chapter 1 Flashcards
(10 cards)
what is the secure server used to store privileged account information, based on a hardened windows server platform
digital vault
what is the web interface for users to gain access to privileged account information, used by vault admins to configure policies
PVWA - the password vault web access
What performs the password change on devices, scan the network for privileged accounts
central policy manager CPM
what isolates and monitors privileged account activity, and records privileged account sessions
psm - privileged session manager
what does monitors and detects malicious privileged account behavior
pta - privilege threat analytics
what provides:
- legacy interface to the vault
- mostly used by administrators for certain tasks that are not implements in private ark web access
- can be installed on any station with access to the vault
private ark client
- What is the RESTful API that enables users to create, list, modify, and deletes entities in pam using program and scripts
- main purpose is to automate tasks that are usually performed manually using the UI and to incorporate them in system and account provisioning scripts
what is the pam web services?
- only available on vault server
- used to start and stop the private ark server windows service
- displays the vault server log italog.log
- used to change the vault debug levels dynamically
vault central administration station
- what runs from a command line interface
- it allows you to execute tasks on vault server via remote control agent vs gui
- client and agent communicate via cyberark remote control protocol on port 9022
- this reduces the need to open an rdp port for the vault
remote control client
ex: parclient> status vault
password: ***
Vault is running