platform-compat
SecretManagement
platform-compat | SecretManagement | |
---|---|---|
23 | 15 | |
249 | 306 | |
- | 4.6% | |
1.2 | 0.0 | |
over 3 years ago | 2 months ago | |
C# | C# | |
MIT License | MIT License |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
platform-compat
-
KeePass flaw allows retrieval of master password
DotNet offers the SecureString class to keep a string encrypted in Memory, but as long as the OS does not natively support this concept, the only advantage is that it resides in memory for a shorter time, the disadvantage is that SecureStrings are easier to search for.
- System.Net.Mail.SmtpClient is not recommended anymore; what is the alternative?
-
Bitwarden PINs can be brute-forced
Note the KeePass's resistance to the attack mentioned depends on the security of .NET's secure string, which, here's what Microsoft has to say about it (https://github.com/dotnet/platform-compat/blob/master/docs/D...)
As for KeePassXC, last I checked it didn't even bother.
-
Ever Find A Dead Man's Switch On A Network/Domain?
TIL. Looks like the deprecation note recommends MailKit.
-
Disabilities and Windows Passwords
Well of course, but it does have to be passed to the module that generates the hashes AD uses in the first place. And as I said, the standard password reset screen is bound to store the password in plain text somewhere as well.
-
Embedded logo in HTML email sent from PowerShell
This won’t help you with your question, but I figured I should warn against using send-mailmessage.
-
Alternative to PowerShell cmdlet 'send-mailmessage'
points you here.
-
API pagination help?
Some of the reasons for not using Hashtable or other non-generic collection types are outlined here. That's why Microsoft doesn't recommend their usage in new implementations across all of its API documentation.
- How to deal with credentials in automated scripts?
-
pfSense configuration backup
And if you really want to be secure you need to something better than a SecureString: https://github.com/dotnet/platform-compat/blob/master/docs/DE0001.md
SecretManagement
- How to deal with credentials in automated scripts?
- How do I go about copying files on a remote computer from another remote computer using copy-item
-
PowerShell beginner information
Securely Store Credentials on Disk Using the new secrets manager by MS is probably one of the easier and better ways to go about this now. · https://github.com/PowerShell/SecretManagement
-
My practical use of SecretManagement module
Looks good. Can I ask what your case is for using SecretManagement.JustinGrote.CredMan module? The license says it’s a modification of https://github.com/PowerShell/SecretManagement/tree/master/ExtensionModules/CredManStore, but the source is not available on the authors Github page for this module.
-
Proper way to manage passwords in automated scripts?
There is a PowerShell secrets module, which is presumably more secure: https://github.com/PowerShell/SecretManagement
- Powershell password manager?
-
PSFalcon - Always 429 rate exceeded
As for the credential handling, you're on the right track. PSFalcon doesn't handle them, so you can store them however you'd like as long as they're passed to Request-FalconToken as plain text. I plan on looking into support for the SecretManagement module in a future version.
-
How do you manage your username and passwords across your PowerShell scripts?
I've used the SecretManagement module from Microsoft for some time and been very happy with it.
-
PSRemoting vs PowerCLI
However there are other ways to handle secret management. Microsoft, as of last year, offers the SecretManagement module that I have not messed with yet. https://github.com/PowerShell/SecretManagement
- Using the new Secrets Management module for secrets in scripts - What it is and demos.
What are some alternatives?
envchain - Environment variables meet macOS Keychain and gnome-keyring <3
PoShKeePass - PowerShell module for KeePass
ImportExcel - PowerShell module to import/export Excel spreadsheets, without Excel
Odin - Odin Programming Language
envconsul - Launch a subprocess with environment variables using data from @HashiCorp Consul and Vault.
blog-secretmanagement-powershell-module - Blog about recently introduced SecretManagement PowerShell module, our practical usage and code.
MailKit - A cross-platform .NET library for IMAP, POP3, and SMTP.
Delete-Snag-IT-Temp-Files-From-Horizon-View-Profile - Script to Delete Snag-IT Temp Files From Horizon View Persona Profiles
distrobuilder - System container image builder for LXC and Incus
odin
AngleSharp - :angel: The ultimate angle brackets parser library parsing HTML5, MathML, SVG and CSS to construct a DOM based on the official W3C specifications.
Update-iDrac - Powershell Script to Update iDrac on Multiple Systems at Once