Safe, secure and Trustworthy
What do you like best about the product?
We have used Hashicorp Vault forever now and we have had no issues with it in terms of security of our data. The documentations also make it very easy to use.
Its integration with terraform and other tech is pretty straightforward.
What do you dislike about the product?
Nothing off the top of my head. Its actually the best given its competitors.
What problems is the product solving and how is that benefiting you?
HashiCorp Vault helps us save all our important passwords without the hassle of losing them to hackers.
A scalable solution that can be used to perform health checks of applications and services
What is our primary use case?
I use the solution for service discovery and orchestration. We have a lot of microservices architecture.
What is most valuable?
The solution is useful for performing health checks of the applications and services. The documentation is good.
What needs improvement?
Health check outputs are delayed sometimes. If a service is down for more than five or ten seconds, sometimes the tool is not able to capture it.
For how long have I used the solution?
I have been using the solution for more than four to five years. I am using the latest version of the solution.
What do I think about the stability of the solution?
The tool’s stability is good. I rate the stability a nine out of ten. We had some issues. Sometimes, health checks do not give the right outcome.
What do I think about the scalability of the solution?
The tool’s scalability is good. I rate the scalability a nine out of ten. We have not faced any issues in scaling the server. We run the server behind an autoscaling group. Our backup and restore mechanism is very strong. Specific teams in our organization that follow the microservices architecture use the solution a lot. We have less than 20 users.
Which solution did I use previously and why did I switch?
We were planning to use Istio. Another team in our organization was using Envoy. We were already using the enterprise version of Terraform. So, we decided to use Consul.
How was the initial setup?
The initial setup is moderately easy. I do the configuration using Chef. We deploy the solution on Amazon EC2 instances. Everything is automated. We spent some time in the HA setup. Other than that, it doesn’t take much time.
What other advice do I have?
I take care of the infrastructure. I use Chef for configuration management. I work on multiple technologies. Overall, I rate the product an eight out of ten.
Which deployment model are you using for this solution?
Public Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Amazon Web Services (AWS)
Great for securing sensitive information
What do you like best about the product?
Vault provides amazing central place to keep secrets securely and manage the key values easily throgh beautiful user interface. The APIs are also easy to use.
What do you dislike about the product?
It takes time to learn the Vault so there is high learning curve.
What problems is the product solving and how is that benefiting you?
It stores secret in the Vault securely and easy to manage them.
It's a versatile, and secure solution for managing secrets in production
What do you like best about the product?
One of the things I appreciate about HashiCorp Vault is its versatility. It supports a wide range of authentication methods, including tokens, user-pass, and LDAP, allowing us to choose the method that best suits our needs. The platform also supports dynamic secrets generation, making it easier to manage secrets at scale.
What do you dislike about the product?
While HashiCorp Vault is a robust and reliable solution for managing secrets, some users may find it challenging to set up and configure, particularly for more complex use cases. Additionally, some users may find the pricing model to be a bit expensive, especially for smaller teams or organizations with limited budgets.
What problems is the product solving and how is that benefiting you?
HashiCorp Vault solves the business problem of securely storing, managing, and distributing sensitive data and secrets such as API keys, passwords, and certificates across distributed systems and applications in production environments. By offering end-to-end encryption, access controls, and a user-friendly interface, Vault helps businesses keep their secrets safe and secure from unauthorized access and breaches.
Nice idea and execution but the interface isn't quite up to snuff.
What do you like best about the product?
It can really be useful for getting hard coded passwords out of circulation. It's well thought out in terms of security and execution of the concept.
What do you dislike about the product?
The interface is horrible. Different buttons for functions show up incosistently. If you have a large list you either have to scroll all the way to the top or bottom. Buttons are not in both areas.
This badly needs a search function for entries. It quickly turns chaotic once it's used widely and not being able to see where a particular entry is used is very difficult to determine.
What problems is the product solving and how is that benefiting you?
It's geting the passwords out of emails, chats and documents.
Recommendations to others considering the product:
It works very well and is a comprehensive product. That also means it's complicated. Like any other complicated software, the more you try to do with it, the more you need to plan use.
Vault : Key Management for Everyone
What do you like best about the product?
Secrets management and ease of use on cloud-native architectures.
What do you dislike about the product?
Initial setup and configuration on Kubernetes architecture can be complicated and time-consuming.
What problems is the product solving and how is that benefiting you?
The implementation of Vault can solve keys and secrets management issues in the Kubernetes environment.
Really powerful and good tool to use for your microservices architecture
What do you like best about the product?
The set of the toolbox that the vault provides allows you to implement multiple requirements of security that a cloud-native architecture requires.
What do you dislike about the product?
An audit trail is not intuitive and could be better implemented and user-friendly since this is a tool for security.
What problems is the product solving and how is that benefiting you?
Manage kubernetes and other company tool secrets to automate the process of updating and auditing secrets.
Information security
What do you like best about the product?
* Protect passwords
* Confidential data
* Data box
* Run
What do you dislike about the product?
* Encrypt files
* Certificate
* Add password
What problems is the product solving and how is that benefiting you?
Protect data and password to the system
Recommendations to others considering the product:
Protect data and unauthorized access
Vault A Game Changer In Secret Management
What do you like best about the product?
Simple installation in a single binary. Adapt tokanization concept in whole process of the product. Support IaC approach to deploy the whole product and service. Robust plugin architecture enable integrate with other solutions too. In build integration of most famous cloud make vault a perfect match to manage cloud as well as onprems . On other hand vault work on standard set of API which can manipulate easily without any dependency. This will make the product highly customization and put change management on a automated workflow. Hashicorp do a nice job by making the vault OSS version and free of charge learning materials with ongoing community developments.
What do you dislike about the product?
Inconsistency of command and it is parameters make us confuse. They should have a standard on this. The documentation is there but not up to date. Most of the configuration example are missing. It is not cut and clear how we integrate the vault in day to day work for immature user. Hashicorp should think about this and improve the lack of up to date documentation.
What problems is the product solving and how is that benefiting you?
Securing the identity, access levels, manage rotatable secrets in devops workflow and implement encryption too in a single trusted authority. The dynamic secrets in the vault is a top graded feature in terms of securing sensitive data in SCM and logs. The automated token rotation is very helpful. Vault solve very common and critical problems like encryption, data masking, token validation and least privileges in one place without any additional tolls.
Recommendations to others considering the product:
Your first impression will make think you it is a simple tool. But it's UI just tip of the iceberg. Explore more in API and CLI, think more in automation & secure manner to see the correct picture
Very rich functionality, but has some issue with a really big scale
What do you like best about the product?
Rich set of options to control access (policies, groups), rich set of authorizations for users (e.g. oidc, leap) and for apps (kubernetes, approle).
Versioned KV storage for secrets.
Dynamic passwords for databases and etc.
What do you dislike about the product?
Open Source version does not have replication of any kind.
Premium version has replication and disaster recovery, but replication sometimes has issues under big load.
Even in Premium version, you can find bugs.
What problems is the product solving and how is that benefiting you?
Centralized secrets storage for the whole organization. Integration with cloud, on-prem, and kubernetes. Dynamic passwords management for databases.
Recommendations to others considering the product:
Follow the guidelines provided by HashiCorp. IF you have a premium version - don't hesitate to ask for a review of your setup.