SlideShare una empresa de Scribd logo
1 de 20
@solarwinds
Monitoring and Securing Active Directory
Government Webinar for the United States Army
September 10, 2019
@solarwinds 2
Speaker Introduction
Jordan Pfeiffer
Army Account Manager
jordan.pfeiffer@solarwinds.com
512.498.6584 (office)
Mike McDowell
Sr. Federal Sales Engineer
michael.mcdowell@solarwinds.com
703.386.2616 (office)
© 2019 SolarWinds Worldwide, LLC. All rights reserved.
@solarwinds 3
• SolarWinds Overview
• Active Directory® (AD) challenges, threats, and best
practices
• System, application, and log monitoring for AD
• Server & Application Monitor
• Log Analyzer
• Security Event Manager
• Leveraging access rights management for AD
• Access Rights Manager
• Demonstrations
• Q&A
• Additional resources
Agenda
© 2019 SolarWinds Worldwide, LLC. All rights reserved.
@solarwinds 4
SolarWinds at a Glance
1. Customers are defined as individuals or entities that have an active subscription for our subscription products or that have purchased one or more of our perpetual license products since our inception under a unique customer identification number. We may have multiple
purchasers of our products within a single organization, each of which may be assigned a unique customer identification number and deemed a separate customer.
2. IDC defined Network Management Software functional market, IDC’s Worldwide Semiannual Software Tracker, October 2018.
3. Source: Gartner, Market Share Analysis: ITOM: Performance Analysis Software, Worldwide, 2017. July 9, 2018. (AIOps/ITIM/Other Monitoring Tools Software Market ). SolarWinds term, Systems Management, refers to the AIOps/ITIM/Other Monitoring Tools Software
Market Taxonomy referenced in the Gartner report. All statements in this report attributable to Gartner represent SolarWinds interpretation of data, research opinion or viewpoints published as part of a syndicated subscription service by Gartner, Inc., and have not been
reviewed by Gartner. Each Gartner publication speaks as of its original publication date (and not as of the date of this [presentation]). The opinions expressed in Gartner publications are not representations of fact and are subject to change without notice.
#1
in Network
Management2
300,000+
customers in 190
countries1
50+
IT management
products
22,000+ MSPs serving
450,000+ organizations
Every branch of the DoD, and
nearly every civilian and
intelligence agency
150,000+ registered members of THWACK®, our global IT community
Founded in 1999
More than 2,500
employees globally
Austin, TX headquarters
Herndon, VA government office
30+ offices globally
Leader
in Remote Monitoring
and Management
#4
in Systems
Management3
Growing Security
Portfolio
500 of
Fortune 500®
© 2019 SolarWinds Worldwide, LLC. All rights reserved.
@solarwinds 5
SolarWinds on CHESS ITES-SW Contract
• SolarWinds is now available for
purchase on CHESS ITES-SW
• #W52P1J-15-D-0008 via Carahsoft
© 2018 SolarWinds Worldwide, LLC. All rights reserved.
SolarWinds products available on the contract:
• Network Performance Monitor
(NPM)
• NetFlow Traffic Analyzer (NTA)
• Network Configuration Manager
(NCM)
• Network Topology Mapper (NTM)
• VoIP & Network Quality Manager
(VNQM)
• IP Address Manager (IPAM)
• User Device Tracker (UDT)
• Additional Polling Engine
• Additional Web Server
• High Availability (HA)
• Enterprise Operations Console (EOC)
• Server & Application Monitor (SAM)
• Web Performance Monitor (WPM)
• Engineer's Toolset™ (ETS)
• Standard Tool Set
• Kiwi Syslog® Server
• Kiwi CatTools®
• Mobile Admin (MA)
• Security Event Manager (SEM),
formerly Log & Event Manager (LEM)
@solarwinds 6
SolarWinds on DoDIN APL
• We’re excited to announce after
rigorous testing, the Orion® Suite for
Federal Government v3.0 has been
placed on the Department of
Defense Information Network
(DoDIN) Approved Products List
(APL).
• The Orion Suite also has Common
Criteria certification.
© 2018 SolarWinds Worldwide, LLC. All rights reserved.
The Orion Suite for Federal Government v3.0
includes:
• Network Performance Monitor v12.2
• Server & Application Monitor v6.6
• Network Configuration Manager v7.7
• NetFlow Traffic Analyzer v4.2.3
• IP Address Manager v4.6
• User Device Tracker v3.3
• VoIP & Network Quality Manager v4.4.1
• Web Performance Monitor v2.2.1
• Enterprise Operations Console v2.0
• Storage Resource Monitor v6.6
• Virtualization Manager v8.2
@solarwinds 7
SolarWinds Army Case Studies
© 2018 SolarWinds Worldwide, LLC. All rights reserved.
DoD Quotes: https://www.techvalidate.com/portals/solarwinds-government?collection=military-us-federal-government
DoD Case Studies: https://www.techvalidate.com/portals/solarwinds-government?collection=dod-quotes
@solarwinds 8
Building Great Products That Simply Work Is at Our Core
© 2019 SolarWinds Worldwide, LLC. All rights reserved.
End User-Driven Product Strategy With a Constantly Growing OfferingFocused on Ease and Efficiency
Geekbuilt.®
Roadmap driven by end-users and products developed by
IT Professionals who understand today’s IT environment
Massive User Community
150K+ registered THWACK members; in 2017,
THWACK averaged over 7,000 daily unique visitors
22K+ MSPs access the MSP Institute
and Customer Success Center
Solve clearly identified problems
Orion®
Platform
Hybrid IT
management
Cloud Management
Affordable full-stack
monitoring for cloud
management teams
SolarWinds
MSP
Remote monitoring
and management
platforms, backup,
and email security
Easy to try, find, and buy
Ready to use
Security
Security, simplified
@solarwinds 9
Our Approach to ProductOurCorePrinciplesNotableExamples
Simple and
powerful
Deliver complete
visibility for hybrid IT
Grow with our
customers
Enable application-
centric management
•Quick value after install
•Seamless UX across
product portfolio
•Native support of the major
on-premises and public clouds
•Unified, integrated experience
•Start small, solve the first
problem, and be ready for
the next
•Add new capabilities quickly
• AppStack™ – manage the entire
app, not just components
• PerfStack™ – real-time
troubleshooting across the
