• No results found

What s New in Centrify Server Suite 2013 Update 2

N/A
N/A
Protected

Academic year: 2021

Share "What s New in Centrify Server Suite 2013 Update 2"

Copied!
5
0
0

Loading.... (view fulltext now)

Full text

(1)

What’s New in Centrify Server Suite 2013 Update 2

The new Centrify Server Suite 2013 Update 2 (2013.2) builds on the core enhancements Centrify introduced in Server Suite 2013 with new reports in Centrify Audit Analyzer, new auditing of DirectManage administrative activity, and automation for report scripting and simple database management. In addition, enhancements to Centrify Audit Analyzer enable targeted querying of audit trails by role across Windows, UNIX and Linux systems, and provide commonly used queries that are pre-configured and ready to run. New audit report templates can be used to generate reports based on user-specified criteria, and to create customized reports for compliance to regulations such as HIPAA, MAS, PCI DSS, SOX, GLBA, FISMA, and NERC.

Centrify Server Suite 2013.2 includes updates to DirectAuthorize for Windows, an integrated solution that eliminates problems associated with too many users having broad and unmanaged administrative powers. The solution delivers secure delegation of privileged access and granular enforcement of who can perform what administrative functions, and includes advanced auditing, access control, and privilege management on Windows computers. In addition, Centrify Server Suite 2013.2 introduces a collection of new features to help reduce the risks caused by local administrator accounts on Windows Servers, enable support of complex command scripts for automation, and improve usability and security.

DirectAuthorize for Windows

Automates creation of administrative roles

(2)

Enhances security for administrative identity

§ You can optionally require users to enter their login password whenever they create or switch to a privileged desktop, or use a privileged application or network right. This protects your administrator’s identity if they step away from their workstation without locking the screen.

Leverages your existing Active Directory security groups

§ Unique among privilege management solutions for Windows, DirectAuthorize now supports adding the privileges of any Active Directory security group – built-in domain groups or custom groups you’ve created – to specific application, desktop, and network rights.

§ You can immediately leverage the work you’ve already done in Active Directory, granting users the privileges of ‘service’ accounts and security groups without having to share passwords, while your users’ Windows identity remains constant.

Supports more complex scripting

(3)

Visual cues for privileged desktops

§ Users can apply customized backgrounds to privileged desktops, helping them keep track of the privileges they’re using.

§ Administrators can use Active Directory Group Policy to display specific backgrounds (such as acceptable use policies) on privileged desktops.

DirectAudit

Global option to disable video capture

§ You can now disable video capture for a DirectAudit deployment through a simple checkbox in DirectManage Audit Manager.

§ The default for a new installation is “Off.” The installer retains the setting from an existing installation during upgrade.

New reports for audit trail events in Audit Analyzer

(4)

§ You can create and save custom reports. Four standard reports are included.

Multiple-select support and data export for user sessions

§ You can now select multiple user sessions in Audit Analyzer for export or deletion.

§ You can export user sessions to common data format (CDF), to an event list, or to Windows Media Video (WMV) format.

New report templates

§ Six new report templates in Audit Analyzer make it easy to drill down into user logons, user or privileged activity, and Centrify Zone administration.

§ Reports can be exported in a variety of different file formats: HTML, PDF, Excel, CSV, and XML.

Automation for report scripting and simple database management

§ The FindSession command-line utility now supports additional functionality that makes it easy to script report generation and perform simple management operations on the DirectAudit database.

Options for capturing audit trail events (Windows)

(5)

§ You can specify that no events should be captured, captured only to the Audit Store, captured only to the Windows Event Log, or captured to both the Audit Store and Windows Event Log.

DirectManage

New auditing of administrative activity

§ DirectAudit now audits and reports on Centrify Zone administration, enabling you to easily search and report on activity such as the creation, modification, and assignment of DirectAuthorize roles across users and machines, or the creation and deletion of Zones.

Sudoers Import

§ Sudoers Import now supports GID in both user list and runas list.

DirectControl Agent

Name mapping for smart cards (alternate identity smart card)

§ The Centrify DirectControl Agent now supports login via name mapping smart cards on both Mac and Red Hat platforms.

Configuration parameters

§ Additional configuration parameters have been added and existing parameters modified for finer control of agent properties.

DirectControl for Mac

§ A new Group Policy has been added to control Apple’s FileVault 2. § Support for On-Premise WiFi Profile.

Platform support

The DirectControl Agent now supports these additional platforms: § CentOS 5.9, 6.4 (32-bit and 64-bit)

§ Debian 7, 7.1 (32-bit and 64-bit) § Mint LMDE 201303 (32-bit and 64-bit) § Mint 15 (32-bit and 64-bit)

§ OpenSuSE 12.3 (32-bit and 64-bit) § Oracle Linux 5.9, 6.4 (32-bit and 64-bit)

§ Oracle Solaris 11.1 (x86_64 and SPARC) § Red Hat Fedora 18, 19 (32-bit and 64-bit)

§ Red Hat Enterprise Linux 5.9, 6.4 (32-bit and 64-bit) § Scientific Linux 5.9, 6.4 (32-bit and 64-bit)

§ Ubuntu 13.04 (32-bit and 64-bit)

Centrify OpenSSH

Installer enhancement

References

Related documents

Centrify Server Suite 2015 writes a unique event ID also known as Centrify Event ID for each of the Audit Trail events.. On Windows clients, the audit trail event is written

The Windows components of the feature set, referred to as the Centrify Administrator Consoles are a set of GUI based management tools used to assign UNIX identity attributes to

• Compliance auditors can use it to verify that access control policies are being enforced, by building queries and reports; for example, reports that show activity on

• Agents enable UNIX and Linux computers to join an Active Directory domain and automatically generate user and group profiles for all Active Directory users and groups..

Centrify Server Suite is an enterprise-class solution that secures even the most complex Hadoop environments leveraging an organization’s existing Active Directory infrastructure

Centrify Server Suite, Standard Edition provides flexibility in the implementation and management of a least-privilege access model through role definitions and assignments that

Audit Manager Configuration – This module describes how to install the DirectAudit user interface and database(s) in. your Windows and SQL

When you install Centrify Suite Express on a computer and join an Active Directory domain, all of the users and groups in the Active Directory forest automatically become valid