
External reviews
46 reviews
from
and
External reviews are not included in the AWS star rating for the product.
Using Vault to secure Terraform code
What do you like best about the product?
Vault is lightweight and easily installable.
The possibility of high availability.
Terraform integration with own resources.
Simple Web UI
API driven access/manage, could integrate with other software.
The possibility of high availability.
Terraform integration with own resources.
Simple Web UI
API driven access/manage, could integrate with other software.
What do you dislike about the product?
The high learning curve.
Maybe the lack of an officicial Ansible Module (not only a Lookup Plugin)
Maybe the lack of an officicial Ansible Module (not only a Lookup Plugin)
What problems is the product solving and how is that benefiting you?
Vault has solved the problem of sharing passwords and AWS credentials. Now the code of Terraform could be safe in the Git repository. A vault it's easily up with Ansible.
Recommendations to others considering the product:
Test Vault in Dev mode (in a Docker instance for example) and switch into production using it for every secret you have in code. Vault must your new front door, now.
Good experience but some keys features missing
What do you like best about the product?
Secret as a Service (Dynamic secrets) and flexibility.
Good integration with multiple authentication provider. Good varities on Dynamic secrets and can be used with Encryption as a Service.
The installation and configuration is very easy. We can up and running a cluster in 1 day.
The rolling update is easy and we can quickly add more cluster nodes if needed.
Good integration with multiple authentication provider. Good varities on Dynamic secrets and can be used with Encryption as a Service.
The installation and configuration is very easy. We can up and running a cluster in 1 day.
The rolling update is easy and we can quickly add more cluster nodes if needed.
What do you dislike about the product?
Vault integration with project is leak.
We have one side the Vault agent, and other side the Consul template or envconsul. For example, envconsul didn't work with Vault agent auto-auth token.
It's hard sometime to use Vault because projects don't want (or haven't budget for) to develop Vault code lines integration.
The Vault UI is very basic. Some actions can't be done with the UI. Add more UI features for administration facilities.
Dynamic secrets is great but some time legacy application couldn't not use it. Should be great to have static secret with specific hook trigger to rotate password.
We have one side the Vault agent, and other side the Consul template or envconsul. For example, envconsul didn't work with Vault agent auto-auth token.
It's hard sometime to use Vault because projects don't want (or haven't budget for) to develop Vault code lines integration.
The Vault UI is very basic. Some actions can't be done with the UI. Add more UI features for administration facilities.
Dynamic secrets is great but some time legacy application couldn't not use it. Should be great to have static secret with specific hook trigger to rotate password.
What problems is the product solving and how is that benefiting you?
Security needs in Cloud environment.
Projects migration from intranet to cloud to solve security issue with very sensitive data.
One tool for any environment (multi-cloud, intranet, etc).
Vault is used to add security in cloud like intranet and having control to encryption keys.
Projects migration from intranet to cloud to solve security issue with very sensitive data.
One tool for any environment (multi-cloud, intranet, etc).
Vault is used to add security in cloud like intranet and having control to encryption keys.
Recommendations to others considering the product:
The most complicated part to start with Vault is to make all roles for any entity and to do the policies matching. In big companies, it's can be hard and take a lot of time. Starting with "Who will do What" is cost saving.
Swiss army knife for handling security in DevOps
What do you like best about the product?
Different method of authentication! Many engines with unique capabilities. Good integration with other Hashicorp products. Compatible with all the modern tools. Cloud friendly!
It is easy to test features by just running the dev server on your local machine. Vault uses resources very efficiently so it does not require large servers.
It is easy to test features by just running the dev server on your local machine. Vault uses resources very efficiently so it does not require large servers.
What do you dislike about the product?
Implementing Vault properly in an organization is a bit challenging since the tool can do many things in many different ways and you should make sure you setup your workflows properly to be able to scale easily.
What problems is the product solving and how is that benefiting you?
Secret management,
PKI as a Service,
Consul ACL token lifecycle management,
Nomad ACL token lifecycle management,
PKI as a Service,
Consul ACL token lifecycle management,
Nomad ACL token lifecycle management,
Recommendations to others considering the product:
Make sure you put sometime to layout paths, naming conventions , policies before you going to production with Vault.
Make sure you check in all the configuration in VSC and use tools like Terraform to run them.
Vault is a very powerful tool! Start using it if you have not already!
Make sure you check in all the configuration in VSC and use tools like Terraform to run them.
Vault is a very powerful tool! Start using it if you have not already!
Vault - Highly Secure KV Store
What do you like best about the product?
- I can trust that vault will keep my data secure with minimal management overhead from my team
- Simple Interface to review my key values
- Simple to use API's
- Simple Interface to review my key values
- Simple to use API's
What do you dislike about the product?
Longer ramp up period for teams across the organization to use.
What problems is the product solving and how is that benefiting you?
