NetIQ adds monitoring, auditing to directory tools - Network World

Skip Links

DNSstuff.com
Get information about your IP
IP Information
50+ On-demand DNS and network tools

Network Management

Videos

rssRss Feed
Get instant email notification when white papers, webcasts, executive guides are added to our library.  Stay informed and up-to-date with the latest on IT Technologies with Network World's Resource Alerts.
Audio

Microsoft / Yahoo heading for a shotgun wedding?. Listen now!

Network World's Twisted Pair

Interop emphasizes savings; Rackspace launches cloud storage. Listen now!

Network World 360

Additional Resources

RSS

FEATURED WHITEPAPERS

Fill the Gaps in Your Disaster Recovery Plan with Single Object Recovery for Active Directory NetPro

Most companies have a solid disaster recovery plan in place to handle a "complete failure" of its Active Directory, which is really quite rare. What most recovery plans are missing, and the most common scenario, is a means to efficiently restore single directory objects. In this paper, we'll explore what most disaster recovery plans already address, highlight potential weak points, and suggest solutions that help fill those gaps-without requiring you to completely re-do your existing plan.

RSS

FEATURED REPORTS

Executive Guide: Storage Heats Up HP

Get the latest on storage technologies that allow IT professionals to better cope with new IT demands. Learn how storage technologies can help you successfully tackle e-Discover, regulatory compliance, green data center initiatives and the data explosion. Get all the details now.

IT Buyer's Guides

View All Buyer's Guides

Free Newsletters

Sign up and receive the latest news, reviews and trends on your favorite technology topics

Save The Date!
What They Are Saying

hello cisco - Anonymous

Join the Discussion

Partner Content
NetScout

NetScout is one of the world's premier providers of integrated network and application performance management solutions.

www.netscout.com

Implementation Best Practices

This guide provides a comprehensive checklist for implementing a proactive Network and Application performance management solution.

Learn More Now.

Reduce Time to Troubleshoot

Discover a unique and powerful approach to reducing MTTR in complex environments.

The KPI to Flow
to Packet Process.

Know What's on Your Network?

Distinguishing Business Use of the Network from Recreational Use.

Read the Whitepaper.

NetIQ adds monitoring, auditing to directory tools

By John Fontana , Network World , 11/14/2005
  • Social Web 
  • Email 
  • Feedback 
  • Close

NetIQ last week released software that tracks changes in Active Directory. The tool is intended to provide corporate users with another weapon for handling compliance regulations.

WithChange Guardian for Active Directory, users can audit and monitor directory changes in real time. Unauthorized or misconfigured changes can lead to users getting inappropriate access or to the opening up of security vulnerabilities. The tool plugs into NetIQ's Security Manager software or is available as a management pack for Microsoft Operations Manager.

"I am getting the ability to use a microscope and look at exactly what I want to look at," says David Valcik, vice president of information technologies at Beverly Enterprises in Fort Smith, Ark., which provides healthcare services to the elderly. Today the company uses NetIQ's Security Manager to audit the directory, which supports 45,000 users and 52,000 objects, but the software forces Valcik's staff to manually sift through log files.

"Anytime we can provide a tool to reduce the cost of auditing, and we can put some controls in place to leverage the tool - that is a win-win situation. If our auditors [internal and external] get comfortable that these tools are solid, it just helps us meet our requirements for Sarbanes-Oxley," Valcik says.

Change Guardian breaks down directory changes into three categories: managed, unmanaged and high-profile. Users can adapt this model to the current tools and procedures they use to manage Active Directory.

The managed-change category includes every change - such as the addition and deletion of users - that is made through the authorized interfaces defined by a company's policies, such as having NetIQ Directory and Resource Administrator as its Active Directory management tool.

Anything not going through an authorized interface - for example, an administrator using native Active Directory tools to add or delete users - is categorized as unmanaged change. This allows users to identify and investigate when changes are made outside normal operational procedures.

1 | 2 |  Next >
Comment
Login
Forgot your account info?
Add comment
Anonymous comments subject to moderator approval. Register here for member benefits.
Have a NetworkWorld account? Log in here. Register now for a free account.
First Name
Last Name
E-mail
Zip Code