background image

 
 
 
 
 
Novell Privileged User Manager

 

Evaluation Quick Start Guide 

 

 
 
2.2 Release 

 

 

 

 

Summary of Contents for PRIVILEGED USER MANAGER 2.2

Page 1: ...Novell Privileged User Manager Evaluation Quick Start Guide 2 2 Release...

Page 2: ...TOR PASSWORD 11 2 3 LOAD AND INSTALL EVALUATION DATABASES 12 2 3 1 LOAD EVALUATION INSTALLER 12 2 3 2 INSTALL EVALUATION DATABASES TO HOST 12 3 0 INITIAL ORIENTATION 14 LOG ON TO THE NOVELL PRIVILEGED...

Page 3: ...vironment Section 3 8 Walk step by step through the example exercises Section 4 1 1 Prerequisites The administration console requires Adobe Flash to operate Binaries for the standard Manager install c...

Page 4: ...ple Command Control rule configuration Sample Command Risk configuration Uninstalling the evaluation package Uninstalling the evaluation database package will restore your previously backed up configu...

Page 5: ...ation o The AIX smitty program o The following command installp acgNQqwX d directory of bff file novellnpum 3 After installation is complete check that the service is running by viewing the log file T...

Page 6: ...ager X X hpux X X ia64 depot 3 After installation is complete check that the service is running by viewing the log file The log file is located in opt novell npum logs unifid log if the default instal...

Page 7: ...utput similar to the following Version 2 2 0 Rev 14967 Bld 4552 linux 2 6 intel Database Version 3 5 7 admin 2 2 0 Rev 14979 Bld 4552 module loaded audit 2 2 0 Rev 14937 Bld 4552 module loaded auth 2...

Page 8: ...ell npum manager X X solaris X X intel pkg 3 After installation is complete check that the service is running by viewing the log file The log file is located in opt novell npum logs unifid log if the...

Page 9: ...the service is running by viewing the log file The log file is located in opt novell npum logs unifid log if the default install location was used You should see an output similar to the following Ver...

Page 10: ...el Database Version 3 5 7 Parent 1508 starting child Version 2 2 0 Rev 14967 Bld 4554 windows 5 0 intel Database Version 3 5 7 Child 1520 main thread starting admin 2 2 0 Rev 14979 Bld 4554 module loa...

Page 11: ...ion console In a browser with access to test machine enter https testmachinename Note When prompted accept security certificate On first use click through the license screen and enter the default cred...

Page 12: ...tration password you set in section 2 2 Windows Copy the evaluation installer file cceval 2 2 pak to a temporary location on your server Change to that directory and issue the following command to loa...

Page 13: ...w select the Evaluation Databases package as shown below and click Next When the install is complete return to the main menu by clicking Home in the breadcrumb trail underneath the title bar at the to...

Page 14: ...tration console In a browser with access to test machine enter https testmachinename Note When prompted accept security certificate If first use click through the license screen and enter the default...

Page 15: ...Home Compliance Auditor click on Home to return to main console menu Centrally manage application installation and update load balancing redundancy of resources and host alerting Proactive auditing t...

Page 16: ...keystroke activity through the rush shell are colored according to risk ranging from Green low to Red high New Events have not been examined Pending Examination in progress Authorized Activity has bee...

Page 17: ...over and encryption settings Create custom filters based on submituser runuser host command string or date Many reports with custom filters can be created and stored for reuse Icon is shown for access...

Page 18: ...talled on the host New packages can be installed to the host when you click on Packages or deleted if a module is selected in the right hand pane Each application module s status and version informati...

Page 19: ...downloading additional modules as an exercise later in this guide Section 3 Initial Orientation New packages can be downloaded directly into the local Package Manager if the host is capable of support...

Page 20: ...ed in the tree When clicking on Command Control at the base of the tree options are available to import or export your configuration settings organize and run test suites and configure built in change...

Page 21: ...ole Section 3 Initial Orientation Specific account information can be set for individual users or globally for all users Groups can be created that have specific roles allowing their members to have v...

Page 22: ...e Command Control event logs Note The color coding comes from Privilege User Managers unique Command Risk Analysis engine each command typed and associated session event is colored according to the fo...

Page 23: ...age 23 c Double click the record colored red You will see that it is not currently possible to edit the record and that icon bottom right is grayed out d Please double click the icon marked Keystroke...

Page 24: ...d Show audited commands and observe how this simplifies the presentation of data to the person auditing activity e Click the Output radio button at the top of the screen to display stdout Section 4 St...

Page 25: ...on needs to be played back simply switch to the input view by clicking the Input radio button at the top of the screen then click the stdin line where you want play back to commence and then click the...

Page 26: ...fresh This is the end of Reviewing keystroke activity proactively To return to the Home Menu click Home near the top of the screen Section 4 Step by Step Exercises If a decision can t be made the even...

Page 27: ...ng Console from the Home Menu b Click on the Command Control Reports icon then the Sample report icon c Click on the LogFiles tab Notice that when rollover is enabled the old log files will all appear...

Page 28: ...dited commands box as below then click Apply Note that usvi is Novell s locked down version of vi and gets called automatically when the user uses vi e Now click back to the Report Data tab Notice how...

Page 29: ...e click the event to bring up the keystroke player as below g Now type vi into the search field and click the Find button as below Notice that the highlight bar moves to the first instance of vi h Cli...

Page 30: ...ds checkbox then click Apply j Click on the Report Data tab Notice how all events are now showing in the list Note Filters can be used ad hoc to search for events with specific criteria or saved for l...

Page 31: ...ecute usrun rush You will be in a shell that is running as root with full keystroke auditing and Command Risk Analysis processing Additionally you should not be able to run the following commands pass...

Page 32: ...osts Console from the Home Menu b Select your host by selecting it in the domain tree then click View Host Log as below This is the end of Review Novell Privileged User Manager System Logs To return t...

Page 33: ...your host a Select the Package Manager console from the Home Menu b Select Settings from the left hand menu Enter the access credentials supplied by Novell into the User name and Password boxes as sho...

Page 34: ...o have in your Framework under Platforms Select any module and click Ctrl A to select all modules for download click Next To select a range Click on the top item and then click on the bottom item whil...

Page 35: ...r looks similar to the following f Click Home on the top menu to return to the Home Menu then select the Hosts Console In this next step we will check to make sure that there are no updated components...

Page 36: ...more hosts in your Framework depending on your evaluation select the Hosts node at the top h Click Update Domain Packages from the left hand menu If there are updates available a list of modules that...

Page 37: ...rnately select or deselect Once your updates have been selected as below click Next Verify the modules on your host s have been updated successfully click Finish If any console updates have been appli...

Reviews: