LT Auditor+: NetWare

LT Auditor+ for NetWare is configurable to fit seamlessly into any organization, large or small. LT Auditor+ allows your organization to immediately reap the benefits of continuous security and compliance monitoring by enabling your organization to improve incident response time, provide comprehensive audit reports, meet compliance control transformation requirements, ensure privacy, confidentiality and integrity, all while saving time and money.

Features and Benefits

  • Quality Data: Using proprietary technology to collect audit data from the system and provide clear, concise information on who did what from where and when on your NetWare infrastructure in human readable format.
  • Real-Time Alerts: Get notified in real time when critical changes occur in eDirectory and the file system. Events such as, escalating privileges to powerful group membership, granting security equivalences to super users or granting trustee rights to the sensitive objects or files can be immediately tracked enabling a faster response to threat mitigation.
  • Account Lockout: Captures the source IP address/workstation name for account lockout events to identify if an attack is in progress or to assist administrators troubleshoot a problem.
  • Audit Data Reduction: Allows for complex filtering from hundreds and thousands of events per second so as to collect relevant data for auditing. This avoids the clutter and noise associated with enormous volumes of event log data, providing for high quality reporting and forensic analysis.
  • Audit Data Reduction: Allows for complex filtering from hundreds and thousands of events per second so as to collect relevant data for auditing. This avoids the clutter and noise associated with enormous volumes of event log data, providing for high quality reporting and forensic analysis.
  • Simplified Management: Provides the ability to audit and monitor multiple Activity Directory forests, across geographic locations from a single console.
Netware

Audited Events

Create Object
Delete Object
Rename Object
Move Object
Modified Object
Add NDS Value
Delete NDS Value
Add Security Equivalence
Remove Security Equivalence
File open
File Close
Create File
Delete File
Rename File
Modified File
Create Link
Enable Account
Disable Account
Set Password
Change Password
Account Locked Out
Account Unlocked

Reports Template

Files Access Report
Files Created Report
Files Deleted Report
Files Modified/Written To Report
Files Renamed Report
Added Trustee Report
Removed Trustee Report
Login/Logout Report
Failed Login Report
Intruder Lockout Report
Users Created Report
Users Deleted Report
Users Moved Report
Users Renamed Report
Groups Created Report
Groups Deleted Report
Members Added to Group
Members Removed from Group
Password Change Report
Add Security Equivalence Report
Remove Security Equivalence Report
ACL’s Added Report
ACL’s Removed Report