Welcome!

@CloudExpo Authors: Elizabeth White, Dan Potter, William Schmarzo, Liz McMillan, Gregor Petri

Blog Feed Post

Centrify Delivers Windows Privilege Management to Mitigate Internal Threats to Systems On-Premise and in the Cloud

New Centrify Suite 2013 Uniquely Helps Organisations Meet Compliance Requirements and Reduce Costs for the Broadest Set of Cloud and On-Premise Platforms

London, UK - Jan 29, 2013 - Centrify Corporation, the leader in Unified Identity Services across data center, cloud and mobile, today announced the general availability of the latest version of the Centrify Suite security and compliance solution in use today by more than 4,500 organisations worldwide. Featuring new advanced privileged user management and auditing for Windows systems, as well as new "sudo" migration tools for Linux systems, Centrify Suite 2013 enables organisations to quickly and effectively meet compliance requirements, mitigate risks from internal threats, and reduce operational costs across the broadest set of cross-platform systems deployed on-premise and in the cloud.

In today's heterogeneous IT environments, achieving security best practices and compliance by linking access privileges and actions to named users is a complex task. Managing user privileges for Windows, UNIX and Linux systems can be difficult to implement since identities and privileges often reside in disparate silos or are managed locally system by system. Point solutions exist for privilege management of Windows systems or UNIX and Linux systems, but no solutions exist that span across both Windows and UNIX/Linux that utilise a unified architecture leveraging existing directory infrastructure. Centrify Suite 2013 offers a comprehensive approach to identity management that includes integrated authentication, access control, privilege management, policy enforcement and compliance — all based on a single, unified architecture that leverages Microsoft Active Directory. This eliminates the need for IT staff to install, configure and manage multiple single-purpose products from a collection of other vendors.

According to Gartner, "…there is a need for the organisation to have more granular control over and visibility into the way that these privileges are granted and used. Super User Privilege Management (SUPM) tools offer a flexible method for granting and/or limiting these privileges in a way that matches the organisation's needs." [1]

Windows Privileged Management
Centrify Suite 2013 now includes DirectAuthorize for Windows, a new integrated solution that eliminates problems associated with too many users having broad and unmanaged administrative powers by delivering secure delegation of privileged access and granularly enforcing who can perform what administrative functions. Key features of DirectAuthorize for Windows include:

  • Secure delegation of privileged administration for Windows Servers. DirectAuthorize eliminates wide-open privileges of Windows and Domain administrators and grants privileges to only the roles, rights and resources required for each administrator's job function. It also allows administrators to easily elevate privilege without having to re-enter passwords or know an administrative password.

  • Granular authorisation and enforcement of administrative functions. DirectAuthorize goes beyond capabilities found natively in Windows by time limiting privileges for any user, restricting the access rights of high-privilege roles to specific systems, services or applications. It also delivers secure delegation using Centrify's patented Zones technology that provides the necessary flexibility and granularity for administrative functions.

  • Seamless integration with user-level auditing. DirectAuthorize integrates with Centrify DirectAudit to easily add user-session capture, search and playback, and can automatically trigger high-value session recording based on user, role, system or privilege elevation.

Enhanced Privilege Management for UNIX and Linux
In addition to the new Windows privilege management capabilities, Centrify Suite 2013 builds on its core capabilities to further empower organisations to easily migrate and manage identities and secure privileged user access across UNIX and Linux systems. New Linux- and UNIX-specific functionalities now available in Suite 2013 include:

  • Centralised UNIX/Linux authorisation with simple SUDO migration and SUDO replacement features. New import wizards automate the retrieval and import of sudoers' files for centralised enforcement via the Centrify Suite.

  • Enhanced user policy enforcement and administrative session audits. DirectAudit policies can now trigger auditing sessions for specific user, computer and DirectAuthorize roles.

  • Additional UNIX and Linux platform support. Already supporting the most platforms in the industry, the new solution now supports more than 400 platforms, applications and devices, including new platforms such as Fedora 18; Red Hat Enterprise Linux 5.8, 5.9 and 6.3; CentOS 5.8, 5.9 and 6.3; Scientific Linux 5.8, 5.9 and 6.3; Oracle Linux 6.3; Ubuntu 12.10; Linux Mint 13 and 14; Mandriva One 2012; and OpenSuSE 12.2 and 12.3.

"Centrify Suite 2013 raises the bar in delivering enhanced functionality for organisations to secure their systems and protect their resources across cloud and on-premise environments, including Windows least-privilege access management," said Matt Hur, Centrify senior director of product management. "With Centrify, organisations take advantage of their existing Microsoft Active Directory investments across the industry's broadest set of platforms in heterogeneous environments to centralise disparate identities and control privileged access for improved security and compliance."

