Password Rotator

Securely rotate your local administrator passwords automatically
and access them anywhere on the internet

Take full control of your local administrator passwords on Windows

The rotation of local administrator passwords is key in todays world to drive IT-security and be compliant with regulations from cyber insurance companies, PCIDSS, NIS-2 and several more.
However the implementation can be a challenge and a time consuming task with existing solutions on the market.
Password Rotator is a simple solution that works seamless in the background of Microsoft Windows no matter if computers are part of a Windows Domain or in a local Workgroup.
There are no local servers required in your network.
Our service is driven by the cloud and requires only an internet connection.

How the Windows service works

Password Rotator is supported on Windows 10 and Server 2012 R2 or newer versions of Microsoft Windows.
The service is running in the background without any interaction.

During the installation it is required to provide a Connect Key in order let the service know to which group / company it belongs. After successful installation and connection, the service is fetching its configuration. The configuration can be controlled for each group / company via our Web-App from anywhere.

Once connected, the service will create automatically a local Windows account, which will be part of the group of local Administrators. The description of the create account will be Password-Rotator. The name of the newly created local administrative account can be configured upfront in our Web-App. In the Web-App you can also configure upfront the interval of how often the password should be rotated automatically. Passwords are unique on each client.

Passwords can be accessed via our Web-App protected by Multi-Factor-Authentification.

All traffic between the local installed service and our cloud environment is fully secured and protected by SSL. All information is securely stored in databases. Rotated passwords are stored encrypted.

How the Web-App works 

Once you have created an account with our service, you will be able to use Password-Rotator and rollout the service on your Windows fleet.

You will be able to configure how often the local passwords should be rotated and what the name of the local administrative account will be.

Multi-Factor-Authentification (MFA) is mandatory by default on our Web-App and can't be used without it.

Our Web-App will grant you access in a secure manner to all passwords for your clients from a central place. Further it is easy to use and access can be granted to multiple team members.


Inventory

The main purpose of Password Rotator is to automatically and securely rotate passwords of local administrative account created by our service on Windows computers and access those passwords in a safe central cloud-based Web-App in case you need to login to your Windows machines for administrative purposes.

Nevertheless, the service is also collecting key information of the Windows Operating System to help driving compliance and security even further. Password Rotator keeps you informed about several critical information like clients running on low disk space, last boot-time of the computer, version of the Operating System, when it was installed and much more.

This inventory information will provide additional benefits and provides helpful insights at a glance about your Windows fleet.

Further you can configure pro-active notifications by e-mail for certain critical events which are based on the inventory data.




Our Product Launch Pricing

TRIAL

Free

  • Limited to 10 clients

  • Automatic Password Rotation

  • Client Inventory

  • E-Mail Notifications

  • Limited Support

PRO

€1

/year per client

  • Automatic Password Rotation

  • Client Inventory

  • E-Mail Notifications

  • Access To Upcoming Advanced Features

  • Extended Support

  • Access to Beta features

FAQ

We have tested on multiple versions of Microsoft Operating Systems.
Password Rotator should run on Windows 10 / Server 2016 or newer.
However it is recommend to use our trial / free version to check the experience and full compatibility with your environment. 

Password Rotator does not perform any changes on the default Administrator account that comes along with Microsoft Windows. Due to high security risks we strongly recommend disabling the default Administrator account as it is a well known account to compromise systems.

We recommend choosing a name that it is not common or is in conflict with the default known Administrator account that comes along with Microsoft Windows. Please also adhere to the minimum account name requirements provided by Microsoft.

In case a client is deleted from the Web-App, the Password Rotator Service on the Microsoft Windows machine will unregister the next time it checks with the cloud database. The service won't be uninstalled automatically nor will that local administrative account managed by Password Rotator be deleted. The service will stop rotating the password and remains. The account remains active with the last rotated version of its password. If you want the software to be uninstalled, this needs to be actioned manually. Same applies for deleting the local administrative account created by Password Rotator.

The device is no longer reporting back to our cloud or rotating the local password. In the Web-App the data remains until it is deleted from the Web-App. The local administrative account and password remains on the device and, if required, needs to be deleted manually.

No worries. Just get in touch with us via info@password-rotator.com.
We are more than happy to help and support.

Security, Simplicity, Easiness

© Copyright Coal Mining Studio - All Rights Reserved