- Secure KV store for database credentials with Dynamic rotation
Recommendations to others considering the product:
Read all of the documentation! It is extremely helpful in getting started and training your employees to effectively implement Vault
amazing products
What do you like best about the product?
we use vault for security it really responde to our needs.
What do you dislike about the product?
I would like to have an ocsp function for this
What problems is the product solving and how is that benefiting you?
générate certficates and store secret are very slow before, now it is possible in less then 10 secondes.
Recommendations to others considering the product:
first all this about roles, policies and make tests to be sure about what tokens can do.
Best in class Product - but disappointed with the service
What do you like best about the product?
I like the product and its working. It's quite easy to setup and start using effortlessly. There are very good enough documentations and tutorials on the internet to use vault precisely to meet your requirements. And it has almost all of the functionality you can expect from a secrets management product.
What do you dislike about the product?
I am very satisfied with the product. But I am not sure about the service. I wanted a demo and quotation of their product - So I did fill up the form for getting started with vault enterprise. I did not receive any sort of communication email from them - regarding the product or the demo. After I filled up the form - It did say that a demo will be provided. Still waiting for the same.
What problems is the product solving and how is that benefiting you?
We needed a password management product to use in our company. As we are using AWS and other products which require proper secrets management - It did fulfil all our requirements. And features like leasing & renewal, dynamic secrets, revocation are extremely useful(which we did not think of earlier).
Recommendations to others considering the product:
HashiCorp Vault is a very good product. Only I am not sure about the support and communication - If it's only me being ignored or it's same for most of us.
Compared against CyberArk for CI/CD Secrets
What do you like best about the product?
Integration with Terraform was seamless.
What do you dislike about the product?
Web UI was lacking, and featureset for user secret management would be great to add.
What problems is the product solving and how is that benefiting you?
We would like to leverage the dynamic secret function, with a focus on just in time authentication and short-lived access keys.
Recommendations to others considering the product:
Great product, with a few user features still to come to compete with the likes of CyberArk and Secret Server.
My experience so far with HashiCorp's Vault software/platform
What do you like best about the product?
Personally and Professionally.. So, far i think the best thing i like about the Vault product is secure secret storage for API Keys and dynamic secrets. Also, the sheer fact that we can also utilize this as our CA aka Certificate Authority is huge and extremely awesome! Besides that, we're enabling Docker/Kubernetes access via Vault, and this is a huge breakthrough for us as an organization that is redefining a lot of things in our industry, especially in IoT.
What do you dislike about the product?
I don't really dislike anything. However, if i had to specify one specific thing, i would have to say large data encryption. But, due to my limited knowledge i can't truly say it's a dislike. It's just taken some work with my minimal knowledge to get applications setup properly to encrypt all their data types and then storing it in specific locations. Please do not take this "Dislike" the wrong way though. This product works great in many scenarios and i have no regrets thus far either way. It's not a dislike per say, just a learning curve for some of the typical use cases.. but is still coming along just fine for us overall.
What problems is the product solving and how is that benefiting you?
We're solving a lot of problems.. secure storage of every type of secret you can imagine, from API keys, to encryption, to ssl certificates, and more. Dynamic secrets that the vault software generates on the fly is terrific! We can have on-premise applications access S3 style storage objects within Amazon Cloud (AWS) and within our own CEPH cluster. We also accomplish SQL Database access for various compliance reasons now with Dynamic Secrets that HashiCorp Vault gives us the ability to do, better than any other software i have utilized to date. Docker Access Rights. Centralized managed. Automated certificate generations, and still, i could go on and on (literally)! This software package overall is allowing us to accomplish so many things with one single point of management overall; i.e. PKI aka Public Key Infrastructure in across the board for our infrastructure and users (especially our development teams).
Recommendations to others considering the product:
Do your research but i highly recommend you AT LEAST evaluate HashiCorp Vault. Read up on it, do an implementation and at least one integration with something you already utilize in the cloud or on-prem and the product will start to speak for it self.. Honest to god truth!
great for secrets mangement
What do you like best about the product?
Central place to store and manage secrets. consistent and reliable.
What do you dislike about the product?
Steep learning curve, but it's very usable once you get it up and running. Just tackle one small piece at a time.
What problems is the product solving and how is that benefiting you?
automating and securing our internal certificate process. also storing secrets in vault instead of in metadata.
Recommendations to others considering the product:
Make use of Hashicorp's learing docs as well as any user group you can find for Vault
A good solution for secret management
What do you like best about the product?
Vault provides a number of methods for manage and securing information ranging from certificates to ssh keys and passwords, provides HA capabilities and an easy to use web ui
What do you dislike about the product?
Some of the back end management is difficult to script. Certificates are stored via token making it hard to audit with out some work
What problems is the product solving and how is that benefiting you?
Password management, key rotation, dev facing ca server
showing 21 - 30