Secrets

Prev Next

This document provides information about the Secrets report screen, which displays information about the managed secrets and makes it possible to view and filter the available secrets.

Path to access

  1. In Segura, in the navigation bar, hover over the Product Menu and select DevOps Secret Manager.
  2. From the side menu, select Secrets Management > Secrets.

Actions menu

Item Type Description
Add Button Directs to the Add secret screen to register a new secret.
Actions Dropdown menu Displays the Print Report, Export CSV, and Schedule Report options.

Search fields

Item Type Description
Name Text field Filters the secrets by their name.
Engine Dropdown menu Filters secrets by engine.
Environment Dropdown menu Filters the secrets by environment.
Status Dropdown menu Filters secrets by their activation state
Error Dropdown menu Filters secrets by errors.
Identity Text field Filters the secrets by the associated identity.
Version Text field Filters secrets by version.
Expiration date Date picker Filters the secrets by the expiration period.

Report fields

  • ID**:** identification code of the secret in the system.
  • Name.
  • Engine
  • Environment.
  • Tags: tags associated with secret.
  • Status.
  • Error.
  • Identity.
  • Version.
  • Expiration date: date on which the secret will expire.
  • Actions
    1. Edit: directs to the Secret setup screen.
    2. Rotate the access keys: performs the rotation of the secret access keys.
    3. History: directs to the Secret versionscreen.
    4. Details: directs to the Secret screen.
Info

By default, the report displays 30 records per screen. To go to the next screen, click the forward buttons at the end of the report.

Add secret screen

This section provides information about the Add secret form.

Settings tab

This section provides information about the basic secret settings.

Item Type Required Description
Name Text field Yes Identifier name of the secret.
Identity. Text field Yes Identity associated with the secret.
Engine* Dropdown menu Yes Engine to be used by secret. The default option is Generic.
Environment Dropdown menu No Environment to which the secret will be associated.
Status Toggle button Yes Enables or disables secret status.
Expiration date Date field No Sets the date and time when the secret will expire. Composed of separate fields for "Day" and "Time".
Tags Text field No Allows you to add tags to categorize the secret.
Description Text field No Additional information about secret.
Info

When it expires, the secret information will be deleted. Some information, such as access keys, cannot be retrieved.

Cloud credentials tab

This section allows you to add credentials for cloud services.

Item Type Description
Add Button Allows you to add new cloud credentials.
Cloud credentials table Table Displays the registered cloud credentials with columns for: Code, Account, User, Key, Access Key ID and Access Key Secret.

Credentials Tab

This section allows you to add default credentials.

Item Type Description
Add Button Allows you to add new credentials.
Credentials table Table Displays the registered credentials with columns for: Code, Credential, Hostname, Username, Password, IP, Additional information and Additional fields for authentication.

Ephemeral credentials tab

This section allows you to add credentials with limited lifetime.

Item Type Description
Add Button Allows you to add new credentials.
Table of ephemeral credentials Table Displays the registered ephemeral credentials with columns for: Code, Credential, Hostname, Username, Password and Additional Information.

Key/Value tab

This section allows you to add key/value pairs to secret.

Item Type Description
Add Button Allows you to add new key/value pairs.
Key/Value table Table Displays the registered key/value pairs with columns for: Key and Value.

Self-renewal tab

This section allows you to configure automatic credential renewal.

Item Type Description
Cloud Credentials - Active Toggle button Enables or disables cloud credential auto-renewal.
Minutes between each renewal Quantity of element Sets the interval in minutes for renewing cloud credentials. Default value: 30
Ephemeral Credentials - Active Toggle button Enables or disables the auto-renewal of ephemeral credentials.
Minutes between each renewal Quantity of element Sets the interval in minutes for renewal of ephemeral credentials. Default value: 30
Credentials - Active Toggle button Enables or disables auto-renewal of default credentials.
Minutes between each renewal Quantity of element Sets the interval in minutes for renewal of ephemeral credentials. Default value: 30

Review Tab

This tab allows you to review all the information configured in the previous tabs before saving the secret.

Secret Version

This section provides information about the Secret Versionreport screen, which displays information about the versions of secrets stored in the system and makes it possible to view details of each version.

General Information Report Fields

Item Type Description
Name Text field Displays the identifier name of the secret.
Engine Text field Shows the type of engine associated with the secret. For example: Generic.
Identity Text field Displays the unique identifier of the secret in the system.

Version report fields

This section presents a table with the version history of the selected secret.

Item Type Description
Version Text field Version number of the secret.
Date Text field Date and time the version was created, in the format DD/MM/YYYY HH:MM:SS.
Actions Button Displays options for interacting with the version. The options are Details or Compare.
Info

By default, the report displays secret versions in chronological order, with the latest version at the top. The version number increases with each update performed on the secret.

Version compare screen

This document provides information on the Version Comparison screen, which allows users to compare different versions of an item in the senhasegura system.

Screen Fields

Item Type Required Description
From: Dropdown menu Yes Field to select the initial version that will be compared. You can enter the version number or select it from the drop-down menu.
To Dropdown menu Yes Field to select the initial version that will be compared. You can enter the version number or select it from the drop-down menu.
Change button Button No Arrows icon in opposite directions located between the From and Tofields. Allows you to invert the selected versions.
Compare Button No Performs the comparison between the selected versions in the From and Tofields.

