Qlik Community

New to Qlik Sense

Discussion board where members can get started with Qlik Sense.

Announcements
Make your voice heard! Participate in the 2020 Wisdom of Crowds® Survey. BEGIN SURVEY
Highlighted
eparsons72
New Contributor

Storing passwords to call web services

I am a Security professional for a company where our developers are looking to implement a call to web service.  The issue that we are having is we do not want the developer to know or have access to the password needed for this service.  We would like to have it encrypted utilizing industry standards as well.   Our development team is telling us that the standard implementation is to stored it either in a text file or within the database and the developer would have the ability to  decrypt the password if needed.  

Any suggestions on how to implement this in a way that our security department would be the only ones with the password is appreciated. 

Labels (1)
2 Replies
Highlighted
Community Manager
Community Manager

Re: Storing passwords to call web services

@eparsons72 This forum is to discuss the Qlik Community platform.  The forums on this platform are to collaborate around Qlik products.  Your question appears not to be about any Qlik products.  If this is not the case please be specific on which Qlik product and what you are having a problem with. Thank you.

Sue Macaluso
Highlighted
eparsons72
New Contributor

Re: Storing passwords to call web services

Sue,  the development team is utilizing Qlik Sense to make the call to the web service that I referenced in my original post.  The issue that I am having with what they are proposing is that they are stating to me that they must have the password to the service account which in our environment is not something that we allow.   So we are trying to determine what path we can take to enter an encrypted password into the platform that the developer would not be able to access to ensure that the security measure meet our policy.