Pricing and Availability
Centrify Suite 2013 is available today from Centrify and authorised partners worldwide. For more information about the Centrify Suite and a five-minute demo of the new DirectAuthorize for Windows, visit http://www.centrify.com/suite. To request a free Centrify Suite 2013 trial, visit http://www.centrify.com/trial.

Note 1 - Gartner, "Hype Cycle for Identity and Access Management Technologies, 2012," by Gregg Kreizman, et al, July 23, 2012.

About Centrify
Centrify provides Unified Identity Services across the data center, cloud and mobile that results in one single login for users and one unified identity infrastructure for IT. Centrify's solutions reduce costs and increase agility and security by leveraging an organisation's existing identify infrastructure to enable centralised authentication, access control, privilege management, policy enforcement and compliance. Centrify customers typically reduce their costs associated with identity lifecycle management and compliance by more than 50 percent. With more than 4,500 customers worldwide, including 40 percent of the Fortune 50 and more than 60 Federal agencies, Centrify is deployed on more than one million server, application and mobile device resources on-premise and in the cloud. For more information about Centrify and its solutions, visit http://www.centrify.com/.

###

Centrify, DirectAudit, DirectControl and DirectSecure are registered trademarks and DirectAuthorize and DirectManage are trademarks of Centrify Corporation in the United States and other countries.

Contact:
Michael Rennett
[email protected]
020 8392 4086

Read the original blog entry...

More Stories By RealWire News Distribution

RealWire is a global news release distribution service specialising in the online media. The RealWire approach focuses on delivering relevant content to the receivers of our client's news releases. As we know that it is only through delivering relevance, that influence can ever be achieved.

