| | |
 |
Gold Finger can generate 365 reports, including 25 access reports that are absolutely essential for maintaining security, performing audits and demonstrating compliance.
|
 |
|
|
|
|
|
|
|
|
|
|
|
|
Gold Finger lets organizations instantly generate access reports that accurately document the identities of all individuals who can perform the following administrative tasks in their Active Directory based Windows Server IT infrastructures –
NOTE: These access reports are essential for maintaining security, fulfilling internal security audit requirements and demonstrating regulatory compliance of identity & access management related access provisioned in Active Directory.
|
|
| |
|
|
| |
|
- Individuals who can create domain user accounts
- Individuals who can delete domain user accounts
- Individuals who can reset user account passwords
- Individuals who can disable user accounts
(and enable disabled user accounts)
- Individuals who can unlock user accounts
|
|
|
|
|
|
|
|
|
|
| |
|
- Individuals who can create security groups
- Individuals who can delete security groups
- Individuals who can modify security group memberships
- Individuals who can modify security group scopes
- Individuals who can modify security group types
|
|
|
|
|
|
|
|
|
|
| |
|
- Individuals who can change the maximum password age for domain user accounts
- Individuals who can change the minimum password age for domain user accounts
- Individuals who can change the lockout duration for domain user accounts
- Individuals who can change the lockout threshold for domain user accounts
- Individuals who can change the lockout observation window for domain user accounts
|
|
|
|
|
|
|
|
|
|
| |
|
- Individuals who can create organizational units
- Individuals who can delete organizational units
- Individuals who can change the list of group policies linked to organizational units
- Individuals who can disable group policies linked to organizational units
- Individuals who can change the precedence of group policies linked to organizational units
|
|
|
|
|
|
|
|
|
|
| |
|
- Individuals who can create service connection points
- Individuals who can delete service connection points
- Individuals who can change a service connection point's keywords
- Individuals who can change a service connection point's service DNS name
- Individuals who can change a service connection point's security permissions
|
|
|
|
|
|
|
|
|
|
|
|