- Created by Pavel Golubnichiy on Sep 21, 2020
You are viewing an old version of this page. View the current version.
Compare with Current View Page History
Version 1 Next »
Management Server
Indeed PAM components
- Indeed PAM Core
- Indeed PAM IdP
- Indeed PAM Management Console
- Indeed PAM User Console
- Indeed Log Server
- Indeed PAM EventLog
Software requirements
Operating system:
- Windows Server 2012/2012 R2
- Windows Server 2016
- Windows Server 2019
Internet Information Services 7.0 and higher, with the following modules:
- Static Content
- HTTP Redirection
- ASP.NET 4.5
- .NET Extensibility
- ISAPI Extensions
- ISAPI Filters
- Basic Authentication
- Windows Authentication
- IIS Management Console
Additional Microsoft components:
- Microsoft .NET Core 3.1 Hosting Bundle
- URL Rewrite (IIS extension)
DBMS supported:
- Microsoft SQL Server 2012 SP2 - 2017, any edition
- PostgreSQL Pro 11 and later
Hardware requirements
Components | Requirement |
---|---|
CPU | 4 Cores |
RAM | 8 GB |
HDD | 60 GB |
Access Server
Indeed PAM Components
- Indeed PAM Gateway
- Indeed PAM SSH Proxy
- Indeed ESSO Agent
- Indeed Admin Pack
Software requirements
Operating system:
- Windows Server 2012/2012 R2
- Windows Server 2016
- Windows Server 2019
Additional Microsoft components:
- Microsoft Windows Desktop Runtime 3.1
Additional Indeed-ID components (Web sessions/Client application sessions):
- Indeed-Id SSO Agent
- Indeed-Id Admin Pack
Browser (Web sessions/Client application sessions):
- Microsoft Internet Explorer
- Google Chrome
Role:
- Remote Desktop Session Host
Hardware requirements
Components | 1 - 20 RDP/SSH sessions | 21 - 50 RDP/SSH sessions | 51 - 100 RDP/SSH sessions |
---|---|---|---|
CPU | 16 Cores | 28 Cores | 50 Cores |
RAM | 8 GB | 16 GB | 32 GB |
HDD SATA/SAS | 1 x 60 GB | 2 x 60 GB | 2 x 120 GB |
RAID | - | + | + |
Network adapter | 1 Gb | 1 Gb | 1 Gb |
File storage
Media data storage
You can use any network storage within the Active Directory domain to store video files.
Required disk space is calculated based on the following conditions: concurrent sessions of 20/50/100 users, duration of working day is 8 hours, recording time 30 days. The average size of one hour of video recording is 60 MB.
Component | 20 RDP/SSH sessions | 50 RDP/SSH sessions | 100 RDP/SSH sessions |
HDD | ~ 300 GB | ~ 750 GB | ~ 1,5 TB |
Disk space was calculated with medium compression and moderate user activity in the session. If the compression parameters will differ from the average, and the user's activity will be very high or too low, then the actual video size may differ from the listed values both to a smaller and a larger side.
Shadow copy file storage
Any server that is part of an Active Directory can be used as a storage for shadow copies of files. The size of disk space is calculated individually, and will depend on the intensity of copying files to destination servers, and on the size of the transferred files.
Network connectivity
Active Directory Domain Services
Indeed PAM Management Console, User Console, and Indeed Log Server components may not be part of Active Directory.
Other Indeed PAM components will require access to Active Directory Domain Services.
Active Directory Domain Services | Incoming and outgoing | |
---|---|---|
TCP/UDP 53 | DNS | |
TCP/UDP 389 | LDAP | |
TCP 636 | LDAPS | |
TCP 3268 | Microsoft Global Catalog | |
TCP 3269 | Microsoft Global Catalog SSL | |
TCP/UDP 88 | Kerberos | |
TCP/UDP 464 | Kerberos |
Networking Summary Table
Management server | Incoming | Outgoing | ||||
TCP 80/443 | Access Server - Accessing Core and IdP | TCP 5985/5986 | WinRM service operations on the resources (OS Windows) | |||
TCP 139/445 | Access server - access to the network video storage | TCP 22 | SSH service operations on the resources (OS *nix) | |||
TCP 1433 | Microsoft SQL Server | |||||
TCP 5432 | PostgreSQL, PostgreSQL Pro | |||||
Access sever | Incoming | Outgoing | ||||
TCP 3389 | RDP end user connection | TCP 80/443 | Indeed PAM Core Indeed PAM IdP | |||
TCP 3389 | RDP connection to the target resource (OS Windows) | |||||
TCP 22 | SSH connection to the target resource (OS *nix) | |||||
TCP 139/445 | Network Video Storage Access | |||||
Windows Resources | Incoming | Outgoing | ||||
TCP 3389 | RDP end user connection | |||||
TCP 5985/5986 | Management Server - WinRM service operations | |||||
*nix Resources | Incoming | Outgoing | ||||
TCP 22 | SSH end user connection | |||||
TCP 22 | Management Server - service operations |
- No labels