modern app and infrastructure
stack
• NetPath™ – manage the network, not
just elements
• Cloud Infrastructure Monitoring –
AWS® and Azure® infrastructure
monitoring
•Support management of
traditional and modern apps
• Network Insight™ – deep
visibility for the modern
network stack across
performance and
configuration
• AppInsight™ – deep visibility
for packaged application
performance
• Increased scale – support for
400,000 NPM elements in a
single instance
• Simplified multi-product
installer – single installer to
automatically resolve upgrade
and install dependencies
© 2019 SolarWinds Worldwide, LLC. All rights reserved.
@solarwinds 10
AD Challenges and Threats
• Can be complex and difficult to administer
• Provisioning and deprovisioning users
• Defining user roles and delegation of tasks
• Auditing changes and demonstrating compliance
• AD is prone to being hacked
• AD crashes lead to network downtime
• Tracking changes can be difficult
• Inadequate reporting
© 2019 SolarWinds Worldwide, LLC. All rights reserved.
@solarwinds 11
AD Best Practices
• Utilize least-privilege principle in AD roles and groups
• Control AD admin privileges and limit domain user accounts
• Employ auditing and alerting
• Regularly backup your AD configuration and directory
• Patch vulnerabilities
• Standardize and increase efficiency for provisioning process
© 2019 SolarWinds Worldwide, LLC. All rights reserved.
@solarwinds 12
With SolarWinds Server & Application Monitor
Quickly Find and Troubleshoot Issues
• Diagnose AD replication issues
• Quickly view replication status between domain controllers to ensure
overall AD health
• Review domain controller roles
• See all domain controllers and their corresponding FSMO roles
• View AD site details
• Gain insight into AD infrastructure across your enterprise
• Monitor logon and Windows® Events
• See logon event summaries with detailed drill downs that can help
support AD auditing
© 2019 SolarWinds Worldwide, LLC. All rights reserved.
@solarwinds 13
Leveraging AD Logs to Improve Monitoring and Security
• Log Analyzer
• Aggregate, chart and search your logs all within the Orion platform
• Out of the box rules to monitor for interesting AD events
• Consolidated view of AD performance metrics with log data (SAM required for performance metrics)
• Security Event Manager
• Normalize your AD logs to easily comprehend each event
• Predefined correlation AD rules, filters and widgets
• Configure rules to monitor activity such as failed user logons, password changes, or account lockouts
• Active Response for immediate response to unusual events (Remove User from Group, Disable Account
and more)
• Produce FISMA, STIGs, HIPAA, PCI, SOX, ISO, NCUA, FERPA, GLBA, GPG13, and other compliance reports
from templates © 2019 SolarWinds Worldwide, LLC. All rights reserved.
Log data provides visibility into AD changes including User/Group member changes, GPO changes, and
authentication events
@solarwinds 14
With SolarWinds Access Rights Manager
Monitor and Audit AD Access Rights
© 2019 SolarWinds Worldwide, LLC. All rights reserved.
• Quickly analyze user access to systems, data, and files
• Easily review user account permissions to help identify associated risks to security and
compliance
• Standardize user account provisioning and deprovisioning
• Automate account creation and support timely and complete deprovisioning of user
access
• Help protect against the risks of data loss and breaches
• Help detect malicious access attempts, compromised accounts, use of stolen
credentials, and other risks
• Automate regulatory compliance reports
• Help demonstrate compliance with reports created on-demand or scheduled for
automated delivery
@solarwinds
DEMO
15© 2019 SolarWinds Worldwide, LLC. All rights reserved.
@solarwinds
Q&A
16
Call Government Sales:
877.946.3751
Email your Sales team:
federalsales@solarwinds.com
© 2019 SolarWinds Worldwide, LLC. All rights reserved.
@solarwinds 17
SolarWinds AD Resources and Product Pages
• Topic pages: Active Directory monitoring
Active Directory management
• Whitepaper: The Who, What, and When of Active Directory Monitoring
• Tech Tip: Monitoring Active Directory Environment
• Blogs: 7 Key metrics to monitor your Active Directory environment
Monitoring and managing Active Directory
• Product Pages Server & Application Monitor
Log Analyzer
Security Event Manager
Access Rights Manager
Let us know how we can help you
© 2019 SolarWinds Worldwide, LLC. All rights reserved.
@solarwinds 18
Additional Resources
Let us know how we can help you
© 2019 SolarWinds Worldwide, LLC. All rights reserved.
• Visit our THWACK government group: http://thwack.com/government
• Watch a short demo video: http://demo.solarwinds.com/sedemo/
• Download a free trial: http://www.solarwinds.com/downloads/
• Visit our government website: http://www.solarwinds.com/federal
• Call government sales: 877.946.3751
• Email SolarWinds federal government sales: federalsales@solarwinds.com
• Email SolarWinds state and local government sales: governmentsales@solarwinds.com
• Email SolarWinds education sales: educationsales@solarwinds.com
• Follow us on LinkedIn®: https://www.linkedin.com/company/solarwinds-government
@solarwinds 19
THWACKcamp 2019
• THWACKcamp™ is a two-day virtual event held October 16 – 17
attended by thousands of IT pros around the world
• Save the date and visit www.thwackcamp.com for more details;
registration for this free event is open now
© 2019 SolarWinds Worldwide, LLC. All Rights Reserved.
@solarwinds
The SolarWinds, SolarWinds & Design, Orion, and THWACK trademarks are
the exclusive property of SolarWinds Worldwide, LLC or its affiliates, are
registered with the U.S. Patent and Trademark Office, and may be
registered or pending registration in other countries. All other SolarWinds
trademarks, service marks, and logos may be common law marks or are
registered or pending registration. All other trademarks mentioned herein
are used for identification purposes only and are trademarks of (and may be
registered trademarks) of their respective companies.

