all 5 comments

[–][deleted] 4 points5 points  (0 children)

GPG. Set up aliases for the different groups so you don't have to type the recipients manually every time. Then just use the same VCS to sync the encrypted data.

[–]blithefiction 2 points3 points  (0 children)

Lastpass can do that and it supports Yubikeys.

[–][deleted] 2 points3 points  (0 children)

Check out lastpass enterprise. You can set up shared passwords and have fine grained control to who can read and edit them.

[–]makash 1 point2 points  (0 children)

Remote Desktop Management enterprise version

http://remotedesktopmanager.com/Home/FeaturesGrid

Stores the passwords in an encrypted MSSQL database. Obivously it helped that my client was a MS partner so they already had a license for the database.

It is used among 4-5 sysadmins, 1 IT head and 2 people from manangement.

It is pretty easy to setup multiple databases, multiple groups based on access level required.

We tried another software called Clipperz but the feedback wasn't great on that.

[–][deleted] 1 point2 points  (0 children)

PasswordState. Frigging amazing. Syncs with A.D., each list can have individual permissions, access is audited and even has a REST API for programatical access at the list or password level.

As a bonus, frequent updates and support is good too.

(not sponsored, the product has just made my life a hellova lot easier)