Indeed PAM Server

Indeed PAM components

  • Indeed PAM Core
  • Indeed PAM Gateway
  • Indeed PAM IdP
  • Indeed PAM Management Console
  • Indeed PAM User Console
  • Indeed Log Server
  • Indeed PAM EventLog

Software requirements

Operating system:

  • Windows Server 2012/2012 R2
  • Windows Server 2016
  • Windows Server 2019

Internet Information Services 7.0 and higher, with the following modules:

  • Static Content
  • HTTP Redirection
  • ASP.NET 4.5
  • .NET Extensibility
  • ISAPI Extensions
  • ISAPI Filters
  • Basic Authentication
  • Windows Authentication
  • IIS Management Console

Additional Microsoft components:

  • Microsoft .NET Framework 4.6.1
  • ASP.NET Core/.NET Core 2.0.9
  • Microsoft Visual C++ 2015 Redistributable x64
  • Microsoft Visual C++ 2017 Redistributable x64
  • URL Rewrite (extension for IIS)

Additional Indeed-ID components (Web sessions/Client application sessions):

  • Indeed-Id ESSO Agent
  • Indeed-Id Admin Pack

Browser (Web sessions/Client application sessions):

  • Microsoft Internet Explorer
  • Mozilla FireFox
  • Google Chrome

Role:

  • Remote Desktop Session Host

Microsoft SQL Server:

  • Microsoft SQL Server 2012 SP2 - 2017, any edition
  • PostgreSQL Pro 11 and later

Hardware requirements

1 - 20 concurrent sessions
(RDP/SSH)

20 - 50 concurrent sessions
(RDP/SSH)

50 - 80 concurrent sessions
(RDP/SSH)

CPU series should be at least Intel® Xeon® E5 v4

At least 8 cores.

At least 16 cores.

At least 32 cores.

At least 16 Gb RAM.

At least 32 Gb RAM.

At least 64 Gb RAM.

Indeed PAM Gateway performance in virtual environment can be less by 20-40%.

Media data storage

You can use any network storage within the Active Directory domain to store video files.

Required disk space is calculated based on the following conditions: concurrent sessions of 20/50/80 users, duration of working day is 8 hours, recording time 60 days.

20 concurrent sessions
(RDP/SSH)
50 concurrent sessions
(RDP/SSH)
80 concurrent sessions
(RDP/SSH)

At least 1,5 TB of free disk space

At least 3 TB of free disk space

At least 5 TB of free disk space

Resources (Windows)

Indeed PAM components

  • Indeed PAM Agent

Software requirements

Operating system:

  • Windwos XP SP3
  • Windows 7 SP1
  • Windows 8
  • Windows 8.1
  • Windows 10
  • Windows Server 2008 SP2 (with KB980368)
  • Windows Server 2008 R2 SP1
  • Windows Server 2012/2012 R2
  • Windows Server 2016
  • Windows Server 2019

Microsoft components (Windows XP):

  • Windows Management Framework Core
  • Microsoft .NET Framework 3.5 SP1
  • Microsoft Installer 4.5

Hardware requirements

  • Hardware requirements are identical to the ones for operating systems that the product is running at

Networking requirements

Active Directory Domain Services

Active Directory Domain Services must be accessible for Indeed PAM server with this type of arrangement.

ComponentProtocol/
Port
Description
Active Directory Domain Services







Inbound and outbound
TCP/UDP 53DNS
TCP/UDP 389 LDAP
TCP 636 LDAPS
TCP 3268Microsoft Global Catalog
TCP 3269 Microsoft Global Catalog SSL
TCP/UDP 88 Kerberos
TCP/UDP 464 Kerberos

Summary networking table


Server/ResourceProtocol/PortDescriptionProtocol/PortDescription
Indeed PAM ServerInboundOutbound

Indeed PAM Core, Management Console, User Console, IdP and Indeed Log Server components function within the Default Web Site bounds and use 80/443 ports by default.
Interaction between components is performed using the ports specified.

TCP 3389RDP connection of end-userTCP 5985/5986WinRM - service operations at  resources (Windows)
TCP 445/139Net use - service operations at  resources (Windows)
TCP 22SSH connection of end-user/service operations (Linux\Unix)
TCP 445Access to network media data storage
TCP 1433Microsoft SQL Server
UDP 1434Microsoft SQL Server
TCP 5432PostgreSQL Pro
Resources
(Windows)
InboundOutbound

TCP 3389RDP connection of end-user




TCP 5985/5986WinRM - service operations

TCP 139/445Net use - service operations
Resources
(Unix\Linux)
InboundOutbound
TCP 22SSH connection of end-user/service operations

  • No labels