Más contenido relacionado

La actualidad más candente

Government and Education Webinar: Technical Update and Demo of New Features
Government and Education Webinar: Technical Update and Demo of New FeaturesGovernment and Education Webinar: Technical Update and Demo of New Features
Government and Education Webinar: Technical Update and Demo of New Features
SolarWinds
 
Government and Education Webinar: Leveraging SolarWinds to Improve Remote Emp...
Government and Education Webinar: Leveraging SolarWinds to Improve Remote Emp...Government and Education Webinar: Leveraging SolarWinds to Improve Remote Emp...
Government and Education Webinar: Leveraging SolarWinds to Improve Remote Emp...
SolarWinds
 
Government and Education Webinar: Cyber Technology to Enable Operator Effecti...
Government and Education Webinar: Cyber Technology to Enable Operator Effecti...Government and Education Webinar: Cyber Technology to Enable Operator Effecti...
Government and Education Webinar: Cyber Technology to Enable Operator Effecti...
SolarWinds
 
Infographic: SDN, BYOD and Cloud! Oh my!
Infographic: SDN, BYOD and Cloud! Oh my!Infographic: SDN, BYOD and Cloud! Oh my!
Infographic: SDN, BYOD and Cloud! Oh my!
SolarWinds
 

La actualidad más candente (20)

Government and Education Webinar: Technical Update and Demo of New Features
Government and Education Webinar: Technical Update and Demo of New FeaturesGovernment and Education Webinar: Technical Update and Demo of New Features
Government and Education Webinar: Technical Update and Demo of New Features
 
SolarWinds Federal Webinar - Using Tools to Improve IT Service Management
SolarWinds Federal Webinar - Using Tools to Improve IT Service ManagementSolarWinds Federal Webinar - Using Tools to Improve IT Service Management
SolarWinds Federal Webinar - Using Tools to Improve IT Service Management
 
Government and Education Webinar: Leveraging SolarWinds to Improve Remote Emp...
Government and Education Webinar: Leveraging SolarWinds to Improve Remote Emp...Government and Education Webinar: Leveraging SolarWinds to Improve Remote Emp...
Government and Education Webinar: Leveraging SolarWinds to Improve Remote Emp...
 
Government and Education Webinar: How the New Normal Could Improve your IT Op...
Government and Education Webinar: How the New Normal Could Improve your IT Op...Government and Education Webinar: How the New Normal Could Improve your IT Op...
Government and Education Webinar: How the New Normal Could Improve your IT Op...
 
Government and Education Webinar: Optimizing Database Performance
Government and Education Webinar: Optimizing Database PerformanceGovernment and Education Webinar: Optimizing Database Performance
Government and Education Webinar: Optimizing Database Performance
 
SolarWinds Government and Education Webinar: Optimizing the Orion Platform
SolarWinds Government and Education Webinar: Optimizing the Orion PlatformSolarWinds Government and Education Webinar: Optimizing the Orion Platform
SolarWinds Government and Education Webinar: Optimizing the Orion Platform
 
Federal Webinar: Technical Update and Demo of New Features
Federal Webinar: Technical Update and Demo of New FeaturesFederal Webinar: Technical Update and Demo of New Features
Federal Webinar: Technical Update and Demo of New Features
 
Government Webinar: Five Essential IT Tools You Need Today
Government Webinar: Five Essential IT Tools You Need TodayGovernment Webinar: Five Essential IT Tools You Need Today
Government Webinar: Five Essential IT Tools You Need Today
 
Government and Education Webinar: Zero-Trust Panel Discussion
Government and Education Webinar: Zero-Trust Panel Discussion Government and Education Webinar: Zero-Trust Panel Discussion
Government and Education Webinar: Zero-Trust Panel Discussion
 
Government Webinar: RMF, DISA STIG, and NIST FISMA Compliance Using SolarWinds
Government Webinar: RMF, DISA STIG, and NIST FISMA Compliance Using SolarWindsGovernment Webinar: RMF, DISA STIG, and NIST FISMA Compliance Using SolarWinds
Government Webinar: RMF, DISA STIG, and NIST FISMA Compliance Using SolarWinds
 
Government Webinar: Low-Cost Log, Network Configuration, and IT Monitoring So...
Government Webinar: Low-Cost Log, Network Configuration, and IT Monitoring So...Government Webinar: Low-Cost Log, Network Configuration, and IT Monitoring So...
Government Webinar: Low-Cost Log, Network Configuration, and IT Monitoring So...
 
Government and Education Webinar: Conquering Remote Work IT Challenges
Government and Education Webinar: Conquering Remote Work IT Challenges Government and Education Webinar: Conquering Remote Work IT Challenges
Government and Education Webinar: Conquering Remote Work IT Challenges
 
Government and Education Webinar: Improving Application Performance
Government and Education Webinar: Improving Application PerformanceGovernment and Education Webinar: Improving Application Performance
Government and Education Webinar: Improving Application Performance
 
Taming Multi-Cloud, Hybrid Cloud, Docker, and Kubernetes
Taming Multi-Cloud, Hybrid Cloud, Docker, and KubernetesTaming Multi-Cloud, Hybrid Cloud, Docker, and Kubernetes
Taming Multi-Cloud, Hybrid Cloud, Docker, and Kubernetes
 
Government and Education Webinar: Leverage Automation to Improve IT Operations
Government and Education Webinar: Leverage Automation to Improve IT OperationsGovernment and Education Webinar: Leverage Automation to Improve IT Operations
Government and Education Webinar: Leverage Automation to Improve IT Operations
 
Government Webinar: Monitoring Azure and Deploying SolarWinds on Azure Govern...
Government Webinar: Monitoring Azure and Deploying SolarWinds on Azure Govern...Government Webinar: Monitoring Azure and Deploying SolarWinds on Azure Govern...
Government Webinar: Monitoring Azure and Deploying SolarWinds on Azure Govern...
 
