Integrate with Thycotic Secret Server

FlexDeploy provides out of box integration with Thycotic Secret Server to retrieve secrets. 

Thycotic Secret Server Setup

  • Make sure Thycotic has web services enabled

FlexDeploy Setup

You must first create a Credential Store in FlexDeploy by clicking the Create Store button on Administration - Security - Credentials page. The credential store represents an instance of a specific type of credential store provider. If you have more than one Thycotic Secret Server, you will create an equal number of Credential Stores in FlexDeploy.


Here are the configurations necessary for this store.

Property NameNotesExample
Thycotic Server HostnameThycotic will be accessed using URL https://<Thycotic Server Hostname>/SecretServerthycotic.mycompany.com
Thycotic UsernameUsername of the service account to access Thycotic Secret Serveras per your server configurations
Thycotic PasswordPassword of the service account to access Thycotic Secret Serveras per your server configurations
Thycotic DomainDomain of the service account to access Thycotic Secret Serveras per your server configurations
Ignore SSL ErrorsUse default SSL configuration and ignore any SSL errorstrue or false. Defaults to true
You may have to add certificate to Java keystore, see Adding certificate to Java Keystore

Now you are ready to create an individual credential to be retrieved from the Secret Server

You can create or edit credentials from the Credentials page or from where the specific credential is used.

Thycotic Secret Server requires input as described below.

Input NameNotes
Secret ID

The ID of the secret.  On Thycotic Secret server, this is the unique value for a secret.

It is in the URL when you browse to that secret on the Thycotic web application

Here is what the create and edit credential form looks like.

You can change credential inputs (Secret ID) at any point. FlexDeploy will use these inputs with credential store properties to retrieve individual credentials for use during Workflow Execution.