Secrets Vault use cases (RPA)
There are three major use cases addressed by Secret Vault in RPA.
Retrieve credentials from Password Manager
Scope:
- Passwords used by Automation are managed by established Password Management software
Examples:
- Corporate applications which are integrated with Password Management software (CyberArk AIM, HashiCorp Vault Enterprise, Dell TPAM, ...)
Benefits:
- Ability to leverage already established password management solution
Integration:
- In such cases, the passwords are retrieved in the automation logic through API
See also:
- Automation Technology Classification
Store passwords of legacy applications
Scope:
- Passwords used by Automation and configured in Secrets Vault
Applications:
- Legacy applications without integrated password management functionality
Benefits:
- Ability to securely store sensitive 3rd-party/external passwords
Out of the box:
- By default, WorkFusion uses bundled HashiCorp Vault as a storage backend for such passwords
Integration:
- Alternatively OOB Hashicorp Vault can be replaced by customer's CyberArk AIM instance
- Default safe name:
_WFApp
Store internal SPA passwords
Scope:
- Passwords used by one SPA component or module to connect to another component
Examples:
- Database password used by Control Tower
- OCR password used by Control Tower
Benefits:
- Elimination of clear text passwords from configuration files
Out of the box:
- By default WorkFusion stores such passwords in bundled HashiCorp Vault
Integration:
- Alternatively OOB HashiCorp Vault can be replaced by customer's CyberArk AIM instance
- Default safe name:
_WFInternal
Control Tower secure properties (workfusion)
s3.access-key
s3.secret-key
s3.context.key.map
s3.context.key.map.presign
mturkds.database.url
mturkds.database.username
mturkds.database.password
wf.datastore.database.url
wf.datastore.database.username
wf.datastore.database.password
jwt.secret
jwt.issuer
ldap.server.url
ldap.bind.dn
ldap.bind.password
wf.sso.saml.idp.metadata
wf.sso.saml.idp.file.metadata
wf.sso.saml.sp.metadata
wf.sso.saml.username.attribute
wf.sso.saml.metadata.admin.username
wf.sso.saml.metadata.admin.password
wf.sso.saml.metadata.admin.authorities
tableau.automation.host
tableau.automation.username
tableau.automation.password
tableau.dashboard.host
tableau.dashboard.username
tableau.dashboard.password
tableau.db.url
tableau.db.user
tableau.db.password
wfbi.url
wfbi.username
wfbi.password
automation.application.url
automation.username
automation.password
nexus.url
nexus.user
nexus.password
mail.username
mail.password
workfusion.accessKey
workfusion.secretKey
hazelcast.group.name
hazelcast.group.password
hazelcast.network.tcpip.members
twilio.account.sid
twilio.auth.token
twilio.application.sid