Kaspersky Anti Targeted Attack Platform

Adding a secret

You can add secrets to the application secrets storage.

To add a secret:

  1. Log in to the web interface with the application administrator account.
  2. Select the Settings section, Secrets subsection.
  3. Click Add secret.

    This opens the details area.

  4. Enter a name for the secret.

    The secret name must be unique (must not match the names of other secrets) and must contain up to 256 characters. You can use letters, numerals, spaces, and the following special characters: ! @ # № $ % ^ & ( ) [ ] { } / \ : ; , . - _. The name of the secret must begin and end with any valid character other than a space.

  5. Select the type of secret and configure its settings.

    You can select the following types of secrets:

    • Password only: this type of secret is used if only the password of a user with the relevant permissions is required for the access to device configuration data.
    • User name and password: this type of secret is used if a user name and password are required to receive data from the device.
    • User name and password, root password: this type of secret is used if a user name and password are required to receive data from the device, and the root password or the password for an account that processes requests with administrator privileges is additionally required for a connection with administrator (root) privileges.
    • User name and password, encryption password: this type of secret is used if a user name and password are required to receive data from the device, and an encryption password is additionally required to establish encrypted connections.
    • The Mixed secret type is used for the Remote connection method of device polling. You can specify the following settings for this type of secret:
      • User name to be used for remote connections to devices.

        The user name can contain Latin letters, numerals, periods, as well as special characters: _ and -. The name must begin with a letter and end with any supported character other than a period.

      • User password: if the user password will be used for authentication.

        The password may contain up to 256 ASCII characters.

      • Private key: if the private key of the certificate will be used for authentication.

        You can manually enter the sequence of characters comprising the key or upload the key from the certificate file by clicking Copy from file. You can upload private keys in CRT, PEM, and CER formats. If the private key file is protected by a passphrase, enter the passphrase in the Passphrase field before uploading the key.

        To use the private key of the certificate, you need to copy the public key of this certificate to all devices to which remote connections will be made using the secret. The steps for copying the public key to devices are performed without the involvement of Kaspersky Anti Targeted Attack Platform.

      • Root user password: if an additional password is required for connections to network equipment with administrator (root) privileges. In such cases, access is requested as root or as the user that is configured on network equipment for processing requests with administrator privileges.
  6. Click Save.

See also

Active device polling jobs