Average Ratings 0 Ratings
Average Ratings 0 Ratings
Description
Confidant is an open-source service designed for secret management, enabling secure and user-friendly storage and retrieval of sensitive information, developed by the team at Lyft. It addresses the challenge of authentication by leveraging AWS KMS and IAM, which enables IAM roles to create secure tokens that Confidant can validate. Additionally, Confidant oversees KMS grants for your IAM roles, facilitating the generation of tokens for service-to-service authentication and enabling encrypted communication between services. Secrets are stored in an append-only format within DynamoDB, with each revision of a secret linked to a distinct KMS data key, utilizing Fernet symmetric authenticated encryption for security. Furthermore, Confidant features a web interface built with AngularJS, allowing users to efficiently manage their secrets, associate them with services, and track the history of modifications. This comprehensive tool not only enhances security but also simplifies the management of sensitive data across various applications.
Description
Idira serves as the advanced identity security platform from Palo Alto Networks, tailored for the AI-driven enterprise and aimed at safeguarding every type of identity—human, machine, and agentic—through a singular control plane. It revolutionizes privileged access management by broadening privilege oversight to encompass all identities that can interact with sensitive systems, encompassing data, applications, cloud services, workloads, endpoints, secrets, certificates, SSH keys, and AI agents. By identifying identity risks, it dynamically adjusts privileges and manages the entire lifecycle from initial access to the conclusion of a session. Idira shifts from a static, always-available access approach to one that emphasizes dynamic privilege, just-in-time access, and zero standing privilege, while ensuring continuous verification and policy-driven controls with real-time enforcement based on identity, device, and contextual factors. Moreover, for human identities, it consolidates privileged access, workforce access, endpoint privilege management, and identity governance, providing organizations with the tools needed to mitigate privilege sprawl effectively. This comprehensive approach not only enhances security but also streamlines operational efficiency across the organization.
API Access
Has API
Yes
API Access
Has API
No
Integrations
AWS Amplify
Yes
Amazon DynamoDB
Yes
Amazon Web Services (AWS)
Yes
IAM Cloud
Yes
Integrations
AWS Amplify
No
Amazon DynamoDB
No
Amazon Web Services (AWS)
No
IAM Cloud
No
Pricing Details
No price information available.
Free Trial
No
Free Version
No
Pricing Details
No price information available.
Free Trial
No
Free Version
No
Deployment
Web-Based
Yes
On-Premises
No
iPhone App
No
iPad App
No
Android App
No
Windows
No
Mac
No
Linux
No
Chromebook
No
Deployment
Web-Based
Yes
On-Premises
Yes
iPhone App
No
iPad App
No
Android App
No
Windows
No
Mac
No
Linux
No
Chromebook
No
Customer Support
Business Hours
No
Live Rep (24/7)
No
Online Support
Yes
Customer Support
Business Hours
Yes
Live Rep (24/7)
No
Online Support
Yes
Types of Training
Training Docs
Yes
Webinars
No
Live Training (Online)
No
In Person
No
Types of Training
Training Docs
Yes
Webinars
Yes
Live Training (Online)
Yes
In Person
No
Vendor Details
Company Name
Confidant
Founded
2014
Website
lyft.github.io/confidant/
Vendor Details
Company Name
Idira by Palo Alto Networks
Country
United States
Website
www.paloaltonetworks.com/idira
Product Features
Privileged Access Management
Application Access Control
No
Behavioral Analytics
No
Credential Management
No
Endpoint Management
No
For MSPs
No
Granular Access Controls
No
Least Privilege
No
Multifactor Authentication
No
Password Management
No
Policy Management
No
Remote Access Management
No
Threat Intelligence
No
User Activity Monitoring
No
Product Features
Privileged Access Management
Application Access Control
No
Behavioral Analytics
No
Credential Management
No
Endpoint Management
No
For MSPs
No
Granular Access Controls
No
Least Privilege
No
Multifactor Authentication
No
Password Management
No
Policy Management
No
Remote Access Management
No
Threat Intelligence
No
User Activity Monitoring
No