Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

Description

PAM components are installed on three different servers. This type of installation allows you to decouple the core Core of the system from the components that provide accessAccess. Recommended for implementation and operation in a production environment.

Components

Management server

  1. Indeed Identity PAM Core
  2. Indeed Identity IdP
  3. Indeed Identity PAM Management Console
  4. Indeed Identity PAM User Console
  5. Indeed Identity Log Server
  6. Indeed Identity PAM EventLog

Access server (RDP/RemoteApp)

  1. Indeed Identity PAM GatewayIndeed Identity PAM SSH Proxy
  2. IndeedID ESSO Admin Pack
  3. IndeedID ESSO Agent

Access server (SSH/SCP/SFTP)

  1. Indeed Identity PAM SSH Proxy

Work scenarios

User scenario

Image AddedImage Removed

  1. Connection to the user's self service via a browser or Indeed Identity PAM Desktop Console. Domain authentication and second factor authentication. Checking the user in the IdP database. Getting a list of resources from the Core database. Obtaining an RDP file to connect to a resource.
  2. Connection to Indeed Identity PAM server Access server (RDP/RemopteApp) using an RDP file, Indeed Identity PAM Desktop Console or connection to Access server (SSH/SCP/SFTP) using a separate SSH client.
  3. Domain authentication and second factor authentication.  Checking Checking the user of the IdP database. Checking the permission to access the Core database.  Retrieving Retrieving service account credentials from the DBMS to work with media storageMediastorage.  Retrieving privileged Retrieving privileged account credentials from the DBMS for connecting to a resource.
  4. Connecting to a resource.
  5. Saving videos and screenshots in the media storage. Saving a text log to the Core database.

Administration scenario

Image AddedImage Removed

  1. Connection to the administrator's self service. Domain authentication and second factor authentication. Checking the user in the IdP database.
  2. Getting, adding and editing system objects. Performing service operations.

Backtotop
Delay0
Distance250


Divbox
classrightFloat

Table of Contents
printablefalse