Summary:
Section titled “Summary:”The document outlines a naming convention standard for all passwords stored in 1Password. By emphasizing a structured format that includes the client name, service/system, environment/role, and username/email, we can have a consistent naming practice with the end goal of a consistent organizational structure within 1password.
Assumptions, Risks, or Dependencies:
Section titled “Assumptions, Risks, or Dependencies:”Assumptions:
Section titled “Assumptions:”- Must have access to 1password.
Risks:
Section titled “Risks:”- Misconfigured password will result in loss productivity.
Dependencies:
Section titled “Dependencies:”KB00018669 - ST - Password & Account Management
Requirements:
Section titled “Requirements:”This Standard is a requirement for all cIT staff.
-
All passwords stored in client specific or multi-user cIT vaults in 1password must follow this format.
-
If a password is found not adhering to this standard, it is the responsibility of all cIT employees to update the password to match the standard.
-
All passwords must be stored in the correct client vault.
-
Users are to follow the tag structure below. Do not add or edit tags without the strict approval from the Security Manager and any changes must be published in this standard.
Standard:
Section titled “Standard:”Password Titles should follow this format: Client Name - Service/System - Environment/Role (Optional) - Username/Email/Identifier
Client Name
Section titled “Client Name”Use the client’s standardized short code found in Halo. To locate go to companies module, select the company, look for “Abbreviation” on the main company details page.
Service/System
Section titled “Service/System”Clearly identify the service (e.g., M365, VPN, AWS, cPanel, GoDaddy, Fortinet, Sophos).
Environment/Role (Optional, but helpful)
Section titled “Environment/Role (Optional, but helpful)”Use for context like Admin, User, Dev, ReadOnly, Test, Prod, Breakglass, site specific variable, etc.
Username/Email/Identifier
Section titled “Username/Email/Identifier”Add the actual login username, email address, or other identifier.
Additional Approved Tags
Section titled “Additional Approved Tags”1password supports the use of tags on each entry. These tags are system wide and should not be added to or changed without approval from the security manager. Approved Tags:
M365 Service
DNS
Domain/Service Account
Licenses
Website/SAAS
Servers
Wireless
Applications
Certificate
Vendors
Voice
Network Devices
Peripherals
External References:
Section titled “External References:”N/A
Definitions:
Section titled “Definitions:”N/a