Federal Webinar: Best Practices and Tools for Reducing Insider Threats
Federal Webinar: Best Practices and Tools for Reducing Insider ThreatsFederal Webinar: Best Practices and Tools for Reducing Insider Threats
Federal Webinar: Best Practices and Tools for Reducing Insider Threats
 
SolarWinds Government and Education Webinar: Virtual Technology Briefing 08.0...
SolarWinds Government and Education Webinar: Virtual Technology Briefing 08.0...SolarWinds Government and Education Webinar: Virtual Technology Briefing 08.0...
SolarWinds Government and Education Webinar: Virtual Technology Briefing 08.0...
 
Government and Education Webinar: Cyber Technology to Enable Operator Effecti...
Government and Education Webinar: Cyber Technology to Enable Operator Effecti...Government and Education Webinar: Cyber Technology to Enable Operator Effecti...
Government and Education Webinar: Cyber Technology to Enable Operator Effecti...
 
Infographic: SDN, BYOD and Cloud! Oh my!
Infographic: SDN, BYOD and Cloud! Oh my!Infographic: SDN, BYOD and Cloud! Oh my!
Infographic: SDN, BYOD and Cloud! Oh my!
 

Similar a Monitoring and Securing Active Directory Government Webinar for the US Army

How to Enable, Monitor, and Secure Your Remote Workforce
How to Enable, Monitor, and Secure Your Remote WorkforceHow to Enable, Monitor, and Secure Your Remote Workforce
How to Enable, Monitor, and Secure Your Remote Workforce
SolarWinds
 
Federal Webinar: Security Compliance with SolarWinds Network Management Tools
Federal Webinar: Security Compliance with SolarWinds Network Management ToolsFederal Webinar: Security Compliance with SolarWinds Network Management Tools
Federal Webinar: Security Compliance with SolarWinds Network Management Tools
SolarWinds
 

Similar a Monitoring and Securing Active Directory Government Webinar for the US Army (18)

How to Enable, Monitor, and Secure Your Remote Workforce
How to Enable, Monitor, and Secure Your Remote WorkforceHow to Enable, Monitor, and Secure Your Remote Workforce
How to Enable, Monitor, and Secure Your Remote Workforce
 
Government and Education Webinar: How to Reduce Vulnerabilities and Harden yo...
Government and Education Webinar: How to Reduce Vulnerabilities and Harden yo...Government and Education Webinar: How to Reduce Vulnerabilities and Harden yo...
Government and Education Webinar: How to Reduce Vulnerabilities and Harden yo...
 
Government and Education Webinar: Recovering IP Addresses on Your Network
Government and Education Webinar: Recovering IP Addresses on Your NetworkGovernment and Education Webinar: Recovering IP Addresses on Your Network
Government and Education Webinar: Recovering IP Addresses on Your Network
 
Aplication data security compliances
Aplication data security compliancesAplication data security compliances
Aplication data security compliances
 
Government and Education: IT Tools to Support Your Hybrid Workforce
Government and Education: IT Tools to Support Your Hybrid WorkforceGovernment and Education: IT Tools to Support Your Hybrid Workforce
Government and Education: IT Tools to Support Your Hybrid Workforce
 
Government and Education Webinar: There's More Than One Way to Monitor SQL Da...
Government and Education Webinar: There's More Than One Way to Monitor SQL Da...Government and Education Webinar: There's More Than One Way to Monitor SQL Da...
Government and Education Webinar: There's More Than One Way to Monitor SQL Da...
 
Government and Education Webinar: Optimize Performance With Advanced Host Mon...
Government and Education Webinar: Optimize Performance With Advanced Host Mon...Government and Education Webinar: Optimize Performance With Advanced Host Mon...
Government and Education Webinar: Optimize Performance With Advanced Host Mon...
 
SolarWinds Technology Briefing- San Diego CA
SolarWinds Technology Briefing- San Diego CASolarWinds Technology Briefing- San Diego CA
SolarWinds Technology Briefing- San Diego CA
 
Federal Webinar: Application monitoring for on-premises, hybrid, and multi-cl...
Federal Webinar: Application monitoring for on-premises, hybrid, and multi-cl...Federal Webinar: Application monitoring for on-premises, hybrid, and multi-cl...
Federal Webinar: Application monitoring for on-premises, hybrid, and multi-cl...
 
Runtime Protection in the Real World
Runtime Protection in the Real WorldRuntime Protection in the Real World
Runtime Protection in the Real World
 
SolarWinds Online Federal User Group
SolarWinds Online Federal User GroupSolarWinds Online Federal User Group
SolarWinds Online Federal User Group
 
Federal Webinar: Introducing SolarWinds Log Manager for Orion
Federal Webinar: Introducing SolarWinds Log Manager for OrionFederal Webinar: Introducing SolarWinds Log Manager for Orion
Federal Webinar: Introducing SolarWinds Log Manager for Orion
 
SolarWinds Federal Partner Perfstack Training
SolarWinds Federal Partner Perfstack TrainingSolarWinds Federal Partner Perfstack Training
SolarWinds Federal Partner Perfstack Training
 
Federal Webinar: Security Compliance with SolarWinds Network Management Tools
Federal Webinar: Security Compliance with SolarWinds Network Management ToolsFederal Webinar: Security Compliance with SolarWinds Network Management Tools
Federal Webinar: Security Compliance with SolarWinds Network Management Tools
 
File Sharing Use Cases in Financial Services
File Sharing Use Cases in Financial ServicesFile Sharing Use Cases in Financial Services
File Sharing Use Cases in Financial Services
 
Infor on the Road 2013 ERP LX
Infor on the Road 2013 ERP LXInfor on the Road 2013 ERP LX
Infor on the Road 2013 ERP LX
 
Supporting Contractors with NIST SP 800-171 Compliance
Supporting Contractors with NIST SP 800-171 ComplianceSupporting Contractors with NIST SP 800-171 Compliance
Supporting Contractors with NIST SP 800-171 Compliance
 
CNCF Online - Data Protection Guardrails using Open Policy Agent (OPA).pdf
CNCF Online - Data Protection Guardrails using Open Policy Agent (OPA).pdfCNCF Online - Data Protection Guardrails using Open Policy Agent (OPA).pdf
CNCF Online - Data Protection Guardrails using Open Policy Agent (OPA).pdf
 

Más de SolarWinds

Más de SolarWinds (13)

SolarWinds Government and Education Webinar: Greatest SolarWinds Features I N...
SolarWinds Government and Education Webinar: Greatest SolarWinds Features I N...SolarWinds Government and Education Webinar: Greatest SolarWinds Features I N...
SolarWinds Government and Education Webinar: Greatest SolarWinds Features I N...
 
