Keeper Password Manager

  



Keeper Security
Developer(s)Keeper Security Inc.
Initial releaseJanuary 2009
Operating systemWindows, macOS, Linux, Android, iOS,[1]
TypePassword manager
LicenseSoftware as a Service (SaaS)
Websitekeepersecurity.com

Keeper is a password manager application and digital vault created by Keeper Security that stores website passwords, financial information and other sensitive documents using 256-bit AES encryption, zero-knowledge architecture and two-factor authentication. In 2018, Keeper was named 'Best Password Manager' by PC Mag and nominated Editors' Choice with an 'Excellent' rating. Keeper Password Manager is definitely a great password manager that comes with lots of options and support for multiple platforms including Windows, Android, iOS, macOS, and almost all leading web browsers including Chrome and Opera.

Keeper is a password manager application and digital vault created by Keeper Security that stores website passwords, financial information and other sensitive documents[2] using 256-bit AES encryption, zero-knowledge architecture[3] and two-factor authentication.[4]

In 2018, Keeper was named 'Best Password Manager' by PC Mag[5] and nominated Editors' Choice with an 'Excellent' rating.[6] Keeper was rated 'Best Security' by Tom's Guide.[7]

Features[edit]

Windows app store download. Files and passwords in Keeper can be synced, backed up in the cloud, encrypted with a 256-bit AES key derived from the user's master password using PBKDF2.[8] Every record in the user's private vault is encrypted and stored with a unique encryption key.[9] Keeper also addresses the problem of password fatigue, by autofilling login and password fields with stored information.[4] Sharing passwords between Keeper users is performed using 2048-bit RSA encryption.[10]

A feature called 'Keeper DNA' provides multi-factor authentication using connected devices, such as a smartwatch, to verify a user's identity when logging into the vault.[11]

BreachWatch is a feature that monitors the dark web for stolen passwords and notifies the user within their vault.[12]

KeeperChat, a secure communications platform was launched in March 2018 that provides encrypted messaging, self-destructing messages, retraction and two-factor authentication.[13]

Keeper is a free service for storing passwords on a single device and has an optional annual subscription with cross-device syncing.[14]

Keeper comes pre-loaded on the Orange Dive 70 smartphone,[3]Samsung phones, América Móvil phones[15] and most AT&TAndroid phones.[16] As of January 2015, Keeper has more than 9 million registered users[17] and works with over 3,000 companies.[18] Keeper is available for download on Android, iOS, Windows, Mac, Windows Phone, Linux, Kindle, and Nook,[19] and available as a browser extension for IE, Chrome, Firefox, Safari and Opera.[9] Keeper is also available for Microsoft Edge.[20]

Keeper for Business and Enterprise Use[edit]

Keeper Enterprise is a multi-tenant password management and secure file storage platform for businesses. Features include file sharing, user provisioning, auditing, reporting, Active Directory integration[9] and delegated administration,[18] all of which are available within a centralized admin console.[9] In June 2019 Keeper launched BreachWatch for business customers, a service which searches the Dark Web for login credentials exposed through a public breach and prevents credential stuffing or account takeover attacks.[21]

History[edit]

Keeper Security was founded in 2009 by Darren Guccione and Craig Lurey while on a business trip to China.[22] As of May 15, 2019 the company has 145 employees in Chicago, Northern California and Cork, Ireland.[23] There CMO is Scott Ablin

Incidents[edit]

In December 2017, Keeper was bundled with Windows 10 by Microsoft. Google security researcher Tavis Ormandy disclosed that the software recommended installing a browser addon which contained a vulnerability allowing any website to steal any password.[24] A nearly identical vulnerability was already previously discovered and disclosed to Keeper in 2016.[25][26] Within 24 hours the company issued a patch.[27][28] Days later, the company that makes Keeper sued Ars Technica claiming their article was defamatory and misleading.[29] The lawsuit was dismissed on March 30, 2018 and Ars Technica added further clarifications to the article.[30] Keeper launched a public vulnerability disclosure program with Bugcrowd following the lawsuit.[31]

