Preparing for password encryption


For enhanced security, BMC Helix IT Operations Managementuses encrypted passwords for deployment. After you download the product files from the BMC Electronic Product Distribution (EPD), you can prepare for password encryption.


To prepare for password encryption

  1. Go to the commons/certs directory and open the secrets.txt file.

    Important

    Use only the new secrets.txt file to set the passwords:

    • For a fresh installation, use the secrets.txt file that you downloaded along with the deployment manager. See Downloading-the-deployment-manager-and-container-images.
    • For a upgrade, use the secrets.txt file present in your new working directory (new_working_directory). 

    Do not copy the older version of the secrets.txt file because it is not compatible with the newer versionHowever, we recommend that you refer to the older version of the secrets.txt file to understand the syntax and to get the values that you had set previously.

  2. Add the following passwords to this file and then save it:

    Best practice
    The secrets.txt file is deleted after installation. You will need the values set in the secrets.txt file for future upgrades. Hence, save the secrets.txt in a secure location. 
    The [confluence_table-plus] macro is a standalone macro and it cannot be used inline. Click on this message for details.

    Important

    Ensure that you provide all passwords in the secrets.txt file. If you forget to add even one password in the secrets.txt file, the deployment fails with the following error:
    password_encry_failure.png


Sample secrets.txt file

# cat commons/certs/secrets.txt
#Please put the passwords in this file
IMAGE_REGISTRY_PASSWORD=password123
SMTP_PASSWORD=""
SMART_SYSTEM_PASSWORD=password123
PG_PASSWD=pGtest2020
KIBANA_PASSWORD=kibana123

################## End OF THE FILE ####################


 

Tip: For faster searching, add an asterisk to the end of your partial query. Example: cert*