NetVision

NetVision Company Blog

A Discussion on Effective Audit of User Access

The Business Value of Effective Audit

Tags: ,

There’s a new white paper on the NetVision Knowledge page titled:

The Business Value of Effective Audit

Effective access auditcan be a powerful business enabler providing significant value beyond protecting against malicious insiders. This paper identifies the business challenge, how the industry is approaching the challenge, and NetVision’s unique approach to access rights reporting and monitoring.

TryIt! Free Access Rights Answers

Tags: , , , ,

Today, NetVision released the free TryIt! edition of Access Rights Inspector. You can now download a small scanner to run on your own server and get four useful reports:

  • User or Group Report – report on all resources to which a given user or group has access.
  • File or Folder Report – report on all accounts that have access to a given file or folder.
  • Direct User Assignments – report on all instances of permissions being assigned directly to user accounts (instead of via groups).
  • Explicit Deny Entries – report on all instances of explicitly denied permissions.

Like the full version of Access Rights Inspector, this one accounts for groups, nested groups, inherited permissions, deny entries, object ownership, share permissions, and more.  So, if you have questions like ‘Who has access to this file?‘ or ‘What does that person have access to?‘, this is a quick and free way to get the complete answer on a single server.

If you’re looking for something more powerful, we of course would like you to take a look at this 3-minute demo of the full version of Access Rights Inspector.

Access Rights Inspector

Tags: , ,

NetVision is proud to introduce Access Rights Inspector.

Access Rights Inspector provides effective rights on Active Directory objects and Windows File System. It removes the complexity of rights assignments, nested group memberships, explicit rights granted directly to users, deny entries, and inherited permissions.

To get the basics, take a look at this 5 minute video presentation

Baby got Back(ing)

Tags: ,

You might have seen today that NetVision recently secured Series B financing.  If not, please take a look at the release.  Obviously, we’re happy and proud to get an edorsement from the great minds at vSpring and PEC.  This round enables us to stay focused on innovation in delivering solutions such as the SIMON managed service.  …stay tuned for future innovations that are currently on the design table!

3-Minute Introductory Demo

Tags: , ,

We put together this quick-and-dirty 3-minute introduction into one of NetVision’s core product offerings – directory monitoring.  In this example, we make a few common changes in Active Directory and show how the changes show up in our reports.

NetVision Advertisements

Tags:

NetVision is running a new ad campaign focused on the common need of Active Directory administrators to get real-world answers.

Gets the answers you need

 

Prior to this campaign, we ran a Security Ninja campaign that was pretty fun. Readers had a chance to win a Samurai sword that was a replica of the Kill Bill bride sword.

Security Ninja

Actionable Intelligence

Tags: , , , ,

In my other blog, I recently discussed how Actionable Intelligence seems to be the achilles heal of SIEM solutions.  I promised to continue that discussion with a few words about NetVision’s approach to the problem.  And it’s quite simple actually.

The SIEMs and enterprise log management vendors seemed to have started from a different viewpoint.  They began by thinking about the dozens (or hundreds) of systems and applications that generate logs.  They thought about how to best collect logs from heterogeneous sources and then attempted to correlate information across different types of data.  For some organizations, these solutions must seem heaven-sent.  How else would you deal with all that log information?  How else would you collect, capture, and store those logs in case you need to look through them in the future?

Where they seem to fall short, though, is in providing actionable intelligence about what’s happening in the environment.  How could they?  They collect logs from hundreds of systems at once.  Even if it’s possible to setup alerts or actions based on some activity, someone would need to figure out how to interpret the logs, understand what possible values would be in the logs, configure the appropriate response to each event type in each system, and constantly monitor and keep them all up to date.  Doesn’t sound fun.  Certainly not simple.

Our angle of sight is different.  We see the core network directory (Microsoft Active Directory or Novell eDirectory) as the heart of the network.  It grants network access (sometimes local access to the workstation) and is often used to authenticate requests from VPNs, portals, and other systems.  A new account in the directory means a new identity to keep track of and a new potential threat on the network.  So that’s where we’ve focused since 1995.

We are buried deep within the core network directory and related file systems.  We don’t scrape logs and we’re not worried about what logs are being generated by some router or web server out in the network. Because of that focus, we have been able to build extensive tools that make it easy to filter on the types of events and information that are important to you.  And we’ve taken it a step further.

With our SIMON managed service, you don’t have to know anything about creating policies or configuring filters.  We do it all for you based on best-practices, years of experience, and your own personal needs.

The end result?  Actionable Intelligence.

You get emails when you want them that tell you who made a change, what change they made, and the before- and after- values.  Some events just write to the database, others kick out files, others generate alerts.  Some decisions are based on the resource (domain admins group).  Other decisions are based on the actor (employees scheduled to exit the company), the attribute changed, or even the time-of-day.  Data is transformed immediately into information and then analyzed and re-routed as appropriate.

This isn’t some future reality either.  We’ve been doing this a long time.  And we keep getting better.  I can’t wait to tell you what’s next for us.

Audit Monthly

Tags: ,

Audit Monthly is NetVision’s monthly newsletter featuring tips and information on effective security audit.  In addition to the main content area, monthly recurring side-bar sections include:

  • Auditor Tips - features tips and insight from security audit industry veterans.
  • Product Corner - includes highlights and updates from NetVision’s product management group.
  • From the Field - provides real-world stories from NetVision’s field sales and service teams.

Subscribe to Audit Monthly.

New Blog

Tags:

Welcome to NetVision’s new corporate blog. We look forward to many interesting conversations!

© 2009 NetVision Company Blog. All Rights Reserved.

This blog is powered by Wordpress and Magatheme by Bryan Helmig.