SolarWinds Government and Education Webinar: Gaps Exist in Your Monitoring In...
SolarWinds Government and Education Webinar: Gaps Exist in Your Monitoring In...SolarWinds Government and Education Webinar: Gaps Exist in Your Monitoring In...
SolarWinds Government and Education Webinar: Gaps Exist in Your Monitoring In...
 
Government Webinar: Alerting and Reporting in the Age of Observability
Government Webinar: Alerting and Reporting in the Age of ObservabilityGovernment Webinar: Alerting and Reporting in the Age of Observability
Government Webinar: Alerting and Reporting in the Age of Observability
 
Government and Education Webinar: Full Stack Observability
Government and Education Webinar: Full Stack ObservabilityGovernment and Education Webinar: Full Stack Observability
Government and Education Webinar: Full Stack Observability
 
Government and Education Webinar: Public Sector Cybersecurity Survey - What I...
Government and Education Webinar: Public Sector Cybersecurity Survey - What I...Government and Education Webinar: Public Sector Cybersecurity Survey - What I...
Government and Education Webinar: Public Sector Cybersecurity Survey - What I...
 
Becoming Secure By Design: Questions You Should Ask Your Software Vendors
Becoming Secure By Design: Questions You Should Ask Your Software VendorsBecoming Secure By Design: Questions You Should Ask Your Software Vendors
Becoming Secure By Design: Questions You Should Ask Your Software Vendors
 
Government and Education Webinar: Real-Time Mission, CIO, and Command Dashboards
Government and Education Webinar: Real-Time Mission, CIO, and Command DashboardsGovernment and Education Webinar: Real-Time Mission, CIO, and Command Dashboards
Government and Education Webinar: Real-Time Mission, CIO, and Command Dashboards
 
Government and Education Webinar: Simplify Your Database Performance Manageme...
Government and Education Webinar: Simplify Your Database Performance Manageme...Government and Education Webinar: Simplify Your Database Performance Manageme...
Government and Education Webinar: Simplify Your Database Performance Manageme...
 
Government and Education Webinar: SolarWinds Orion Platform: Audit and Stream...
Government and Education Webinar: SolarWinds Orion Platform: Audit and Stream...Government and Education Webinar: SolarWinds Orion Platform: Audit and Stream...
Government and Education Webinar: SolarWinds Orion Platform: Audit and Stream...
 
Government and Education: Leveraging The SolarWinds Orion Assistance Program ...
Government and Education: Leveraging The SolarWinds Orion Assistance Program ...Government and Education: Leveraging The SolarWinds Orion Assistance Program ...
Government and Education: Leveraging The SolarWinds Orion Assistance Program ...
 
Government and Education Webinar: SQL Server—Advanced Performance Tuning
Government and Education Webinar: SQL Server—Advanced Performance Tuning Government and Education Webinar: SQL Server—Advanced Performance Tuning
Government and Education Webinar: SQL Server—Advanced Performance Tuning
 
Government and Education Webinar: SQL Server—Indexing for Performance
Government and Education Webinar: SQL Server—Indexing for PerformanceGovernment and Education Webinar: SQL Server—Indexing for Performance
Government and Education Webinar: SQL Server—Indexing for Performance
 
Government Webinar: Preparing for CMMC Compliance Roundtable
Government Webinar: Preparing for CMMC Compliance Roundtable Government Webinar: Preparing for CMMC Compliance Roundtable
Government Webinar: Preparing for CMMC Compliance Roundtable
 

Último

%+27788225528 love spells in Atlanta Psychic Readings, Attraction spells,Brin...
%+27788225528 love spells in Atlanta Psychic Readings, Attraction spells,Brin...%+27788225528 love spells in Atlanta Psychic Readings, Attraction spells,Brin...
%+27788225528 love spells in Atlanta Psychic Readings, Attraction spells,Brin...
masabamasaba
 
%+27788225528 love spells in Knoxville Psychic Readings, Attraction spells,Br...
%+27788225528 love spells in Knoxville Psychic Readings, Attraction spells,Br...%+27788225528 love spells in Knoxville Psychic Readings, Attraction spells,Br...
%+27788225528 love spells in Knoxville Psychic Readings, Attraction spells,Br...
masabamasaba
 
Large-scale Logging Made Easy: Meetup at Deutsche Bank 2024
Large-scale Logging Made Easy: Meetup at Deutsche Bank 2024Large-scale Logging Made Easy: Meetup at Deutsche Bank 2024
Large-scale Logging Made Easy: Meetup at Deutsche Bank 2024
VictoriaMetrics
 
Abortion Pills In Pretoria ](+27832195400*)[ 🏥 Women's Abortion Clinic In Pre...
Abortion Pills In Pretoria ](+27832195400*)[ 🏥 Women's Abortion Clinic In Pre...Abortion Pills In Pretoria ](+27832195400*)[ 🏥 Women's Abortion Clinic In Pre...
Abortion Pills In Pretoria ](+27832195400*)[ 🏥 Women's Abortion Clinic In Pre...
Medical / Health Care (+971588192166) Mifepristone and Misoprostol tablets 200mg
 

Último (20)

WSO2CON 2024 - Navigating API Complexity: REST, GraphQL, gRPC, Websocket, Web...
WSO2CON 2024 - Navigating API Complexity: REST, GraphQL, gRPC, Websocket, Web...WSO2CON 2024 - Navigating API Complexity: REST, GraphQL, gRPC, Websocket, Web...
WSO2CON 2024 - Navigating API Complexity: REST, GraphQL, gRPC, Websocket, Web...
 
