Subscribe to Windows IT Pro

 

Get Newsletters

  • Get the Latest News
  • Product Updates
  • Helpful Tricks
  • Productivity Tips

Subscribe Now!

November 19, 2008 12:00 AM

Mapping User Access: Is Necessity the Mother of Quest's Invention?

Quest Access Manager announced
Windows IT Pro
InstantDoc ID #100853
Rating: (0)

Here's the challenge with Active Directory (AD) and permissions: It's hard to know where someone was granted access. And if your company has merged with or acquired another, the potential for security problems increases as you go through the inevitable migration. Quest Access Manager, recently announced by Quest Software, is designed to map user access across the enterprise in real time. Given that Quest has acquired numerous companies over the years, and, one supposes, experienced the subsequent pain of migration and access control firsthand, if Access Manager didn't arise out of real-life necessity, it certainly could have.

"It's the most simple app that Quest has produced," says Bob Bobel, senior manager at Quest Software, "Yet it has the most stunning results." Quest Access Manager provides a single point for viewing and managing user and group access across the enterprise and enforcing access policies. "We created a technology that will pre-index where people have access—in a matter of moments it will filter where they don't have access and present a list of where they do." Bobel says the breakthrough point for envisioning the technology was when the realization hit that "modern networks are similar to libraries. Do you use a public library by walking through the stacks? Or using a card catalog?"

Using a security agent, a small index is created in the background. The index list is posted to a central index, which is maintained in real time. An initial scan runs for 10 to 15 minutes, then scans are done incrementally. The index is housed on SQL Server, and SQL Server 2005 Express is shipped with the product. Quest Access Manager supports AD on Windows Server 2008 and Windows Server 2003; the client agents run on Windows Vista and Windows XP.

Although the name might sound familiar, the product is not a former NetPro product. "It comes from our vast migration experience," he says, referring obliquely to Quest's acquisition of numerous companies over the years. "Security is vulnerable during a migration."

The architecture will support agents on other systems, so subsequent releases are expected to include support for non-Microsoft systems. "You'll know where people have access not just on Windows but on Linux and UNIX. Combine it with Quest Authentication Services and you've moved into a realm where no one else can go."

Licensing is $10 per enabled user in AD. To learn more, see Quest Access Manager

Related Content:

ARTICLE TOOLS

Comments
    There are no comments to display. Be the first one!
You must log on before posting a comment.

Are you a new visitor? Register Here

advertisement

advertisement

White Papers

Get your Windows 7 deployment off to the right start by implementing PC lockdown. A locked-down environment is easier and cheaper to support since users are less likely to make unnecessary changes to the core system configuration - read more here!

Essential Guides

Is your iSCSI "lossy"? The reality is that most off-the-shelf Ethernet hardware deployed for iSCSI can lose packets, resulting in slow performance or application downtime. Learn how to assess your current iSCSI infrastructure and engineer an advanced iSCSI SAN infrastructure.

Web Seminars

What's the best way to keep your network safe from malware? In this web seminar, security expert Greg Shields suggests an alternative method to the traditional blacklisting approach that is common with anti-virus and anti-malware solutions.

eLearning Series

We bring the experts direct to you to share their real-world perspective and expertise. During each event, three sessions stream in real time, so you can learn, ask questions, and get solutions.
Upcoming event: Getting the Most with Exchange 2010 with Paul Robichaux

Subscribe to Windows IT Pro!

Windows is a trademark of the Microsoft group of companies. Windows IT Pro is used by Penton Media Inc. under license from owner.