BeyondTrust

Security in Context: The BeyondTrust Blog

Welcome to Security in Context

Bringing you news and commentary on solutions and strategies for protecting critical IT infrastructure in the context of your business.

PowerBroker for Windows – Solution Deployment

Posted October 11, 2012    Morey Haber

PowerBroker for Windows (PBW) is designed to integrate directly into your corporate Active Directory (AD) structure without modifying your existing schema. In the asset labeled “1” below, an administrator simply loads a Group Policy Option (GPO) snap-in onto an asset that uses the Microsoft Management Console (MMC).  The administrator can then create policies and rules that are stored in the AD domain labeled “2”.  An administrator can also access the management console (Retina CS labeled “3”) via a web interface to run reports or create additional rules based on collected events from the environment.

As domain assets log on (servers, workstations, or remote clients labeled “4”) they receive policy from the domain controller that is processed by the PBWagent. This agent is installed on each device and can be distributed through a software delivery solution or even through GPO itself. This enforces privilege identity management rules on the endpoint and sends status events back to Retina CS for additional reporting, trending, and rule creation.

In a traditional deployment, your organization needs to consider deploying the following three components:

  1. PBW Agents on Servers, Desktops, and Remote Clients
  2. PBW GPO Snap-In for Rules on Administrator Workstations
  3. Retina CS Management Console for Reporting and Event Management (optional).

PBW Agents are lightweight MSI installers, under 30MB, that can be pushed down to assets using everything from logon scripts to GPO. The GPO snap-ins should only be deployed where needed for policy creation. And,Retina CS (available soon for PBW) is generally a one-time server installation (software, virtual, or appliance) for management. It can also be deployed as multiple servers in atiered architecture for enterprise clients if needed.  Below is an example of this approach.

For more information on how to take advantage of PowerBroker for Windows and Retina CS within your environment, please click here. BeyondTrust is the thought leader for integrating privilege identity management and vulnerability assessment in a single solution.

Tags:
, , , , , , , ,

Additional articles

flash-logo

Adobe Patches Zero-Day Flaw Being Exploited in the Wild

Posted January 22, 2015    BeyondTrust Research Team

Earlier this week, French malware researcher Kafeine reported on a new Adobe Flash zero-day vulnerability that was being exploited in the wild using the latest versions of the Angler Exploit Toolkit. “Any version of Internet Explorer or Firefox with any version of Windows will get owned if Flash up to 16.0.0.287 (included) is installed and enabled”…

Tags:
, , , , ,

Your Data Security Strategy Starts with Deploying a Least Privilege Model (part 2 of 2)

Posted January 22, 2015    Scott Lang

In last week’s blog, we talked about how controls and accountability must be put into place so that only the right folks can access data and the systems on which that data resides, and that employing a least privilege model helps to achieve that and more. We’re using conclusions and data from a recent report…

Tags:
, , , ,
Larry-Brock-CISO

Basic Blocking and Tackling for Defending Against Advanced Targeted Attacks

Posted January 22, 2015    Larry Brock

With football season at its pinnacle at both the college and professional levels, the best teams continually focus on the fundamentals that make them successful. In security, we need to do the same.  It is okay for us to have a few key plays, especially in certain industries where we have to focus on unique…

Tags:
, , , , ,