OSM's COSduty-SSA for privileged user management and IT operations workflow control Systems and security management for UNIX, Linux and Windows

OSM News

 

 

Architecture overview

4 For a complete overview of COSduty-SSA access the COSduty-SSA datasheet.

4 For a more complete description of its functionality access the COSduty-SSA white paper.

 

 

 

Figure 1 – COSduty Secure Shell Auditing (SSA) architecture

 

COSduty-SSA Server

At the center of any COSduty-SSA environment lies one or more COSduty-SSA Servers. This manages all the object data (data about duties, managed systems, access controls, for example) in the COSduty-SSA environment and performs all the scheduling and allocation of tasks. If considerations of throughput and resilience indicate it, more than one COSduty-SSA Server may be installed. The main characteristics of the COSduty-SSA Server are:

  • Runs on all major variants of UNIX and Linux
  • Network capable so that duties may be carried out on any system across the enterprise from a central point(s)
  • Configurable communications methods including industry standards such as SSH and OSM's own encrypted method
  • OSM Toolset commands for encapsulating routines into a common GUI
  • Failover capability so that work may continue in the event of a server going down by failing over to another designated server
  • MS Windows, X Windows, command line and web browser user interfaces
  • Support for an unlimited number of duties and managed servers
  • Scheduler for duties due to be run according to a particular calendar
  • Pre-configured duties for routine security checks for common variants of UNIX and Linux
  • Pre-configured duties for requesting privileged use sessions
  • Support for different types of managed object e.g. operating systems, databases, applications or even manual tasks
  • Comprehensive access controls
  • Integrated with BMC PATROL for proactive monitoring

COSduty-SSA Agent

Any UNIX, Linux or Microsoft Windows system within the enterprise, including the COSduty-SSA Server, can be managed by the COSduty-SSA Server(s) by loading a COSduty-SSA Agent in conjunction with some other form of company standard communications method e.g. SSH. The main characteristics of the COSduty-SSA Agent are:

  • Runs on all major variants of UNIX, Linux and Microsoft Windows operating systems
  • Supports OSM-specific encrypted communications and SSH
  • Lightweight, installable from the COSduty-SSA Server by OSM supplied software and requiring no host-specific licence key

COSduty-SSA Audit Log Server

All audit trails and logs generated from COSduty-SSA are immediately transmitted to an Audit Log Server, normally a low cost appliance. The main characteristics of the COSduty-SSA Audit Log Server are:

  • Runs on all major variants of UNIX and Linux
  • Holds all audit trails away from privileged users who are being audited
  • Audit trails are kept in a relational database format for easy searching and alerting of sensitive command sequences.

Other sources of information

Download datasheets (including those referenced above), white papers, case studies, and Microsoft PowerPoint presentations from the resource library.

 

Privacy

Legal

Contact

Copyright© 2006  Open Systems Management Limited