...
Table of Contents |
---|
How SN does its credentials storage for discovery
...
The bottom line is that the credentials are escrowed in the instance. [1] Though they are stored on disk as 3DES ciphertext, SN holds the key. To make matters worse, this key is hard-coded, and it's the same across all SN customers. So basically we'd be trusting SN with semi-priveleged/privileged access credentials for a rather large number of Yale systems.
...
[1] - http://wiki.service-now.com/index.php?title=Discovery_FAQ
Usage Concerns from 11/3/2011 Meeting (JC, JG, SK, SB, LT, DG, RB, KH, BW)
- snmp
- schedule a standing weekly meeting start the meetings the week after
- morrow (himself) & jeff capuano (himself)