See also[edit]

References[edit]

ManagerKeeper password manager for iphone
  1. ^Keeper. 'Download Password Manager for Mac, PC, Linux & More - Keeper'. Retrieved 8 February 2018.CS1 maint: discouraged parameter (link)
  2. ^Dallke, Jim (December 5, 2014). '15 Chicago Startups to Watch in 2015'. ChicagoInno. Retrieved February 1, 2015.CS1 maint: discouraged parameter (link)
  3. ^ abSeals, Tara. 'Orange Embeds Password Manager'. Retrieved 2015-09-28.CS1 maint: discouraged parameter (link)
  4. ^ abParker, Jason (April 18, 2014). 'Take control of password chaos with these six password managers'. CNET. Retrieved February 1, 2015.CS1 maint: discouraged parameter (link)
  5. ^Staff, By PCMag; November 20, 2018 9:00AM EST; November 20, 2018. 'The Best Tech Products of 2018'. PCMAG. Retrieved 2019-07-02.CS1 maint: numeric names: authors list (link)
  6. ^Rubenking, By Neil J.; December 6, 2017 4:50PM EST; December 6, 2017. 'Keeper Password Manager & Digital Vault'. PCMAG. Retrieved 2019-07-02.CS1 maint: numeric names: authors list (link)
  7. ^Wagenseil, Paul. 'Best Password Managers 2019'. Tom's Guide. Retrieved 2019-07-03.
  8. ^Rubenking, Neil (August 15, 2014). 'Keeper Password Manager & Digital Vault 8 Review & Rating'. PC Mag. Retrieved February 1, 2015.CS1 maint: discouraged parameter (link)
  9. ^ abcd'10 Password Managers For Business Use'. Retrieved 2015-09-29.CS1 maint: discouraged parameter (link)
  10. ^'Keeper Password Manager Review'. Security Baron. 2018-01-26. Retrieved 2019-07-03.
  11. ^'New products of the week 10.26.2015'. Network World. Retrieved 2015-11-18.CS1 maint: discouraged parameter (link)
  12. ^Krol, Jacob (2019-03-30). 'This password manager puts security and ease of use at the forefront'. CNN Underscored. Retrieved 2019-07-03.
  13. ^'Keeper Launches Secure Chat Platform'. Mobile ID World. 2018-03-14. Retrieved 2019-07-03.
  14. ^'10 Best Mobile Password Managers'. Retrieved 2015-09-29.CS1 maint: discouraged parameter (link)
  15. ^'Password-security startup lands Samsung, two big carriers'. Crain's Chicago Business. Retrieved 2015-11-18.CS1 maint: discouraged parameter (link)
  16. ^Rubenking, Neil (August 15, 2014). 'Keeper Password Manager & Digital Vault 8 Review & Rating'. PC Mag. Retrieved February 1, 2015.CS1 maint: discouraged parameter (link)
  17. ^'Keeper Security Sees Growth as America Movil Signs Up'. www.morningstar.com. 2016-01-12. Retrieved 2016-02-04.
  18. ^ abKuranda, Sarah. 'Keeper Security Launches Channel Program, New Enterprise Mobile Security Platform'. CRN. Retrieved 2015-09-29.CS1 maint: discouraged parameter (link)
  19. ^Rubenking, Neil (August 22, 2014). 'The Best Password Managers'. PC Mag. Retrieved February 1, 2015.CS1 maint: discouraged parameter (link)
  20. ^Sunita (2017-05-31). 'How to Install and Use Keeper Password Manager in Microsoft Edge'. Howtoconnect - How-to, Tips on Windows 10 | 8, Android, IOS, Banking. Retrieved 2019-07-03.
  21. ^Murphy, Ian (2019-06-25). 'Keeper searches Dark Web for password breaches -'. Enterprise Times. Retrieved 2019-07-02.
  22. ^'Can this app protect you from being hacked?'. Crain's Chicago Business. 2015-01-15. Retrieved 2019-07-02.
  23. ^'Password-security company boosting space, tripling local staff'. Crain's Chicago Business. 2019-05-15. Retrieved 2019-07-02.
  24. ^'Windows 10 included password manager with huge security hole'. Engadget. Retrieved 2017-12-20.
  25. ^'For 8 days Windows bundled a password manager with a critical plugin flaw'. Ars Technica. Retrieved 2017-12-20.
  26. ^Chirgwin, Richard (18 December 2017). 'Windows 10 bundles a briefly vulnerable password manager'. The Register. Retrieved 2017-12-20.
  27. ^Kovacs, Eduard (18 December 2017). 'Google Researcher Finds Critical Flaw in Keeper Password Manager'. Security Week.
  28. ^Security, Keeper (2017-12-15). 'Update for Keeper Browser Extension 11.4.4 - Keeper Blog'. Keeper Blog. Retrieved 2017-12-22.
  29. ^Whittaker, Zack. 'Security firm Keeper sues news reporter over vulnerability story'. ZDNet. Retrieved 2017-12-20.
  30. ^'Press releases | Ars Technica'. arstechnica.com. Retrieved 2019-07-02.
  31. ^'Keeper Security forms vulnerability disclosure program with Bugcrowd'. SearchSecurity. Retrieved 2019-07-02.

