Security / Robot managing assets/credentials

We also splitted these passwords.

So we have an asset in orchestrator (credential) with username/password of that application.

When setting the password, 2 people are needed.

When setting the asset, again these 2 people are needed.

Each 90 days there is an action to change the password of the application and changing the asset. (again with 2 people)

What we are planning to do is to make a robot for applications. A robot can change it’s own password for an application AND change the asset in the orchestrator. But then nobody knows the password anymore. If there is something wrong with the robot between setting the new password in the application and changing the asset, you have to reset the password manualy.

4 Likes