Thycotic Software Secret Server
Strengths: Password management for privleged accounts using role-based administration and shared secrets.
Weaknesses: Lacks flexability with network devices.
Verdict: A good product for smaller environments with solid administration capabilities.
SummaryThe Thycotic Secret Server integrates into the exiting environment to manage and control access to critical privileged passwords using a central web-based repository. With this product, administrators can assign permissions and role-based security to others throughout the organization using controlled shared secret passwords. This product uses role-based rules to either allow administrators to just view the passwords via their dashboard or actually change the current password. This is kind of like the difference between a user or a power user in Windows.
We found this tool to be fairly easy to install, but installation was a lengthy process in terms of preparation. The Secret Server application installs with integration into a SQL database and IIS web server, but it does not create its own databases. So there are several preparatory steps to be completed before installation can even begin.
Once installed, the system is quite simple and intuitive to use. The web GUI is easy to navigate, and adding users and accounts from Active Directory is quite simple. Policy and secret configuration was awkward at first, but became easier as we worked with the product.
From a performance standpoint, this is a fairly good product. We found some useful functionality, such as automatically updating passwords on remote accounts when they expire. For added security, passwords are centrally stored using AES 256-bit encryption. This product can directly integrate with many platforms.
An installation guide and user guide are provided with the software in PDF format. Both offer a great amount of detail on installation and confi guration.
Thycotic offers support licenses for all user licensing packages. Support includes all minor updates and major releases. Users with support also receive immediate response to their technical issues from support staff via email, phone and remote assistance.
At a price starting at just under $490 for 10 users, this product can become expensive quickly for larger environments. While it does have an interesting take on privileged password management, we find it to be an average value for the money.