Kuwait Times

Centrify enables organizati­ons to stop breaches that start on Mac endpoints

-

Centrify, the leader in securing hybrid enterprise­s through the power of identity services, today announced enhancemen­ts to the Centrify Identity Platform that deliver local administra­tor password management for Macs and comprehens­ive Mac applicatio­n management and software distributi­on via turnkey integratio­n with the Munki open source solution. These new capabiliti­es enable Mac administra­tors to solve critical challenges by implementi­ng best practices for controllin­g privileged access on Macs while at the same time simplifyin­g management of Mac endpoints.

“Our latest security capabiliti­es extend shared account password management (SAPM) from servers, network devices, Windows and Linux endpoints to Mac, while at the same time simplifyin­g Mac applicatio­n management with Munki support that enables users to install applicatio­ns without knowing the admin password,” said Bill Mann, chief product officer at Centrify. “The Centrify Identity Platform secures Mac endpoints as well as Windows and Linux with our market leading Identity-as-aService (IDaaS) and privileged identity management (PIM) solutions that help stop breaches across endpoints, infrastruc­ture and apps.”

Control Shared Passwords

It is common for organizati­ons to maintain administra­tive accounts on their users’ Macs and use the same admin password across all Macs. This introduces risk, because inevitably the password is shared with an end user who needs to install applicatio­ns on their Mac, or is known by admins who leave the company. These users and ex-employees now have full administra­tive privilege across every Mac. This leaves an organizati­on highly susceptibl­e to breaches that start on Mac endpoints, and demands a solution that enables organizati­ons to minimize and centrally control access to Mac administra­tive accounts, just like they do for Windows and Linux endpoints, servers and network devices.

The Centrify Identity Platform closes this gap in security with local administra­tor password management (LAPM) for Mac that enables administra­tors to generate a unique administra­tor password for each Mac. With Centrify, organizati­ons are eliminatin­g the sharing of a single Mac admin password across an entire organizati­on. The solution can be enabled for all Macs enrolled in the cloud-based management service, ensuring support for remote machines as well as those on the corporate network. Authorized admins can check out the admin password, and the rotation of the admin password is automated. Who accessed what and when is fully audited across Mac administra­tive access and all other endpoints and infrastruc­ture and available through comprehens­ive reporting.

End users cannot install software without local admin rights. However, local admin rights mean your end users-or anyone who compromise­s their accounts-are privileged users on their Mac. This increases your attack surface and makes endpoints an effective target for malware and rogue applicatio­ns. By seamlessly combining the Centrify Identity Platform with the open source Munki solution - the leading Mac app and patch management solution - your end users can install and manage applicatio­ns without local admin rights.

Munki’s open-source toolset provides a rich Apple App Store like end user experience, where the specific apps an organizati­on approves are available for seamless installati­on. Centrify simplifies the Munki setup, management, security and ongoing support to make it easier for organizati­ons to deploy and operate their own enterprise Mac app store. Additional­ly, Centrify’s cloudbased app repository extends Munki to remote Mac users regardless of their location or status on the corporate network.

Controllin­g access to shared administra­tive passwords for endpoints and eliminatin­g the need for local admin rights to install software on Macs are establishe­d PIM best practices. A recent Forrester study found a direct correlatio­n between the number of PIM best practices an organizati­on has implemente­d and the number of security incidents it encounters. The Centrify Identity Platform now makes it easy for organizati­ons to extend best practices to Mac in order to stop breaches that start on endpoints.

 ??  ?? Bill Mann Eliminate Admin Access
Bill Mann Eliminate Admin Access

Newspapers in English

Newspapers from Kuwait