External links[edit]

Retrieved from 'https://en.wikipedia.org/w/index.php?title=Keeper_(password_manager)&oldid=1016349325'
-->

The objective of this tutorial is to demonstrate the steps to be performed in Keeper Password Manager & Digital Vault and Azure Active Directory (Azure AD) to configure Azure AD to automatically provision and de-provision users and/or groups to Keeper Password Manager & Digital Vault.

Note

This tutorial describes a connector built on top of the Azure AD User Provisioning Service. For important details on what this service does, how it works, and frequently asked questions, see Automate user provisioning and deprovisioning to SaaS applications with Azure Active Directory.

This connector is currently in Public Preview. For more information on the general Microsoft Azure terms of use for Preview features, see Supplemental Terms of Use for Microsoft Azure Previews.

Prerequisites

Password

The scenario outlined in this tutorial assumes that you already have the following prerequisites:

  • An Azure AD tenant
  • A user account in Keeper Password Manager & Digital Vault with Admin permissions.

Add Keeper Password Manager & Digital Vault from the gallery

Keeper Password Manager Review

Before configuring Keeper Password Manager & Digital Vault for automatic user provisioning with Azure AD, you need to add Keeper Password Manager & Digital Vault from the Azure AD application gallery to your list of managed SaaS applications.

To add Keeper Password Manager & Digital Vault from the Azure AD application gallery, perform the following steps:

  1. In the Azure portal, in the left navigation panel, select Azure Active Directory.

  2. Go to Enterprise applications, and then select All applications.

  3. To add a new application, select the New application button at the top of the pane.

  4. In the search box, enter Keeper Password Manager & Digital Vault, select Keeper Password Manager & Digital Vault in the results panel, and then click the Add button to add the application.

Edge Password Manager

Assigning users to Keeper Password Manager & Digital Vault

Azure Active Directory uses a concept called assignments to determine which users should receive access to selected apps. In the context of automatic user provisioning, only the users and/or groups that have been assigned to an application in Azure AD are synchronized.

Before configuring and enabling automatic user provisioning, you should decide which users and/or groups in Azure AD need access to Keeper Password Manager & Digital Vault. Once decided, you can assign these users and/or groups to Keeper Password Manager & Digital Vault by following the instructions here:

Important tips for assigning users to Keeper Password Manager & Digital Vault

  • It is recommended that a single Azure AD user is assigned to Keeper Password Manager & Digital Vault to test the automatic user provisioning configuration. Additional users and/or groups may be assigned later.

  • When assigning a user to Keeper Password Manager & Digital Vault, you must select any valid application-specific role (if available) in the assignment dialog. Users with the Default Access role are excluded from provisioning.

