Secrets management
BeyondTrust Password Safe
3min
this guide explains how to integrate beyondtrust password safe with {{futurex}} hardware security module (hsm) devices an hsm hardware device safeguards and manages digital cryptography keys for strong authentication and provides cryptographic processing functionality the hsm takes over the key management, encryption, and decryption functionality for the stored credentials about beyondtrust beyondtrust password safe is a comprehensive solution that manages and secures privileged passwords, sessions, and accounts across various platforms it offers automated credential management, enabling organizations to automatically discover, onboard, and manage privileged accounts and rotate passwords enhanced session management features enable administrators to monitor and record privileged activities securely, ensuring operational transparency and compliance password safe hsm credential use password safe conforms to the following standards uses only one set of hsm credentials at a time to encrypt any stored credentials always encrypts new or edited credentials using the latest stored set of hsm credentials supports legacy hsm credentials you can still access credentials encrypted with an older set of hsm credentials if you have not manually deleted the hsm credentials used to encrypt them keeps archived hsm credentials in the password safe database until you manually delete them guardian integration the {{guard}} introduces mission critical viability to core cryptographic infrastructure, including centralization of device management elimination of points of failure distribution of transaction loads group specific function blocking user defined grouping systems see the applicable guide in the {{futurex}} portal for configuring hsms with the {{guard}} , including pkcs #11 and cng configuration