The Challenge
One of the most difficult questions asked of IT security managers in cross-platform environments is: Can you prove which users have access to a specific business-critical system or application?
For Linux and UNIX systems in particular, access controls might be stored in insecure legacy systems such as NIS or managed locally system by system. Passwords to superuser accounts may be shared among many individuals. Or a single user may have multiple identities across systems.
The Centrify Solution
Centrify addresses this challenge by giving organizations a global view of access controls and user permissions, tied to a single, centrally managed Active Directory identity. With the Centrify Suite, you can:
- Associate all access rights and privileges on audited systems to individual Active Directory accounts
- Define logical sets of systems that can have their own authorized users, administrators, and security policies, with centralized reporting of who has access to what systems
- Implement role-based access controls and limit superuser privileges to just the set of commands they need to perform their jobs
- Add additional layers of security by isolating and protecting systems holding sensitive information.
- Capture detailed logs of all user actions, and system responses, to monitor for suspicious activity
- Globally enforce consistent security and configuration policies (via Windows Group Policy) across a heterogeneous enterprise
Learn More
Next Steps