@CloudExpo Stories
"When you think about the data center today, there's constant evolution, The evolution of the data center and the needs of the consumer of technology change, and they change constantly," stated Matt Kalmenson, VP of Sales, Service and Cloud Providers at Veeam Software, in this SYS-CON.tv interview at 18th Cloud Expo, held June 7-9, 2016, at the Javits Center in New York City, NY.
Redis is not only the fastest database, but it is the most popular among the new wave of databases running in containers. Redis speeds up just about every data interaction between your users or operational systems. In his session at 19th Cloud Expo, Dave Nielsen, Developer Advocate, Redis Labs, will share the functions and data structures used to solve everyday use cases that are driving Redis' popularity.
Internet of @ThingsExpo, taking place November 1-3, 2016, at the Santa Clara Convention Center in Santa Clara, CA, is co-located with the 19th International Cloud Expo and will feature technical sessions from a rock star conference faculty and the leading industry players in the world and ThingsExpo Silicon Valley Call for Papers is now open.
You think you know what’s in your data. But do you? Most organizations are now aware of the business intelligence represented by their data. Data science stands to take this to a level you never thought of – literally. The techniques of data science, when used with the capabilities of Big Data technologies, can make connections you had not yet imagined, helping you discover new insights and ask new questions of your data. In his session at @ThingsExpo, Sarbjit Sarkaria, data science team lead ...
To leverage Continuous Delivery, enterprises must consider impacts that span functional silos, as well as applications that touch older, slower moving components. Managing the many dependencies can cause slowdowns. See how to achieve continuous delivery in the enterprise.
"My role is working with customers, helping them go through this digital transformation. I spend a lot of time talking to banks, big industries, manufacturers working through how they are integrating and transforming their IT platforms and moving them forward," explained William Morrish, General Manager Product Sales at Interoute, in this SYS-CON.tv interview at 18th Cloud Expo, held June 7-9, 2016, at the Javits Center in New York City, NY.
Up until last year, enterprises that were looking into cloud services usually undertook a long-term pilot with one of the large cloud providers, running test and dev workloads in the cloud. With cloud’s transition to mainstream adoption in 2015, and with enterprises migrating more and more workloads into the cloud and in between public and private environments, the single-provider approach must be revisited. In his session at 18th Cloud Expo, Yoav Mor, multi-cloud solution evangelist at Cloudy...
Aspose.Total for .NET is the most complete package of all file format APIs for .NET as offered by Aspose. It empowers developers to create, edit, render, print and convert between a wide range of popular document formats within any .NET, C#, ASP.NET and VB.NET applications. Aspose compiles all .NET APIs on a daily basis to ensure that it contains the most up to date versions of each of Aspose .NET APIs. If a new .NET API or a new version of existing APIs is released during the subscription peri...
Security, data privacy, reliability, and regulatory compliance are critical factors when evaluating whether to move business applications from in-house, client-hosted environments to a cloud platform. Quality assurance plays a vital role in ensuring that the appropriate level of risk assessment, verification, and validation takes place to ensure business continuity during the migration to a new cloud platform.
SYS-CON Events announced today that 910Telecom will exhibit at the 19th International Cloud Expo, which will take place on November 1–3, 2016, at the Santa Clara Convention Center in Santa Clara, CA. Housed in the classic Denver Gas & Electric Building, 910 15th St., 910Telecom is a carrier-neutral telecom hotel located in the heart of Denver. Adjacent to CenturyLink, AT&T, and Denver Main, 910Telecom offers connectivity to all major carriers, Internet service providers, Internet backbones and ...
Ovum, a leading technology analyst firm, has published an in-depth report, Ovum Decision Matrix: Selecting a DevOps Release Management Solution, 2016–17. The report focuses on the automation aspects of DevOps, Release Management and compares solutions from the leading vendors.
Continuous testing helps bridge the gap between developing quickly and maintaining high quality products. But to implement continuous testing, CTOs must take a strategic approach to building a testing infrastructure and toolset that empowers their team to move fast. Download our guide to laying the groundwork for a scalable continuous testing strategy.
Adding public cloud resources to an existing application can be a daunting process. The tools that you currently use to manage the software and hardware outside the cloud aren’t always the best tools to efficiently grow into the cloud. All of the major configuration management tools have cloud orchestration plugins that can be leveraged, but there are also cloud-native tools that can dramatically improve the efficiency of managing your application lifecycle. In his session at 18th Cloud Expo, ...
SYS-CON Events announced today that LeaseWeb USA, a cloud Infrastructure-as-a-Service (IaaS) provider, will exhibit at the 19th International Cloud Expo, which will take place on November 1–3, 2016, at the Santa Clara Convention Center in Santa Clara, CA. LeaseWeb is one of the world's largest hosting brands. The company helps customers define, develop and deploy IT infrastructure tailored to their exact business needs, by combining various kinds cloud solutions.
Qosmos has announced new milestones in the detection of encrypted traffic and in protocol signature coverage. Qosmos latest software can accurately classify traffic encrypted with SSL/TLS (e.g., Google, Facebook, WhatsApp), P2P traffic (e.g., BitTorrent, MuTorrent, Vuze), and Skype, while preserving the privacy of communication content. These new classification techniques mean that traffic optimization, policy enforcement, and user experience are largely unaffected by encryption. In respect wit...
SYS-CON Events announced today that Venafi, the Immune System for the Internet™ and the leading provider of Next Generation Trust Protection, will exhibit at @DevOpsSummit at 19th International Cloud Expo, which will take place on November 1–3, 2016, at the Santa Clara Convention Center in Santa Clara, CA. Venafi is the Immune System for the Internet™ that protects the foundation of all cybersecurity – cryptographic keys and digital certificates – so they can’t be misused by bad guys in attacks...
SYS-CON Events announced today the Kubernetes and Google Container Engine Workshop, being held November 3, 2016, in conjunction with @DevOpsSummit at 19th Cloud Expo at the Santa Clara Convention Center in Santa Clara, CA. This workshop led by Sebastian Scheele introduces participants to Kubernetes and Google Container Engine (GKE). Through a combination of instructor-led presentations, demonstrations, and hands-on labs, students learn the key concepts and practices for deploying and maintainin...
The cloud market growth today is largely in public clouds. While there is a lot of spend in IT departments in virtualization, these aren’t yet translating into a true “cloud” experience within the enterprise. What is stopping the growth of the “private cloud” market? In his general session at 18th Cloud Expo, Nara Rajagopalan, CEO of Accelerite, explored the challenges in deploying, managing, and getting adoption for a private cloud within an enterprise. What are the key differences between wh...
ReadyTalk has expanded the capabilities of the FoxDen collaboration platform announced late last year to include FoxDen Connect, an in-room video collaboration experience that launches with a single touch. With FoxDen Connect, users can now not only engage in HD video conferencing between iOS and Android mobile devices or Chrome browsers, but also set up in-person meeting rooms for video interactions. A host’s mobile device automatically recognizes the presence of a meeting room via beacon tech...
Deploying applications in hybrid cloud environments is hard work. Your team spends most of the time maintaining your infrastructure, configuring dev/test and production environments, and deploying applications across environments – which can be both time consuming and error prone. But what if you could automate provisioning and deployment to deliver error free environments faster? What could you do with your free time?