Skip to main content

One Identity Safeguard Credential Type plugin for Ansible

Project description

Safeguard Credential Type plugin for Ansible

What is the Safeguard Credential Type plugin?

The Safeguard Credential Type plugin is a plugin that is installed and used by the AWX web interface to fetch credentials from Safeguard for Privileged Passwords (SPP). Once installed, a new credential type plugin will appear in the drop-own list Resources > Credentials > Create New Credential page. A Safeguard Credential type can be used to fetch a credential from SPP by configuring the following values:

SafeguardCredentialTypePlugin

  • Safeguard Credential API key - The API key is generated by SPP when an A2A registration is created. The API key identifies a specific credential which can be fetched by a third-party application from SPP through the A2A interface.
  • Safeguard Appliance IP or Host name - The IP address or host name of the SPP appliance.
  • Safeguard client certificate file path - The full path to the user authentication certificate (PEM format).
  • Safeguard client key file path - The full path to the user authentication private key (PEM format). NOTE: It is the responsibility of the Ansible administrator to make sure that the private key is stored in a safe location and can only be read by Ansible.
  • Safeguard CA certificate file path (optional) - Full path to a CA certificate bundle for TLS verification of the SPP appliance. When provided, overrides the system CA store.
  • Validate TLS certificates (optional) - Whether to validate TLS certificates (default: true). Set to false only for testing with self-signed certificates.
  • Safeguard credential type to retrieve (optional) - Specify the credential type to retrieve from SPP. The options are password (default) or privatekey.

To fetch a credential from SPP, an A2A registration must have been created in SPP. For more information about how to create an A2A registration, please see the Safeguard for Privileged Passwords Administration Guide for your version of SPP (https://support.oneidentity.com/technical-documents).

Installation

The installation of the Safeguard Credential Type plugin must be done on the server that is running the Ansible Automation Platform web interface. The plugin can be installed by running the following commands:

> sudo awx-python -m pip install safeguardcredentialtype
> sudo awx-manage setup_managed_credential_types
> sudo automation-controller-service restart

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

safeguardcredentialtype-2.0.0.tar.gz (7.6 kB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

safeguardcredentialtype-2.0.0-py3-none-any.whl (8.4 kB view details)

Uploaded Python 3

File details

Details for the file safeguardcredentialtype-2.0.0.tar.gz.

File metadata

  • Download URL: safeguardcredentialtype-2.0.0.tar.gz
  • Upload date:
  • Size: 7.6 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/6.2.0 CPython/3.12.13

File hashes

Hashes for safeguardcredentialtype-2.0.0.tar.gz
Algorithm Hash digest
SHA256 1deb53bd28f7378f0c992f95e653f9bb25bbe9f70d1eae30fc37d98833729aad
MD5 cbdccbc6b2aa2bbdb29f44c36b5cd80b
BLAKE2b-256 5a0ebc4d02c13871646f18bcb25a3700306b276a0bed11358086ca44ca3e9b76

See more details on using hashes here.

File details

Details for the file safeguardcredentialtype-2.0.0-py3-none-any.whl.

File metadata

File hashes

Hashes for safeguardcredentialtype-2.0.0-py3-none-any.whl
Algorithm Hash digest
SHA256 8353d9a59e49201fac3b369895e65f514aae689b96f781bb94ec3ab011a69fca
MD5 749000df2d7ba83dbab93bc478558b02
BLAKE2b-256 18c4adc5adf222d070f02834e35ed457eafa4aaaac97c14b6559f5c57dd52a49

See more details on using hashes here.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page