Skip to main content

Connect Vanta & Keeper

J
Written by Jaquez Hodo
Updated over a week ago

About this article

This integration pulls users and groups using the SCIM protocol from Keeper to help you track and audit user access to Keeper.

Estimated setup time: Less than 10 minutes

How it works

Keeper is a password and privileged access management tool. We use the SCIM protocol to pull users and groups every hour from Keeper. The integration only fetches data; it does not update any records in Keeper.

Note: We don't currently pull user roles from Keeper. This functionality is not currently available in the Keeper API.

Use Cases

Connecting Keeper will enable you to:

  • Track and manage Keeper user access

  • Ensure Keeper accounts are deprovisioned when personnel leaves

Overview

To connect Keeper to Vanta, you will need to set up the SCIM user provisioning method in Keeper for the node you'd like to sync users from. If you only have the root node, you’ll need to create a sub-node, and move the users you’d like to sync with Vanta to it.

As Keeper only syncs to Vanta the users in the Keeper node where SCIM is set up, your users will need to be migrated to this node for them to show up in Vanta. Keep in mind that Keeper doesn’t allow creating user provisioning methods in the root node.

Requirements

  • Keeper administrator account

  • Keeper Enterprise Password Manager or Privileged Access Manager for SCIM support

Install the integration

Log in to Keeper with an administrator account.

  • Go to the Admin section using the navigation bar on the left side of the page.

  • Select from the Node dropdown the Node you'd like to sync with Vanta. If you only have the root node, click the three dots next to the dropdown to add a new node. You’ll need to move your users to the new node for them to show up at Vanta.

  • Once the right node is selected, go to the Provisioning tab, and click the Add Method button on the right side of the page.

  • From the list, select SCIM (System for Cross-Domain Identity Management) and click Next. and copy the Keeper SCIM URL.

  • Then, open your Vanta dashboard in a new tab, and search for Keeper. Click Connect, and paste the URL in the Keeper SCIM URL field.

  • Go back to Keeper, and click on Generate and then click the clipboard to copy the token value. Finally click Next to save your credentials in Keeper.

  • Finally go back to the Vanta, and paste the token in the SCIM bearer token field and click Validate and store credentials.

Permissions

Vanta accesses the following data from your Keeper password manager:

Vanta will be able to read:

  • Data about your users

  • Data about your user details

  • Data about your user groups

Vanta will be able to write:

  • Nothing