Access Logs and Reports
Logging Password Disclosure
Hitachi ID Privileged Password Manager logs all attempted and completed password updates. This data can be used to track not only current privileged passwords for workstations and servers, but also device IP addresses and network status.
Privileged Password Manager also logs all attempts by users to look up devices and to display passwords. This creates a chain of accountability, making it clear who accessed what device and when and also who attempted to access a device and was blocked by policy or failure to get approval.
Exit traps can be used to forward copies of Privileged Password Manager log entries to another system (e.g., an SIEM) for analytics and tamper-proof archive.
Reports Create Accountability
Privileged Password Manager includes event reports, which make it possible to see, among other things:
- Who disclosed passwords to given resources.
- How often any given password was disclosed.
- When and how often passwords were changed on target systems.
- How often users attempted to sign into Privileged Password Manager.
- What the results of those authentication attempts were.
The Privileged Password Manager schema is well documented and the database is a standard, relational SQL back-end. This makes it possible for Hitachi ID Systems customers to write custom reports using off-the-shelf programs such as Crystal Reports or Cognos BI.
Supporting Regulatory Requirements
By recording administrative access to key systems and in some cases by requiring multiple people to approve such access before it happens, Privileged Password Manager can both limit and record access to sensitive systems that contain privacy-protected or financial data. These controls assist in complying with regulations such as HIPAA, SOX, PCI and more.
Watch a Movie