Available actions

Item Type Description
Compare Button By clicking this button, Segura will display the differences between the two selected versions.
Info

Fields marked with asterisk (*) are required.

Secret details screen

This document provides information on the Secret Details screen, which displays detailed information about secrets managed in senhasegura.

Informations tab

Item Type Description
Name Text field Identifier name of the secret.
Identity Text field Displays the unique identifier of the secret in the system.
Status Text field Current status of the secret.
Description Text field Detailed description of the secret.
Environment Text field Environment to which secret is associated.
Engine Text field Type of mechanism used by secret.
Expiration date Text field Date on which the secret will expire.
Version Text field Version number of the secret.
Tags Text field Labels associated with the secret to facilitate organization and search.

Cloud credentials tab

Item Type Description
ID Text field Credential identification code.
Account Text field Account associated with the credential in the cloud.
Cloud Text field Cloud provider used.
User Text field Credential username.
Identifier Text field Unique credential identifier.
Actions Dropdown menu Actions options available for each credential. The option available for Cloud Credentials is the credential details option. Clicking the button will take you to the credential details screen.

Credentials Tab

Item Type Description
ID Text field Credential identification code.
Username Text field Name of the user associated with the credential.
Expiration date Text field Date on which the credential will expire.
Device Text field Device associated with the credential.
Actions Dropdown menu Actions options available for each credential. The available options are View Credential and Credential Details. In the first you will be directed to the credential preview screen, in the second to the credential details screen.

Ephemeral credentials tab

Item Type Description
ID Text field Credential identification code.
Username Text field Name of the user associated with the credential.
Expiration date Text field Date on which the credential will expire.
Device Text field Device associated with the credential.
Actions Dropdown menu Actions options available for each credential.

Key/Value tab

Item Type Description
Key Text field Key name of the key-value pair.
Value Protected field Value associated with the key, hidden by default.
Visibility icon Button Allows to show/hide the key value.

Self-renewal tab

Item Type Description
Cloud credentials tab Section Settings for auto-renewal of cloud credentials.
Status Text field Current state of auto-renewal (Active/Inactive).
Renew every Text field Renewal period configured.
Ephemeral credentials tab Section Settings for auto-renewal of ephemeral credentials.
Status Text field Current state of self-renewal.
Renew every Text field Renewal period configured.
Credentials Section Settings for auto-renewal of default credentials.
Status Text field Current state of self-renewal.
Renew every Text field Renewal period configured.

The values displayed on this screen are for viewing only. To edit the secret's data, it is necessary to access the editing options available in each section.

Applications

This document provides information about the Applications report screen, which displays information about the registered applications and makes it possible to manage them.

Path to access

  1. In Segura, in the navigation bar, hover over the Product Menu and select DevOps Secret Manager.
  2. On the side menu, select Application Management > Applications.

Actions menu

Item Type Description
Add Button Directs to the Add application screen In order to register a new application.
Actions Dropdown menu Displays the Print Report, Export CSV, and Schedule Report options.

Search fields

Item Type Description
ID Text field Filters authorizations by their identification code within the system.
Name Text field Filters apps by name.
System Text field Filters applications by the associated system.
Environment Text field Filters applications through the environment.
Business Line Dropdown menu Filters applications by line of business. The default option is All.
Application type Dropdown menu Filters applications by name. The default option is All.
Tags Text field Filters applications by their associated tags.
Authentication method Dropdown menu Filters applications by the authentication method used. The default option is All.
Status Dropdown menu Filters applications by their activation state. The option shown is Active.
Created at Date picker Filters authorizations by the period in which they were created.

Report fields

  • ID.
  • Name.
  • Description: details about the application.
  • System.
  • Environment.
  • Business Line
  • Application type
  • Tags
  • Status.
  • Authentication method
  • Created at.
  • Actions:
    1. Authorizations: directs to the Authorizations by application screen.
    2. Edit: directs to the Authorization screen of the application in edit mode.
    3. View: directs to the Application Setup screen in read mode.
Info

The table displays the applications registered in the system with their corresponding details. Each row represents a different application.

Add Application screen

This screen allows you to add applications to DevOps Secret Manager (DSM).

Settings tab

This tab allows you to configure the basic application information.

Item Type Required Description
Application name Text field Yes Application Identifier name.
Authentication method Dropdown menu Yes Sets the authentication method for the application. The option presented is OAuth 2.0.
Line of business Dropdown menu No Defines which line of business the application belongs to.
Application type Dropdown menu No Sets the application category.
Status Toggle button Yes Enables or disables the application status.
Tags Text field No Adds tags for easy categorization and search of the app.
Description Text field No General information about the application.
Amazon AWS ARNs Table No Lists the Amazon Resource Names associated with the application.
Add Button No Allows you to add a new ARN to the table.

Automatic provisioning tab

This tab allows you to configure automatic secret provisioning options.

Item Type Required Description
Automatic provisioning of secrets Toggle button No Enables or disables automatic secret provisioning.
Cloud dynamic provisioning profile Table No Lists the configured cloud provisioning profiles.
Credential dynamic provisioning profile Table No Lists the configured credential provisioning profiles.
Add (credential profile) Button No Allows you to add a new credential provisioning profile.