Securden Password Vault for Enterprises

On-Premise Password Manager Architecture

Securden Password Vault for Enterprises is a web-based, on-premise, self-hosted software-only solution and is available as a binary for installation on Windows. The package contains everything needed and you don’t require any other hardware or software. It comes with an inbuilt web server and PostgreSQL server as the RDBMS. Optionally, you can use MS SQL Server as the backend database.

The solution runs on a central server connected to a backend database. The server handles all the business logic. End-users connect to the server using any standard web-browser.

The product integrates with Active Directory and SAML-based Single Sign On solutions for user management and authentication. It also integrates with a variety of MFA providers - any TOTP authenticator (Google authenticator or Microsoft authentication), any RADIUS-based authentication mechanism (RSA SecurID, Digipass, etc.), Duo Security, Yubikey, Email to SMS gateway and OTP through email.

Enterprise requirements such as data backup, high availability, and disaster recovery are all in-built.

On-Premise Password Architecture

The product stores all sensitive information in a fully encrypted manner in a secure, digital vault. Securden uses AES-256 for encryption. The encryption key is unique to every installation and is automatically generated.

Securden Password Vault allows end-users to launch remote connections with IT resources without viewing the underlying passwords. It provides the option to launch web-based remote connections (RDP, SSH, and SQL) and by using native client applications.

The Securden Password Vault installation package delivers all these functionalities. An installation instance can just have two physical servers (primary and secondary) or multiple application servers as required.

On-premise Password Manager