A CA Access Control vault is where you provide us with the login credentials needed to access your CA Access Control Enterprise Management installation (version 12.6 or later).
Important - CA Access Control Vault is End of Life (EOL)
Please use one of our other supported password vaults. Refer to the CA Access Control Vault EOL Notification for more details.
User Permissions |
A Manager user has permission to configure a CA Access Control Vault. A Unit Manager can be granted this permission. |
How to Use Vaults |
Click here and we'll walk you thru the steps. Add IP addresses to scan, configure scanner appliances, configure vaults and authentication records, set up option profiles and start scanning! |
Vault Credentials |
These credentials may be defined for your CA Access Control vault. |
URL Enter the HTTP or HTTPS URL of the CA Access Control web services, an API interface to your CA Access Control Enterprise Management installation. Please note that the web services URL is different from the web management URL (see the examples to note the difference in the path). The SSL Verify option is only available when the URL entered uses HTTPS. See examplesSee examples Example web services URLs: http://caac126u-32-235.caac125.domain.com:18080/iam/TEWS6/ac https://caac126p-33-166.caac125.domain.com:18443/iam/TEWS6/ac Example web management URLs: http://caac126p-33-166.caac125.domain.com:18080/iam/ac/ http://caac126u-32-235.caac125.domain.com:18080/iam/ac/ |
Username You'll need to provide the name of a user that is granted GetAccountPassword API permissions. Optionally, provide the web user name and password to access Basic Authentication of the CA Access Control web server. |
Authentication Record |
Choose the CA Access Control vault in your authentication record and provide End Point settings. |
End Point Name Identifies a managed system, either a target for local accounts or a domain controller for domain accounts. An End-Point name is a user-defined value within your installation of CA Access Control Enterprise Management. The End-Point name entered in this record must match a pre-defined name exactly. |
End Point Type Represents the method of access to the End-Point system. CA Access Control Enterprise Management uses pre-defined values for various methods and the End-Point type value must match a pre-defined value exactly. Examples: "Windows Agentless" (for Windows accounts) and "SSH Device" (for Unix via SSH). |
End Point Container Stores configuration values. CA Access Control Enterprise Management uses pre-defined values for various methods and the End-Point container value must match a pre-defined value exactly. Examples: "Accounts" (for Windows accounts) and "SSH Accounts" (for Unix via SSH). |
Tell me about SSL certification validationTell me about SSL certification validation
Qualys scanners will verify the SSL certificate of the web server to make sure the certificate is valid and trusted, unless you clear (un-check) the SSL Verify option. You may want to clear this option to skip SSL verification if the certificate was not issued by a well-known certification authority (CA) or if the certificate is self-signed. (Note: The SSL Verify option is only available when the URL entered uses HTTPS.)