Open-AudIT
https://www.open-audit.org/phpBB3/

Input requested - storing credentials
https://www.open-audit.org/phpBB3/viewtopic.php?f=5&t=2766
Page 1 of 1

Author:  Mark [ Tue May 06, 2008 4:41 pm ]
Post subject:  Input requested - storing credentials

I am currently exploring some new ideas regarding Open-AudIT.
I note that Zenoss stores usernames and passwords of remote systems, in order to log in via SSH.
Does anyone have any suggestions for storing credentials, inside Open-AudIT.
Should they be in the DB, or in a file ?
Should they be put in an encrypted file ?
Should they be encrypted and stored in the DB ?

Bear in mind that we need to extract the password, so as to use it on the command line and in scripts.
So, just md5'ing it, and storing it is no good.
We have to be able to reverse the process.

Hence - anyone have any suggestions on the safest way to accomplish this ?

I am (currently) thinking PKE (Private Key Encrypt) the details, and store them in the OA database. Keep the Private Key somewhere else on the system (would have to be a file). Thoughts and comments greatly appreciated.

TIA,
Mark.

Author:  techtron [ Tue Jun 24, 2008 1:25 am ]
Post subject:  Re: Input requested - storing credentials

sounds reasonable to me.

This would be a nice feature to have

Page 1 of 1 All times are UTC + 10 hours
Powered by phpBB® Forum Software © phpBB Group
https://www.phpbb.com/