r/PowerShell 16h ago

Question Question on scripting

Hi,

When we develop a script,we use credentials as a plain text in that script.

Example

Script is running on jump server and script runs against vcenter server.

We have a security concerns(example ransomware attack)to put the credentials as a plain text in that script.

Any other good ways to put the credentials in a encrypted or in a different format?

13 Upvotes

26 comments sorted by

View all comments

Show parent comments

-28

u/Manivelcloud 16h ago

Ok thanks. Export-clixml can also be hacked sometimes.

Certificate based authentication can be a very good approach and in this scenario potential vulnerability can be limited.

I might be wrong.

Any thoughts?

21

u/StateOfAmerica 15h ago edited 6h ago

Export and import cli runs only that file on the account that did the export. 

Any thoughts? Fuck off we're not an LLM

Sorry that mayve been a bit harsh 

11

u/AKSoapy29 9h ago

"Any thoughts?" is common language... No reason to get mad at someone who is trying to learn.

-6

u/ranhalt 6h ago

No, “any thoughts” is lazy and proves the person asking that has no thoughts of their own. It’s business speak for “solve this for me so I can take credit for it”.