- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
In Enterprise Security's credential manager, are the passwords encrypted? If yes, what level of encryption is it?
mrockowitz_splu

Splunk Employee
09-11-2019
06:40 AM
This is just a question if credential manager uses encryption.
- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content

starcher
Influencer
09-11-2019
02:32 PM
http://www.georgestarcher.com/splunk-stored-encrypted-credentials/
Yes, but anyone with a splunk login that has the capability in it's role:list_storage_passwords can dump them. Basically it is good enough to say the credentials are not stored in the clear in configuration files.
- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content

starcher
Influencer
09-11-2019
02:32 PM
As you are Splunk staff, you can hit up the prodsec team if you need more explicit details.
