Admin Password Management Module
Password Authority™ Admin Password Management ensures the storage, protection and use of administrative user passwords across the enterprise. Xceedium's Admin Password Management module safeguards the "keys to the IT kingdom" and ensures that critical account credentials remain encrypted at every step in the process. The Password Authority module runs on the Xsuite platform.
Admin Password Management Benefits:
- Vaults and protects admin passwords and other credentials for your most critical systems and network devices
- Automates management of admin passwords across the enterprise
- Keeps important administrative credentials from unprotected or malware-infected end nodes
- Fast deployment and full integration with existing infrastructure
- Enhances administrator productivity with single-sign-on access to admin systems
- Enables detailed password audits and activity reporting
- Increases up-time and operational efficiency by eliminating time-consuming and error-prone manual processes
- Simplifies audits and proves compliance with regulatory initiatives and standards including PCI DSS, FISMA, HIPAA, NERC CIP and more

Password Authority™ Admin Password Management Features:
Centralized, protected storage of admin passwords
- Centralized management, storage, release and audit of admin passwords, supporting improved security
- Sensitive administrative credentials are protected in an encrypted vault
- Operating costs are reduced and time-consuming manual password management procedures are eliminated, boosting productivity and ensuring business continuity in the enterprise
- Password Authority is the only password management solution that employs patented white-box cryptographic techniques to ensure defense-in-depth for end-to-end security of data and keys
Authentication and authorization of administrators
- Password Authority’s pluggable architecture enables multiple authentication and administrative-control approaches
- Role-based entitlements and grouping capabilities ensure segregation of duties, enforcement of least-privilege access, and limited span of control for administrators anywhere within the organization
- Supported technologies include ID and password, LDAP, RSA SecureID, Active Directory, X.509 certificates and Kerberos
Admin account password protection
- Admin account passwords are protected using managed keys that are generated, stored and used by software techniques or FIPS 140-2-validated hardware security modules
- Password Authority is resilient to tampering and reverse-engineering attacks
- Session-level protection between the administrator’s browser and the server is secured using SSL/TLS session protocols
- With single-sign-on capability, admin passwords and other credentials are passed from Xsuite to the target device and are not exposed to users or malware on end nodes
Comprehensive connector library
- Password Authority has the industry’s widest array of connectors, speeds deployment, and provides “out-of-the-box” integration with all types of common IT infrastructure devices, systems and applications
- Customization capabilities allow integration of proprietary and unique systems
Scalability and high availability
- Proven to meet the needs of the largest organizations, Password Authority scales to manage millions of passwords across multi-site heterogeneous IT environments
- Password Authority supports fault tolerance, high availability and disaster-recovery capabilities
Reporting and auditing
- All activity is logged to provide a detailed record of admin password use and administrative activity
- Integration with third-party aggregation, monitoring and notification tools to help detect and prevent fraud, data breaches and misuse of enterprise data
- Admin activity is linked to specific individuals—not a shared account or IP address—so it’s easy to determine who performed specific actions
Ease of use
- A browser interface, supported by role-based workflows, enables both experts and occasional users of Password Authority to manage admin passwords efficiently and confidently
- Flexible policies enable both granular and broad-based password access controls
- All functions also are accessible through a command line interface (CLI) and JAVA API, supporting integration with custom scripts and workflows