Configuring automatic user provisioning to Keeper Password Manager & Digital Vault

This section guides you through the steps to configure the Azure AD provisioning service to create, update, and disable users and/or groups in Keeper Password Manager & Digital Vault based on user and/or group assignments in Azure AD.

Tip

You may also choose to enable SAML-based single sign-on for Keeper Password Manager & Digital Vault, following the instructions provided in the Keeper Password Manager & Digital Vault single sign-on tutorial. Single sign-on can be configured independently of automatic user provisioning, though these two features compliment each other.

To configure automatic user provisioning for Keeper Password Manager & Digital Vault in Azure AD:

Keeper Password Sign In

  1. Sign in to the Azure portal. Select Enterprise Applications, then select All applications.

  2. In the applications list, select Keeper Password Manager & Digital Vault.

  3. Select the Provisioning tab.

  4. Set the Provisioning Mode to Automatic.

  5. Under the Admin Credentials section, input the Tenant URL and Secret Token of your Keeper Password Manager & Digital Vault's account as described in Step 6.

  6. Sign in to your Keeper Admin Console. Click on Admin and select an existing node or create a new one. Navigate to the Provisioning tab and select Add Method.

    Select SCIM (System for Cross-Domain Identity Management.

    Click Create Provisioning Token.

    Copy the values for URL and Token and paste them into Tenant URL and Secret Token in Azure AD. Click Save to complete the provisioning setup on Keeper.

  7. Upon populating the fields shown in Step 5, click Test Connection to ensure Azure AD can connect to Keeper Password Manager & Digital Vault. If the connection fails, ensure your Keeper Password Manager & Digital Vault account has Admin permissions and try again.

  8. In the Notification Email field, enter the email address of a person or group who should receive the provisioning error notifications and check the checkbox - Send an email notification when a failure occurs.

  9. Click Save.

  10. Under the Mappings section, select Synchronize Azure Active Directory Users to Keeper Password Manager & Digital Vault.

  11. Review the user attributes that are synchronized from Azure AD to Keeper Password Manager & Digital Vault in the Attribute Mapping section. The attributes selected as Matching properties are used to match the user accounts in Keeper Password Manager & Digital Vault for update operations. Select the Save button to commit any changes.

  12. Under the Mappings section, select Synchronize Azure Active Directory Groups to Keeper Password Manager & Digital Vault.

  13. Review the group attributes that are synchronized from Azure AD to Keeper Password Manager & Digital Vault in the Attribute Mapping section. The attributes selected as Matching properties are used to match the groups in Keeper Password Manager & Digital Vault for update operations. Select the Save button to commit any changes.

  14. To configure scoping filters, refer to the following instructions provided in the Scoping filter tutorial.

  15. To enable the Azure AD provisioning service for Keeper Password Manager & Digital Vault, change the Provisioning Status to On in the Settings section.

  16. Define the users and/or groups that you would like to provision to Keeper Password Manager & Digital Vault by choosing the desired values in Scope in the Settings section.

  17. When you are ready to provision, click Save.

This operation starts the initial synchronization of all users and/or groups defined in Scope in the Settings section. The initial sync takes longer to perform than subsequent syncs, which occur approximately every 40 minutes as long as the Azure AD provisioning service is running. You can use the Synchronization Details section to monitor progress and follow links to provisioning activity report, which describes all actions performed by the Azure AD provisioning service on Keeper Password Manager & Digital Vault.

Instructions For Keeper Password Manager

For more information on how to read the Azure AD provisioning logs, see Reporting on automatic user account provisioning.

Connector Limitations

  • Keeper Password Manager & Digital Vault requires emails and userName to have the same source value, as any updates to either attributes will modify the other value.
  • Keeper Password Manager & Digital Vault does not support user deletes, only disable. Disabled users will appear as locked in the Keeper Admin Console UI.

Keeper Password Manager Cost

Additional resources

Keeper Password Manager Support

Next steps