LastPass Integration
LastPass is a password management software that helps users store and manage their passwords securely. It allows users to generate complex and unique passwords for different accounts and stores them in an encrypted vault.
How does this integration help
LastPass integration on your Sprinto account helps you achieve compliance posture for users' access controls. Upon configuration, Sprinto retrieves the user accounts' data from LastPass and verifies it against the defined valid access type for LastPass on Sprinto. Sprinto activates checks against any user who falls out of the valid access type to help you maintain access for users who actually need it.
Sprinto check for LastPass
Following are the available Sprinto checks for LastPass integration:
Sprinto check
Reference procedure
LastPass access should be removed for offboarded user
User should be identified
User access to critical system should be valid
Integrating LastPass with Sprinto
Follow the procedure below to integrate and configure LastPass with Sprinto:
Before you begin:
Ensure you have administrator privilege on LastPass to perform this integration procedure.
Ensure your LastPass account is on the Business subscription plan.
Log in to Sprinto’s admin portal using your credentials.
Sprinto utilizes Truto as an integration partner for this integration.
Integration procedure:
Get the credentials from the LastPass account.
Log in to the LastPass account using your credentials.
Navigate to the Security Dashboard and copy the account number. This is the CID you need to enter on the integration page.
Navigate to the Enterprise API page, and click Create provisioning hash.
Click OK to confirm. Copy the generated hash key and save it securely. We will need this detail during the integration process.
Integrate LastPass on Sprinto.
Go to Security Hub > Settings > Integrations, and select the Available tab.
Click Connect next to LastPass.
Read the on-screen instructions and click Next.
Select the acknowledgment checkbox at the bottom, and click Connect to LastPass. Note: Ensure you have enabled the pop-up window on your browser.
Enter the Provisioning Hash and CID copied from step 1, and click Connect to proceed.
Configure LastPass as a Critical system.
On the Sprinto app, go to Security Hub > Access > Overview, and click Add Critical System.
Select LastPass from the critical system library, and click Add system. Note: “Connected” is highlighted next to the critical system if the system is integrated successfully from the previous step.
From Access overview page, select LastPass from the list.
Click Configure now/ Manage from the Summary tab.
Click Configure/ Manage next to Access validity.
Select the valid user access type from the available options.
LastPass is integrated and configured as a critical system; Sprinto will sync user account data from LastPass and compute users’ access validity. Sprinto will also activate the Sprinto check against any staff member who does not have valid access. Wait until Sprinto finishes the data syncing process.
Please contact Sprinto Support if you have any queries related to the integration or need any assistance.
Last updated