%+27788225528 love spells in Atlanta Psychic Readings, Attraction spells,Brin...
%+27788225528 love spells in Atlanta Psychic Readings, Attraction spells,Brin...%+27788225528 love spells in Atlanta Psychic Readings, Attraction spells,Brin...
%+27788225528 love spells in Atlanta Psychic Readings, Attraction spells,Brin...
 
%in Soweto+277-882-255-28 abortion pills for sale in soweto
%in Soweto+277-882-255-28 abortion pills for sale in soweto%in Soweto+277-882-255-28 abortion pills for sale in soweto
%in Soweto+277-882-255-28 abortion pills for sale in soweto
 
Devoxx UK 2024 - Going serverless with Quarkus, GraalVM native images and AWS...
Devoxx UK 2024 - Going serverless with Quarkus, GraalVM native images and AWS...Devoxx UK 2024 - Going serverless with Quarkus, GraalVM native images and AWS...
Devoxx UK 2024 - Going serverless with Quarkus, GraalVM native images and AWS...
 
WSO2CON 2024 - Building the API First Enterprise – Running an API Program, fr...
WSO2CON 2024 - Building the API First Enterprise – Running an API Program, fr...WSO2CON 2024 - Building the API First Enterprise – Running an API Program, fr...
WSO2CON 2024 - Building the API First Enterprise – Running an API Program, fr...
 
%in ivory park+277-882-255-28 abortion pills for sale in ivory park
%in ivory park+277-882-255-28 abortion pills for sale in ivory park %in ivory park+277-882-255-28 abortion pills for sale in ivory park
%in ivory park+277-882-255-28 abortion pills for sale in ivory park
 
%in Bahrain+277-882-255-28 abortion pills for sale in Bahrain
%in Bahrain+277-882-255-28 abortion pills for sale in Bahrain%in Bahrain+277-882-255-28 abortion pills for sale in Bahrain
%in Bahrain+277-882-255-28 abortion pills for sale in Bahrain
 
WSO2CON 2024 - How to Run a Security Program
WSO2CON 2024 - How to Run a Security ProgramWSO2CON 2024 - How to Run a Security Program
WSO2CON 2024 - How to Run a Security Program
 
WSO2CON 2024 - WSO2's Digital Transformation Journey with Choreo: A Platforml...
WSO2CON 2024 - WSO2's Digital Transformation Journey with Choreo: A Platforml...WSO2CON 2024 - WSO2's Digital Transformation Journey with Choreo: A Platforml...
WSO2CON 2024 - WSO2's Digital Transformation Journey with Choreo: A Platforml...
 
Artyushina_Guest lecture_YorkU CS May 2024.pptx
Artyushina_Guest lecture_YorkU CS May 2024.pptxArtyushina_Guest lecture_YorkU CS May 2024.pptx
Artyushina_Guest lecture_YorkU CS May 2024.pptx
 
%+27788225528 love spells in Knoxville Psychic Readings, Attraction spells,Br...
%+27788225528 love spells in Knoxville Psychic Readings, Attraction spells,Br...%+27788225528 love spells in Knoxville Psychic Readings, Attraction spells,Br...
%+27788225528 love spells in Knoxville Psychic Readings, Attraction spells,Br...
 
MarTech Trend 2024 Book : Marketing Technology Trends (2024 Edition) How Data...
MarTech Trend 2024 Book : Marketing Technology Trends (2024 Edition) How Data...MarTech Trend 2024 Book : Marketing Technology Trends (2024 Edition) How Data...
MarTech Trend 2024 Book : Marketing Technology Trends (2024 Edition) How Data...
 
%in Benoni+277-882-255-28 abortion pills for sale in Benoni
%in Benoni+277-882-255-28 abortion pills for sale in Benoni%in Benoni+277-882-255-28 abortion pills for sale in Benoni
%in Benoni+277-882-255-28 abortion pills for sale in Benoni
 
WSO2CON2024 - It's time to go Platformless
WSO2CON2024 - It's time to go PlatformlessWSO2CON2024 - It's time to go Platformless
WSO2CON2024 - It's time to go Platformless
 
%in kempton park+277-882-255-28 abortion pills for sale in kempton park
%in kempton park+277-882-255-28 abortion pills for sale in kempton park %in kempton park+277-882-255-28 abortion pills for sale in kempton park
%in kempton park+277-882-255-28 abortion pills for sale in kempton park
 
Large-scale Logging Made Easy: Meetup at Deutsche Bank 2024
Large-scale Logging Made Easy: Meetup at Deutsche Bank 2024Large-scale Logging Made Easy: Meetup at Deutsche Bank 2024
Large-scale Logging Made Easy: Meetup at Deutsche Bank 2024
 
%in Hazyview+277-882-255-28 abortion pills for sale in Hazyview
%in Hazyview+277-882-255-28 abortion pills for sale in Hazyview%in Hazyview+277-882-255-28 abortion pills for sale in Hazyview
%in Hazyview+277-882-255-28 abortion pills for sale in Hazyview
 
WSO2CON 2024 - Does Open Source Still Matter?
WSO2CON 2024 - Does Open Source Still Matter?WSO2CON 2024 - Does Open Source Still Matter?
WSO2CON 2024 - Does Open Source Still Matter?
 
WSO2Con2024 - WSO2's IAM Vision: Identity-Led Digital Transformation
WSO2Con2024 - WSO2's IAM Vision: Identity-Led Digital TransformationWSO2Con2024 - WSO2's IAM Vision: Identity-Led Digital Transformation
WSO2Con2024 - WSO2's IAM Vision: Identity-Led Digital Transformation
 
Abortion Pills In Pretoria ](+27832195400*)[ 🏥 Women's Abortion Clinic In Pre...
Abortion Pills In Pretoria ](+27832195400*)[ 🏥 Women's Abortion Clinic In Pre...Abortion Pills In Pretoria ](+27832195400*)[ 🏥 Women's Abortion Clinic In Pre...
Abortion Pills In Pretoria ](+27832195400*)[ 🏥 Women's Abortion Clinic In Pre...
 

