3 ms·
You can SSO the password to an identity store (LDAP / AD), add MFA Or, you sign a key/certificate for each user, add MFA Or, you create a complex password for
by lemonspat 6y ago
You can SSO the password to an identity store (LDAP / AD), add MFA
Or, you sign a key/certificate for each user, add MFA
Or, you create a complex password for each user, and add MFA
Or you create a complex password, shared in a keystore that handles checkout and rotation
Worst case, if you're lazy, you create a complex password for a handful of your teammates and reset it when a team member leaves
Or if you're solarwinds, you apparently choose gross negligence
- ineedasername 6y agoIn their defense, gross negligence takes less time and money, and they probably won't suffer much from this incident, so it all still paid off on the bottom line, and now a whole lot more people know who they are. Free marketing! Bonuses all around!