Configure with HashiCorp Vault (Windows)

Required User Role: Any

In, you can integrate with HashiCorp Vault using Windows credentials. Complete the following steps to configure with HashiCorp Vault using Windows.

Before you begin:

  • Ensure you have both a and HashiCorp Vaultaccount.

Note: (Undefined variable: Integrations.HashiCorp Vault) provides options for both KV v1 and v2. However, only supports integration with KV v1.

To integrate with HashiCorp Vault using Windows credentials:

  1. Log in to
  2. Click Scanning > Credentials (administrator users) or Scans > Credentials (organizational users).

    The Credentials page appears.

  3. At the top of the page, click +Add.

    The Add Credential page appears.

  4. In the Windows section, click HashiCorp Vault.

    The HashiCorp Vault Add Credential page appears.

  1. In the Name box, type a name for the credential.

  2. (Optional) Add a Description.

  3. (Optional) Add a Tag to the credential. For additional information about tags, see the Tags section in the documentation.

  4. In the Windows Hashicorp Vault Credential section, configure the Windows credentials.

    Option Default Value Required

    Hashicorp Host

    The Hashicorp Vault IP address or DNS address.

    Note: If your Hashicorp Vault installation is in a subdirectory, you must include the subdirectory path. For example, type IP address or hostname/subdirectory path.


    Hashicorp Port

    The port on which Hashicorp Vault listens.

    Authenticaton Type

    Specifies the authentication type for connecting to the instance: App Role or Certificates.

    If you select Certificates, additional options for Hashicorp Client Certificate (Required) and Hashicorp Client Certificate Private Key (Required) appear. Select the appropriate files for the client certificate and private key.

    Role ID

    The GUID provided by Hashicorp Vault when you configured your App Role.

    Role Secret ID The GUID generated by Hashicorp Vault when you configured your App Role. yes
    Authentication URL The URL used to access Hashicorp Vault. yes


    The name of a specified team in a multi-team environment.


    KV Engine URL

    The URL uses to access the Hashicorp Vault secrets engine.

    Username Source Specifies if the username is input manually or pulled from Hashicorp Vault. yes
    Username Key The name in Hashicorp Vault that usernames are stored under. yes
    Password Key The key in Hashicorp Vault that passwords are stored under. yes
    Secret Name The key secret you want to retrieve values for. yes
    Use SSL If enabled, uses SSL for secure communications. You must configure SSL in Hashicorp Vault before enabling this option. no
    Verify SSL If enabled, validates the SSL certificate. You must configure SSL in Hashicorp Vault before enabling this option. no
  1. Click Submit. saves the credential.