Secret Server Discovery
Secret Server Discovery is a powerful feature that scans an environment to identify accounts and associated resources, known as dependencies. This process helps in creating new secrets within Secret Server by automatically discovering and importing accounts, thereby reducing the administrative burden of manually tracking computers and accounts. Discovery can find various types of accounts, including Windows local admin, Windows domain, and Unix non-daemon accounts, as well as dependencies like scheduled tasks, application pools, and services running under domain accounts. It supports multiple discovery types, including Active Directory, ESX/ESXi, AWS, Google Cloud Platform, and Unix. Additionally, Secret Server allows for extensible discovery through custom PowerShell scripts, enabling the discovery of account and dependency types not supported out-of-the-box. This feature ensures continuous monitoring and management of privileged accounts, enhancing security by identifying and securing backdoor accounts and other potential vulnerabilities.
For details, refer to the Discovery Overview.