Enterprise AI Infrastructure Security Series - 3) Configuration Governance with Administrator Vaults
Securing ClearML for the Enterprise — Part 3: Configuration Governance with Administrator Vaults
In this video we walk through ClearML's vault system — how personal vaults and administrator vaults work, and how administrator vaults let you enforce platform-level policies on storage locations, container images, and credentials across your teams and service accounts.
What we cover:
- What a ClearML vault is and what you can configure in one
- The difference between personal vaults and administrator vaults
- Setting up a personal vault with Azure Blob Storage, a Git PAT, and an unvetted container image — the "wrong way"
- Creating an administrator vault to enforce approved storage, pinned container images, and centrally managed Git credentials
- Demonstrating the override behaviour — same user code, different enforced outcome
- Disabling task-level Docker overrides with disable_task_docker_override
- Brief overview of UI Storage Credentials and SSH Server vault types
- How administrator vaults apply to service accounts as well as users
Previous videos in this series:
Part 1 — Introduction to the Six Layers of Enterprise Security: https://www.youtube.com/watch
Part 2 — Identity Provider Setup, Group Sync & Access Rules: https://www.youtube.com/watch
This is Part 3 of our series on enterprise AI infrastructure security. Whether you're an IT director evaluating ClearML, a platform engineer rolling it out, or a team lead trying to understand how your platform enforces compliance — this walkthrough covers the practical, hands-on configuration from start to finish.
Links & Resources
ClearML Enterprise: https://clear.ml/enterprise
ClearML Docs — Administrator Vaults: https://clear.ml/docs/latest/docs/user_management/admin_vaults/
ClearML Docs — Configuration Vault (Personal): https://clear.ml/docs/latest/docs/webapp/settings/webapp_settings_profile/
ClearML Docs — Configuration File Reference: https://clear.ml/docs/latest/docs/configs/clearml_conf/
✨ Follow us or give us a Github star!
Github page: https://github.com/clearml/clearml
Slack Channel: https://joinslack.clear.ml/
LinkedIn: https://www.linkedin.com/company/clearml