Monitoring and Securing Active Directory Government Webinar for the US Army

  • 1. @solarwinds Monitoring and Securing Active Directory Government Webinar for the United States Army September 10, 2019
  • 2. @solarwinds 2 Speaker Introduction Jordan Pfeiffer Army Account Manager jordan.pfeiffer@solarwinds.com 512.498.6584 (office) Mike McDowell Sr. Federal Sales Engineer michael.mcdowell@solarwinds.com 703.386.2616 (office) © 2019 SolarWinds Worldwide, LLC. All rights reserved.
  • 3. @solarwinds 3 • SolarWinds Overview • Active Directory® (AD) challenges, threats, and best practices • System, application, and log monitoring for AD • Server & Application Monitor • Log Analyzer • Security Event Manager • Leveraging access rights management for AD • Access Rights Manager • Demonstrations • Q&A • Additional resources Agenda © 2019 SolarWinds Worldwide, LLC. All rights reserved.
  • 4. @solarwinds 4 SolarWinds at a Glance 1. Customers are defined as individuals or entities that have an active subscription for our subscription products or that have purchased one or more of our perpetual license products since our inception under a unique customer identification number. We may have multiple purchasers of our products within a single organization, each of which may be assigned a unique customer identification number and deemed a separate customer. 2. IDC defined Network Management Software functional market, IDC’s Worldwide Semiannual Software Tracker, October 2018. 3. Source: Gartner, Market Share Analysis: ITOM: Performance Analysis Software, Worldwide, 2017. July 9, 2018. (AIOps/ITIM/Other Monitoring Tools Software Market ). SolarWinds term, Systems Management, refers to the AIOps/ITIM/Other Monitoring Tools Software Market Taxonomy referenced in the Gartner report. All statements in this report attributable to Gartner represent SolarWinds interpretation of data, research opinion or viewpoints published as part of a syndicated subscription service by Gartner, Inc., and have not been reviewed by Gartner. Each Gartner publication speaks as of its original publication date (and not as of the date of this [presentation]). The opinions expressed in Gartner publications are not representations of fact and are subject to change without notice. #1 in Network Management2 300,000+ customers in 190 countries1 50+ IT management products 22,000+ MSPs serving 450,000+ organizations Every branch of the DoD, and nearly every civilian and intelligence agency 150,000+ registered members of THWACK®, our global IT community Founded in 1999 More than 2,500 employees globally Austin, TX headquarters Herndon, VA government office 30+ offices globally Leader in Remote Monitoring and Management #4 in Systems Management3 Growing Security Portfolio 500 of Fortune 500® © 2019 SolarWinds Worldwide, LLC. All rights reserved.
  • 5. @solarwinds 5 SolarWinds on CHESS ITES-SW Contract • SolarWinds is now available for purchase on CHESS ITES-SW • #W52P1J-15-D-0008 via Carahsoft © 2018 SolarWinds Worldwide, LLC. All rights reserved. SolarWinds products available on the contract: • Network Performance Monitor (NPM) • NetFlow Traffic Analyzer (NTA) • Network Configuration Manager (NCM) • Network Topology Mapper (NTM) • VoIP & Network Quality Manager (VNQM) • IP Address Manager (IPAM) • User Device Tracker (UDT) • Additional Polling Engine • Additional Web Server • High Availability (HA) • Enterprise Operations Console (EOC) • Server & Application Monitor (SAM) • Web Performance Monitor (WPM) • Engineer's Toolset™ (ETS) • Standard Tool Set • Kiwi Syslog® Server • Kiwi CatTools® • Mobile Admin (MA) • Security Event Manager (SEM), formerly Log & Event Manager (LEM)
  • 6. @solarwinds 6 SolarWinds on DoDIN APL • We’re excited to announce after rigorous testing, the Orion® Suite for Federal Government v3.0 has been placed on the Department of Defense Information Network (DoDIN) Approved Products List (APL). • The Orion Suite also has Common Criteria certification. © 2018 SolarWinds Worldwide, LLC. All rights reserved. The Orion Suite for Federal Government v3.0 includes: • Network Performance Monitor v12.2 • Server & Application Monitor v6.6 • Network Configuration Manager v7.7 • NetFlow Traffic Analyzer v4.2.3 • IP Address Manager v4.6 • User Device Tracker v3.3 • VoIP & Network Quality Manager v4.4.1 • Web Performance Monitor v2.2.1 • Enterprise Operations Console v2.0 • Storage Resource Monitor v6.6 • Virtualization Manager v8.2
  • 7. @solarwinds 7 SolarWinds Army Case Studies © 2018 SolarWinds Worldwide, LLC. All rights reserved. DoD Quotes: https://www.techvalidate.com/portals/solarwinds-government?collection=military-us-federal-government DoD Case Studies: https://www.techvalidate.com/portals/solarwinds-government?collection=dod-quotes
  • 8. @solarwinds 8 Building Great Products That Simply Work Is at Our Core © 2019 SolarWinds Worldwide, LLC. All rights reserved. End User-Driven Product Strategy With a Constantly Growing OfferingFocused on Ease and Efficiency Geekbuilt.® Roadmap driven by end-users and products developed by IT Professionals who understand today’s IT environment Massive User Community 150K+ registered THWACK members; in 2017, THWACK averaged over 7,000 daily unique visitors 22K+ MSPs access the MSP Institute and Customer Success Center Solve clearly identified problems Orion® Platform Hybrid IT management Cloud Management Affordable full-stack monitoring for cloud management teams SolarWinds MSP Remote monitoring and management platforms, backup, and email security Easy to try, find, and buy Ready to use Security Security, simplified
  • 9. @solarwinds 9 Our Approach to ProductOurCorePrinciplesNotableExamples Simple and powerful Deliver complete visibility for hybrid IT Grow with our customers Enable application- centric management •Quick value after install •Seamless UX across product portfolio •Native support of the major on-premises and public clouds •Unified, integrated experience •Start small, solve the first problem, and be ready for the next •Add new capabilities quickly • AppStack™ – manage the entire app, not just components • PerfStack™ – real-time troubleshooting across the modern app and infrastructure stack • NetPath™ – manage the network, not just elements • Cloud Infrastructure Monitoring – AWS® and Azure® infrastructure monitoring •Support management of traditional and modern apps • Network Insight™ – deep visibility for the modern network stack across performance and configuration • AppInsight™ – deep visibility for packaged application performance • Increased scale – support for 400,000 NPM elements in a single instance • Simplified multi-product installer – single installer to automatically resolve upgrade and install dependencies © 2019 SolarWinds Worldwide, LLC. All rights reserved.
