Description

PAM components are installed on different servers. This type of installation allows you to decouple the core of the system from the components that provide access. Recommended for implementation and operation in a production environment.

Components

Management server

  1. Indeed Identity PAM Core
  2. Indeed Identity IdP
  3. Indeed Identity PAM Management Console
  4. Indeed Identity PAM User Console
  5. Indeed Identity Log Server
  6. Indeed Identity PAM EventLog

Access server

  1. Indeed Identity PAM Gateway
  2. Indeed Identity PAM SSH Proxy
  3. IndeedID ESSO Admin Pack
  4. IndeedID ESSO Agent

Work scenarios

User scenario


  1. Connection to the user's self service via a browser or Indeed Identity PAM Desktop Console. Domain authentication and second factor authentication. Checking the user in the IdP database. Getting a list of resources from the Core database. Obtaining an RDP file to connect to a resource.
  2. Connection to Indeed Identity PAM server using an RDP file, Indeed Identity PAM Desktop Console or using a separate SSH client.
  3. Domain authentication and second factor authentication. Checking the user of the IdP database. Checking the permission to access the Core database. Retrieving service account credentials from the DBMS to work with media storage. Retrieving privileged account credentials from the DBMS for connecting to a resource.
  4. Connecting to a resource.
  5. Saving videos and screenshots in the media storage. Saving a text log to the Core database.

Administration scenario


  1. Connection to the administrator's self service. Domain authentication and second factor authentication. Checking the user in the IdP database.
  2. Getting, adding and editing system objects. Performing service operations.

  • No labels