Skip to main content

One Identity Safeguard Credential Type plugin for Ansible

Project description

Safeguard Credential Type plugin for Ansible

What is the Safeguard Credential Type plugin?

The Safeguard Credential Type plugin is a plugin that is installed and used by the AWX web interface to fetch credentials from Safeguard for Privileged Passwords (SPP). Once installed, a new credential type plugin will appear in the drop-own list Resources > Credentials > Create New Credential page. A Safeguard Credential type can be used to fetch a credential from SPP by configuring the following values:

SafeguardCredentialTypePlugin

  • Safeguard Credential API key - The API key is generated by SPP when an A2A registration is created. The API key identifies a specific credential which can be fetched by a third-party application from SPP through the A2A interface.
  • Safeguard Appliance IP or Host name - The IP address or host name of the SPP appliance.
  • Safeguard client certificate file path - The full path to the user authentication certificate (PEM format).
  • Safeguard client key file path - The full path to the user authentication private key (PEM format). NOTE: It is the responsibility of the Ansible administrator to make sure that the private key is stored in a safe location and can only be read by Ansible.
  • Safeguard TLS certificate file path (optional) - The full path to the TLS public certificate that is associated with the SPP appliance. If this certificate path is not provided, the lookup plugin will disable TLS validation which may produce a warning.
  • Safeguard credential type to retrieve (optional) - Specify the credential type to retrieve from SPP. The options are password (default) or privatekey.

To fetch a credential from SPP, an A2A registration must have been created in SPP. For more information about how to create an A2A registration, please see the Safeguard for Privileged Passwords Administration Guide for your version of SPP (https://support.oneidentity.com/technical-documents).

Installation

The installation of the Safeguard Credential Type plugin must be done on the server that is running the Ansible Automation Platform web interface. The plugin is available from the PyPI repository at https://pypi.org/project/safeguardcredentialtype/ and can be install by running the following commands:

> sudo awx-python -m pip install safeguardcredentialtype
> sudo awx-manage setup_managed_credential_types
> sudo automation-controller-service restart

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

safeguardcredentialtype-1.1.195978.tar.gz (7.3 kB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

safeguardcredentialtype-1.1.195978-py3-none-any.whl (8.0 kB view details)

Uploaded Python 3

File details

Details for the file safeguardcredentialtype-1.1.195978.tar.gz.

File metadata

File hashes

Hashes for safeguardcredentialtype-1.1.195978.tar.gz
Algorithm Hash digest
SHA256 70417c91b6c1679ee277e1095807d4a51e9fd7b42682715c84971ef9860336ba
MD5 3264f4969da112d7f3ea11b74238aacc
BLAKE2b-256 f3a1de30128a396b071a6f38d9ee2b2dc018e3f6246bafcc7a539f99723f649d

See more details on using hashes here.

File details

Details for the file safeguardcredentialtype-1.1.195978-py3-none-any.whl.

File metadata

File hashes

Hashes for safeguardcredentialtype-1.1.195978-py3-none-any.whl
Algorithm Hash digest
SHA256 e261ed42fb108987edf9161809eb4ccbd963662beeee18df9eafb4c30c8ccdb5
MD5 d5d1deb71f3dd9a6da40c89c607d1972
BLAKE2b-256 00b277549c41aa1a0a9937f1f03b9cbbf2a40be141cdeea3a1380644511dc739

See more details on using hashes here.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page