  • 10. @solarwinds 10 AD Challenges and Threats • Can be complex and difficult to administer • Provisioning and deprovisioning users • Defining user roles and delegation of tasks • Auditing changes and demonstrating compliance • AD is prone to being hacked • AD crashes lead to network downtime • Tracking changes can be difficult • Inadequate reporting © 2019 SolarWinds Worldwide, LLC. All rights reserved.
  • 11. @solarwinds 11 AD Best Practices • Utilize least-privilege principle in AD roles and groups • Control AD admin privileges and limit domain user accounts • Employ auditing and alerting • Regularly backup your AD configuration and directory • Patch vulnerabilities • Standardize and increase efficiency for provisioning process © 2019 SolarWinds Worldwide, LLC. All rights reserved.
  • 12. @solarwinds 12 With SolarWinds Server & Application Monitor Quickly Find and Troubleshoot Issues • Diagnose AD replication issues • Quickly view replication status between domain controllers to ensure overall AD health • Review domain controller roles • See all domain controllers and their corresponding FSMO roles • View AD site details • Gain insight into AD infrastructure across your enterprise • Monitor logon and Windows® Events • See logon event summaries with detailed drill downs that can help support AD auditing © 2019 SolarWinds Worldwide, LLC. All rights reserved.
  • 13. @solarwinds 13 Leveraging AD Logs to Improve Monitoring and Security • Log Analyzer • Aggregate, chart and search your logs all within the Orion platform • Out of the box rules to monitor for interesting AD events • Consolidated view of AD performance metrics with log data (SAM required for performance metrics) • Security Event Manager • Normalize your AD logs to easily comprehend each event • Predefined correlation AD rules, filters and widgets • Configure rules to monitor activity such as failed user logons, password changes, or account lockouts • Active Response for immediate response to unusual events (Remove User from Group, Disable Account and more) • Produce FISMA, STIGs, HIPAA, PCI, SOX, ISO, NCUA, FERPA, GLBA, GPG13, and other compliance reports from templates © 2019 SolarWinds Worldwide, LLC. All rights reserved. Log data provides visibility into AD changes including User/Group member changes, GPO changes, and authentication events
  • 14. @solarwinds 14 With SolarWinds Access Rights Manager Monitor and Audit AD Access Rights © 2019 SolarWinds Worldwide, LLC. All rights reserved. • Quickly analyze user access to systems, data, and files • Easily review user account permissions to help identify associated risks to security and compliance • Standardize user account provisioning and deprovisioning • Automate account creation and support timely and complete deprovisioning of user access • Help protect against the risks of data loss and breaches • Help detect malicious access attempts, compromised accounts, use of stolen credentials, and other risks • Automate regulatory compliance reports • Help demonstrate compliance with reports created on-demand or scheduled for automated delivery
  • 15. @solarwinds DEMO 15© 2019 SolarWinds Worldwide, LLC. All rights reserved.
  • 16. @solarwinds Q&A 16 Call Government Sales: 877.946.3751 Email your Sales team: federalsales@solarwinds.com © 2019 SolarWinds Worldwide, LLC. All rights reserved.
  • 17. @solarwinds 17 SolarWinds AD Resources and Product Pages • Topic pages: Active Directory monitoring Active Directory management • Whitepaper: The Who, What, and When of Active Directory Monitoring • Tech Tip: Monitoring Active Directory Environment • Blogs: 7 Key metrics to monitor your Active Directory environment Monitoring and managing Active Directory • Product Pages Server & Application Monitor Log Analyzer Security Event Manager Access Rights Manager Let us know how we can help you © 2019 SolarWinds Worldwide, LLC. All rights reserved.
  • 18. @solarwinds 18 Additional Resources Let us know how we can help you © 2019 SolarWinds Worldwide, LLC. All rights reserved. • Visit our THWACK government group: http://thwack.com/government • Watch a short demo video: http://demo.solarwinds.com/sedemo/ • Download a free trial: http://www.solarwinds.com/downloads/ • Visit our government website: http://www.solarwinds.com/federal • Call government sales: 877.946.3751 • Email SolarWinds federal government sales: federalsales@solarwinds.com • Email SolarWinds state and local government sales: governmentsales@solarwinds.com • Email SolarWinds education sales: educationsales@solarwinds.com • Follow us on LinkedIn®: https://www.linkedin.com/company/solarwinds-government
  • 19. @solarwinds 19 THWACKcamp 2019 • THWACKcamp™ is a two-day virtual event held October 16 – 17 attended by thousands of IT pros around the world • Save the date and visit www.thwackcamp.com for more details; registration for this free event is open now © 2019 SolarWinds Worldwide, LLC. All Rights Reserved.
  • 20. @solarwinds The SolarWinds, SolarWinds & Design, Orion, and THWACK trademarks are the exclusive property of SolarWinds Worldwide, LLC or its affiliates, are registered with the U.S. Patent and Trademark Office, and may be registered or pending registration in other countries. All other SolarWinds trademarks, service marks, and logos may be common law marks or are registered or pending registration. All other trademarks mentioned herein are used for identification purposes only and are trademarks of (and may be registered trademarks) of their respective companies.

Notas del editor

  1. Proposed timeline- SolarWinds Overview (5) Active Directory® (AD) challenges, threats, and best practices (5) System, application, and log monitoring for AD (10) Leveraging access rights management for AD (5) Demonstrations (30) (SAM 10, LM 5, LEM 5, ARM 10) Q&A (5)
  2. Scrape speaking details from- https://www.solarwinds.com/topics/active-directory-monitor
  3. Scrape speaking details from- https://www.solarwinds.com/topics/active-directory-management
  4. 30 minutes (SAM 10, LM 5, LEM 5, ARM 10)