Discover all of the tools that enable you to implement a secure least privileges environment.
-
Elevate Specific applications
Many applications require administrative permissions to run properly. Privilege Authority allows you to create rules to elevate those applications to run with any of the elevated privileges you specify. Optionally elevate automatically any child processes created by that application.
Elevate Application Installers
One downside for users running Windows with user privileges is that installing many applications requires the help of an administrator. With Privilege Authority you can run approved installers (setup.exe and setup.msi files) just as if the user was an administrator.
-
Elevate Windows Processes
The Windows security model prevents limited privilege users from performing basic tasks like changing time or time zone. As a result, many travelling users run as local administrator, which is a security risk. With Privilege Authority’s option to create elevation rules based on running processes, users can easily perform these tasks without local administrator rights.
Elevate All Files in a Folder
Many applications involve several exe files, making it hard to know how to pinpoint the right one. With Privilege Authority, you can elevate every file in a specific folder, including subfolders. This ensures that every feature of the application will run properly, even if that feature is in a different executable file.
Elevate ActiveX Controls
If you allow ActiveX controls for essential plug-ins, like Flash Player, you also have to allow them for all controls which reduces system stability and increases help desk calls. Privilege Authority allows installations of only approved ActiveX controls in Internet Explorer, now including version 9.
Verify Approved Installers
When you elevate an installer, you can have Privilege Authority create a secure SHA-1 hash of the file. This digital “fingerprint” ensures that only the approved installer will run with elevated privileges and that users can’t bypass security by renaming other files to that of an approved installer.
-
Verify Files with Digital Certificates
You can be sure that only the files you want to elevate are being approved by specifying that file’s digital certificate when you create the rule. Then, when the application launches, Privilege Authority will verify the digital certificate before it allows the program to run.
-
Elevate Applications with a Publisher’s Certificate
It would be much easier to elevate applications if you could just specify a publisher’s certificate when you create a rule. Privilege Authority now supports exactly that—with an application publisher certificate rule, anything signed by that publisher will be elevated automatically.
-
Support for Computer & User-Based Privilege Elevation Rules
Instantly create rules that apply to all users on a computer, or all computers used by a user. Much easier than rearranging your existing GPOs or creating new ones!
-
Target Rules to Workstations or Servers
Do you have a rule that you only want to apply on workstation operating systems? Now you can target rules to workstations or server with a single checkbox.
-
Target Rules to Specific Operating Systems
To run properly, an application might need admin rights on Windows XP but not on Windows 7. Now you can target rules to specific desktop or server operating systems just by checking those operating systems when you create the rule.
-
Target Rules Using Validation Logic
ScriptLogic’s patented Validation Logic is a real-time targeting engine. Using Validation Logic lets you target rules to specific users, user groups, organizational units, computers, computer groups, IP address ranges, or even if specific files or registry keys exist on the target machine.
-
Delegate Privilege Management Responsibilities
Delegate privilege management responsibilities to OU admins, and ease the privilege management workload. Departmental OU admins can now define and deploy privilege elevation rules for their respective OUs without requiring any access to restricted domain resources.
-
Find the Right Group Policy Quickly and Reliably
The Privilege Authority console displays a domain hierarchy that contains all OUs and Group Policies. This means you can quickly and reliably link a privilege rule to the right Group Policy by viewing associated OUs.
-
Report on Usage of Privilege Elevation Policies
Privilege Authority’s centralized reporting enables administrators to generate reports across their environment without having to manually pull data from each client machine. With a single click, administrators can report on privilege elevation activities, privilege usage and policy configurations.
-
Access Phone, Email and Web Support
Have full access to ScriptLogic’s phone, email and web support, and get program updates as well.
Download Rules From the Rules Exchange
Don’t start from scratch. With more than 100 rules to choose from, the Privilege Authority Rules Exchange provides community-created rules that you can download directly into your Privilege Authority console with a single click.
Share Rules with the Privilege Authority Community
Create a cool rule? Want the admiration and adoration of your fellow admins? Share your rule on the Rules Exchange directly from your console for other users to try. Then the community can rate your rule, comment on it, and generally give you the recognition you deserve.