- 入门指南
- 最佳实践
- 租户
- 注册表
- Cloud Robots
- Automation Suite 机器人
- 文件夹上下文
- 流程
- 作业
- Apps
- 触发器
- 日志
- 监控
- 索引
- 队列
- 资产
- 连接
- 业务规则
- 存储桶
- MCP 服务器
- Orchestrator 测试
- 资源目录服务
- 集成
- 故障排除
用于安全管理机器人凭据和密码的凭据存储概述。
功能可用性取决于您使用的云产品。有关详细信息,请参阅功能可用性页面。
要确定您的许可证是否包含对外部凭据存储区的访问权限,请参阅“统一许可”页面。内置的Orchestrator 数据库凭据存储适用于所有许可计划。
A credential store is a named location within a secure store, such as CyberArk®, from which you can store and retrieve sensitive data such as Robot credentials and credential assets when needed. Orchestrator supports the use of multiple credential stores at tenant level, and provides built-in support for Azure Key Vault, CyberArk Secrets Manager, HashiCorp Vault, Thycotic Secret Server, Delinea Secret Server, BeyondTrust, AWS Secrets Manager, and Google Secret Manager.
It also provides the necessary architecture to add and manage third party secure stores, if desired.
对于 Automation Cloud、Test Cloud 和 Automation Cloud(专属),凭据页面分为两个视图:存储和代理。
- 借助“存储”页面,您可以创建新的存储,查看现有存储及其属性,以及删除任何当前的凭据存储。请注意,本机Orchestrator 数据库存储是自动创建的,并且将始终显示在此列表顶部,是所有新租户的默认存储。
- “代理”页面允许您为自己的自定义凭据存储创建新代理、查看现有代理的列表、编辑和删除这些代理。
For Automation Cloud Public Sector and Test Cloud Public Sector, the Stores page allows you to create new stores, view existing stores and their properties, and delete any current credential store.
Note that the native Orchestrator Database store is automatically created, will always appear first in this list and be the Default store for all new tenants.
Orchestrator 管理员必须为您的租户启用凭据存储功能。有关详细信息,请参阅此处。
在 Orchestrator 中管理凭据存储需要特定的权限,因为凭据存储包含自动化使用的敏感身份验证数据。要创建、修改或删除凭据存储,用户必须具有设置权限(查看、编辑、创建和删除)。这些权限包含在Orchestrator 管理员角色中。如果从角色中删除“设置”权限,则用户将无法再管理凭据存储。