Parameter; OpenShift; CyberArk Conjur
Supported types of secrets; SSH keys, TLS keys, Docker credentials, service accounts tokens - OpenShift, login pass pairs, services and API certificates, env variables; Docker credentials, service accounts tokens - Kubernetes, login pass pairs, services and API tokens;
Supported types of applications; CI \ CD - GitLab CI, TeamCity, Container Orchestration - OpenShift, IaaC - Helm; Cloud - AWS, Azure, GCP, databases - Oracle, MS SQL, MySQL, CI \ CD - GitLab CI, TeamCity, Container Orchestration - Kubernetes, OpenShift, Tanzu, Pivotal, CloudFoundry, IaaC - Ansible, Terraform, Puppet;
Strong authentication; OAuth compatible; OAuth, OpenID Connect compatible
Dynamic Secrets and Secrets rotation; Yes; Yes
ACL; Yes; Yes
Secrets wrapping for one-time contractors access; No; No
Management interfaces; API, CLI; API, CLI, Web
High availability; Yes; Yes
Logging of access to secrets; Yes; Yes
Tokenisation for sensitive data; No; No
Editions; Non-applicable; Open Source, Enterprise
Delivery type; On-Premise, IaaS; On-Premise, IaaS
Availability on cloud marketplaces; AWS, Azure, Google Cloud, IBM Cloud; AWS, Google Cloud