For troubleshooting remote computers that may have dropped from the domain, allow users to logon with a Local User Account.

  • – Administer workstation with non S500 account
  • – Account logon name changes with password change

Low cost yearly subscription

Random Names and Random Passwords extension

Randomly generated logon names. And with complex and long passwords, unique to each computer.

  • – Password Complexity
  • – Password Maximum Age
  • – Password Length
  • – Password Validation
  • – Password History
  • – Strong Encryption

High Security

Audit extension

Know why, when and who retrieved the password of a managed privileged account on an enrolled computer.

  • – By Account Type
  • – By Admin Account
  • – By Computer
  • – By Date Range

Subscription Model

Managed Services extension

Resources are hosted in Microsoft Azure Cloud Platform.

  • – Resources hosted in customer’s Azure subscription
  • – Nominal charges per month

High Security

Secrets Vault Features Password Rotation As a Service

Local Account Password

Complex password is encrypted and stored in the vault.

Offline Notification

Password Expiration Notification is displayed even when computer is offline.

Temporary Elevated Privileges

Users are granted elevated rights for preset time only.

Self Service

Password Reset. Account Unlock. Allow Updating Selected User Attributes.

Advanced Kerberos

Near real-time and in-session update of Kerberos Tickets and Access Token.

Duplicate DNS

Reconcile duplicate DNS Records. Safe Browsing on untrusted networks.

Group Policy Refreshes

Consistent and predictable Group Policy Refreshes on VPN computers.

Universal LDAP Name

Independent of DNS, same name always resolves to closest available DC.

FAQ - Your questions? We got answers!

How is the product licensed ?

The software subscription is based upon count of Azure AD and AD joined computers.

How do I deploy the software on endpoints?

The package is a standard MSI formatted package that can be deployed using software distribution tools like Microsoft SCCM, Microsoft Intune or 3rd party software.

Do I need to setup and manage dedicated server ?

Appropriate resources in your Azure subscription are provisioned for the software to work. There is no need to setup a dedicated virtual server in Azure environment.

Do we need to upgrade the AD schema ?

No schema changes are required in on-premises Microsoft AD or in Microsoft Azure AD.

How do I configure resources in Azure ?

The downloaded package contains Powershell scripts that when run with required privileges in your Azure subscription will create required resources.

Do you provide support for x86 and x64 platforms ?

The software works on x86 and x64 platform of Windows, from Windows 7.0 to Windows 10 including server operating systems from Windows Server 2008 R2 to Windows Server 2019

Secret Vault Editions

get the best software

  • Standard

  • Call for pricing

  • AD Client Computers
  •   Secrets Rotation
  •   Inventory
  •   Security Event Forwarding
  • Compare   Get Now!
  • Professional

  • Call for pricing

  • AD Server Computers
  •   Secrets Rotation
  •   Inventory
  •   Security Event Forwarding
  • Compare   Get Now!
  • Enterprise

  • Call for pricing

  • Azure AD Client Computers
  •   Secrets Rotation
  •   Inventory
  •   Security Event Forwarding
  • Compare   Get Now!

why customers us!