Skip to main content

Cloud LAPS

Overview

Store break-glass computer and Entra ID accounts with idemeum zero-knowledge cloud vault and enable automatic password rotation

Get started quickly?

Quick-start guides
Follow product guides that we created to test idemeum platform use cases.

LAPS overview

Cloud LAPS secures the following accounts:

  • LAPS for computers - idemeum agent will automatically generate local admin or domain admin account on each of your customers' computers, will upload credentials to zero-knowledge cloud, and will perform automatic password rotation every 24 hours. At any given point in time you can access any machine with secure break-glass admin account.
  • LAPS for Entra ID - idemeum follows Microsoft best-practices and allows to generate up to 2 emergency accounts for each of your customer Entra ID tenants. These emergency credentials are stored in idemeum zero-knowledge cloud and secured with automatic password rotation.
🔒
Idemeum does not see your credentials. Everything is encrypted on the client side (desktop encryption for computer LAPS and browser encryption for Entra ID LAPS), and even if our cloud is compromised, your emergency credentials will not be exposed. More about our security below.
Security whitepaper
Overview This paper openly and transparently shows how we architected idemeum from the security standpoint. We have detailed all architecture designs, crypto algorithms, protocols, and approaches we took to secure data and companies that are using idemeum. Platform components Privacy and security are in our DNA, which is why idemeum’s