Credential Vault
Your credentials are encrypted end-to-end with RSA. The private key never leaves your premises. ConnectMyAssets never stores plaintext passwords.
- ✓RSA end-to-end encryption
- ✓Private key stays on your premises
- ✓Credentials never exposed to users
- ✓Per-device credential scoping
- ✓Automatic rotation support
- ✓Full access audit log
Secrets Belong in a Vault
Every design decision in the Credential Vault puts your security posture first, without sacrificing operational convenience.
RSA Encryption
Credentials are encrypted with RSA-2048. Only your appliance holds the private key.
On-Premise
The private key never leaves your infrastructure. Not even ConnectMyAssets can decrypt it.
Zero Exposure
No human ever sees a password. Credentials are fully encrypted, hidden, and injected on-the-fly at connection time. Operators never see credentials: they are used transparently at the moment of access.
Scoped Access
Each credential set is scoped to specific devices or CIDR ranges. Principle of least privilege.
Rotation Support
Update credentials centrally. All dependent automation and backup tasks update instantly.
Audit Trail
Every credential use is logged: which automation, which device, which user initiated it.
How It Works
Enter once. Encrypted immediately. Used transparently everywhere.
Add Credentials
Enter once in the Vault. Encrypted immediately with your RSA public key.
Assign to Devices
Scope credentials to devices, vendors, or CIDR ranges.
Never Touch Again
Automation, Bastion, and Backup all use Vault credentials transparently.
Frequently Asked Questions
Common questions about credential vault and network security
Secrets Belong in a Vault
Not in a shared spreadsheet. Not on an engineer's laptop.
