CyberArk

Conjur Users Plugin

Description

Managing Conjur Users' password



Vendor

This platform is designed for remote account management for the following target:

VendorCyberArk (Professional Service)
ProductSecret Manager Conjur Enterprise
Product Category

DevOps

Product Versions



CyberArk

This platform works with the following CyberArk versions:

CyberArk Solution

Privileged Credentials Management 

CyberArk Product

Central Policy Manager (CPM)

CyberArk Versions10.8
Artifact Version
Out of the Box

 NO

Out of the Box in versions



Support & Certification

Support Level

STANDARD 

Developed byCyberArk 
Certification Level

 COMMUNITY

Connection MethodsHTTP/HTTPS 



Actions

The following table lists the supported management actions for this platform:

Action

Supported

Permissions

Verify

YES 


Change

YES 


Reconcile

 NO


Delete

 NO




Linked Accounts

The following linked accounts are in use by the plugin.

Logon Account

Supported

 NO

Required

 NO 

Platforms


Permissions


Reconcile Account

Supported

 NO

Required

 NO

Platforms


Permissions

ExtraPass2 Account

Supported

 NO

Required

NO 

Platforms


Permissions



Prerequisites

This plugin does not require any additional prerequisites.



Installation

Import Platform

Do the following to import the platform:

Step

How To

Add missing file categories

Add the following file categories, if they do not already exist:

File Category Name

Type

Valid Value

Required




No
Import the platform

See Add new platform topic in the Online Help Center or in the Privileged Access Security Implementation Guide.



Configuration

Platform Settings

Specify the following parameters at the platform level:

Parameter Name

Description

Acceptable Values

Default Value

UseSSL

Yes: Use HTTPS

IgnoreUntrustedCertificate: Use HTTPS

but ignore untrusted/self-signed SSL

certificates.

No: Use HTTP

Yes/No
Debug


Yes: Will create verbose debug logs

No: Will not create verbose debug logs

Yes/No






Account Settings

Account Mandatory Parameters

Specify the following parameters on the account:

Parameter Name

Description

Acceptable Values

AddressThe virtual IP or FQDN for Conjur Enterprise Load balancer or LeaderString
AWSAccessKeyID

AWSAccessKeyID is a required property, but any value can be used (e.g. ‘na’)

String



Account Optional Parameters

Specify the following parameters on the account:

Parameter Name

Description

Acceptable Values

Default Value

UsernameThe ID of the Conjur host without "host/" prefix ( The platform will add it for you)