Indeed PAM interacts with end users through an account that will read directory users and their attributes
Alternatively, you can use an existing account.
Or use an already created account.
Membership in the Domain Admins security group is required to reset the password for domain administrators that Indeed PAM should manage. If end users should not receive domain administrator privileges, and Indeed PAM should not manage these accounts, then delegation of rights to reset the password for certain containers or the domain as a whole will be required.
|
File storages are necessary for aggregation and long-term storage of videos, screenshots and files transferred in sessions.
It is recommended that you use an already created IPAMManager account. A domain account is required to work with file storage. |
Indeed PAM uses Microsoft SQL Server or PostgreSQL Pro to store data. The following components require databases:
The rights db_owner for Microsoft SQL Server and Superuser for PostgreSQL are required only for the first access to the database. |
The WEB Server role can be installed using the Powershell script located in the distribution folder \Misc\IISSetup. The script checks for IIS components and installs them if necessary.
Additional components Microsoft .NET Core 3.1 Hosting Bundle and URL Rewrite (from the MSComponents.zip archive) should be installed only after IIS.
For Indeed PAM Core, Indeed PAM Gateway, SSH Proxy and ConsoleApp to interact with Indeed PAM IdP, you need to generate a key and its hash.