Passwordstate 密碼管理軟體
基於 Web 的密碼管理解決方案,讓您安全管理個人和團隊的密碼
隨著資訊系統的發展,員工越來越難以記住使用各項系統的密碼。這導致了重複使用相同的密碼,或其他錯誤的密碼管理方法。如果這些情況不加以管理,可能會對系統訪問數據與業務操作造成影響。
由 Click Studios 公司開發的 Passwordstate,提供強大的功能,讓密碼可以安全地儲存和共享在團隊中。其使用256位AES數據加密、代碼混淆技術,並對基於 SSL授權的訪問提供安全地保護,也就是未經授權的訪問是不可能的。除了確保訪問管道的安全性,Passwordstate 提供用戶管理的功能,可以追蹤個人密碼、並列出團隊的共用密碼,並可以對密碼進行歷史分析和比較,並能夠輸入和輸出相關數據。因此無論是個人或是企業都相當適用。
Auditing & Compliance Reporting
Over 120 different events within Passwordstate are audited, with each of them being reportable by different roles within Passwordstate. This level of auditing facilitates compliance to various regulatory acts such as Sox & PCI DDS. Read More.
Remote Sessions to Hosts
Launch remote sessions without needing to type in login credentials - RDP, SSH, Telnet and VNC session. Flexible credentials management, with all remote sessions being audited. Read More.
Discover Accounts and Resources
Discover Local Admin accounts on your network, and Windows Services, IIS Application Pools and Scheduled Tasks using domain accounts as their identity. Also discover Windows Hosts on your network, and automatically import them into Passwordstate.
Application Programming Interface (API)
Integrate the Passwordstate API into your own applications, eliminating hard-coded passwords. Write your own scripts or code to retrieve, update and add passwords to the system, maintaining standard auditing & real-time notifications through-out the process.
Active Directory Integration
Import users & security groups from Windows Active Directory, authenticate and apply permissions using these credentials, and keep account status and security group memberships synchronized.
High Availability
During a disaster, the last thing you need is to be searching for your passwords to recover systems. With our High Availability module, you can guarantee you can always access Passwordstate when needed. Read More.
Secure Code & Data
To protect the privacy of sensitive data, all passwords are stored within the database using 256 Bit AES Encryption, and sensitive code is protected by the use of precompiled ASP.NET pages and obfuscated .NET Assemblies. Read More.
Role-Based Access Control
Passwordstate is built upon the concept of role-based access. This includes access to password information, administering the Passwordstate application, and various features within Passwordstate. Read More.
Reset Passwords Everywhere
Reset passwords just about everywhere - AD, Windows Servers/Desktops, Linux, Routers/Switches, MS SQL, MySQL, Oracle, Windows Services, IIS Application Pools, Scheduled Tasks, COM+ Components, Out-Of-Band Management Cards, F5 BIG-IP and VMWare ESX. Reset when required, or configure a set-and-forget schedule.Read More.
Browser Extension for Web Site Logins
Browser Extensions for Chrome, Firefox, Edge, Internet Explorer and Safari coming soon. Form fill login credentials when visiting web sites. All passwords stored securely within Passwordstate.
Two-Factor Authentication
In addition to Active Directory Authentication, you can also choose a two-factor authentication option using EMC's RSA SecurID, Duo Push Authentication, YubiKey Authentication, One-Time Password using TOTP or HOTP, Google Authenticator or Emailing a Temporary Pin Code. A total of 24 different authentication options are available when authenticating to Passwordstate, or accessing Password Lists. Read More.
Real-Time Notifications
Passwordstate has 54 different built-in email notifications. These can be customized or disabled by the Security Administrators of Passwordstate, and each user can specify which email notifications they would like to receive. Read More.
Passwordstate System Requirements
Please use the detail below as a reference to the various System Requirements for Passwordstate. Updates, including patches, bug fixes and new versions of the software listed below, must be obtained from the respective software vendor.
Click Studios strongly encourages all customers to establish and follow a regular software patch management process.
Web Server Requirements
- Microsoft Windows Server 2016 & IIS 10.0
- Microsoft Windows Server 2019 & IIS 10.0
- Microsoft Windows Server 2022 & IIS 10.0
- Windows 11 & IIS 10.0
- Microsoft .NET framework 4.7.2 or above
- PowerShell 5.0 or above
- Microsoft SQL Server 2012 Native Client
- OpenJDK 17 or above (if using Browser based Remote Session Launcher)
Database Requirements
- Microsoft SQL Server 2016 Express and Above
- Microsoft SQL Server 2017 Express and Above
- Microsoft SQL Server 2019 Express and Above
- Microsoft SQL Server 2022 Express and Above
Hardware Requirements
- Preferably 2 x CPU (virtualized)
- 4 GB RAM (more RAM required dependant on higher concurrent user access, and SQL Server co-hosting)
- 1 GB of disk space for web install
- 100 MB of disk space for database (smaller initially), plus room for SQL backups
- Allow for 10 MB of disk space per user per year
- Passwordstate will operate in a virtualised environment (Hyper-V or VMWare)
Example Storage Requirements
- 280,000 Passwords records uses 300 MB
- 19,000 Password Lists records + 1,000 Folders uses 20 MB
- 3,500,000 Auditing Events uses 3.5 GB
- 1,000,000 Password History records uses 1 GB
The hardware requirements above are when hosting the SQL Server and Web Server on the same Host. You may be able to decrease the CPU and Memory on the web server if you split the roles, but we would recommend monitoring memory and CPU performance as concurrent usage increases.
Browser Requirements
- Current supported versions of Chrome, Edge & Firefox
Mobile Client Requirements
- iOS
- Android
Password Reset, Discovery and Validation Requirements
Password resets, account discovery and password validation all rely on PowerShell for execution, both on the Passwordstate Web Server, and each of the servers/workstations you wish to perform resets, etc, on.