1.0 What is Directory and Resource Administrator

NetIQ Directory and Resource Administrator (DRA) delivers secure and efficient privileged-identity administration of Microsoft Active Directory (AD). DRA performs granular delegation of “least privilege” so that administrators and users receive just the permissions needed to complete their specific responsibilities. DRA also enforces adherence to policy, provides detailed-activity auditing and reporting, and simplifies repetitive task completion with IT process automation. Each of these capabilities contributes to protecting your customers’ AD and Exchange environments from the risk of privilege escalation, errors, malicious activity, and regulatory non-compliance, while reducing administrator burden by granting self-service capabilities to users, business managers and Help Desk personnel.

DRA also extends the powerful features of Microsoft Exchange to provide seamless management of Exchange objects. Through a single, common user interface, DRA delivers policy-based administration for the management of mailboxes, public folders and distribution lists across your Microsoft Exchange environment.

DRA provides the solutions you need to control and manage your Microsoft Active Directory, Windows, Exchange, and Azure Active Directory environments.

  • Support for Azure and on-premises Active Directory, Exchange, and Skype for Business: Delivers administrative management of Azure and on-premises Active Directory, on-premises Exchange Server, on-premises Skype for Business, Exchange Online, and Skype for Business Online.

  • Granular user and administrative privilege-access controls: Patented ActiveView technology delegates just the privileges needed to complete specific responsibilities and protect against privilege escalation.

  • Customizable web console: Intuitive approach enables non-technical personnel to easily and safely perform administrative tasks via limited (and assigned) capabilities and access.

  • In-depth activity auditing and reporting: Provides a comprehensive audit record of all activity performed with the product. Securely stores long-term data and demonstrates to auditors (e.g. PCI DSS, FISMA, HIPAA and NERC CIP) that processes are in place for controlling access to AD.

  • IT Process Automation: Automates workflows for a variety of tasks, like provisioning and deprovisioning, user and mailbox actions, policy enforcement, and controlled self-service tasks; increases business efficiencies, and reduces manual and repetitive administrative efforts.

  • Operational integrity: Prevents malicious or incorrect changes that affect the performance and availability of systems and services by providing granular access control for administrators and managing access to systems and resources.

  • Process enforcement: Maintains the integrity of key change management processes that help you improve productivity, reduce errors, save time, and increase administration efficiency.

  • Integration with Change Guardian: Enhances auditing for events generated in Active Directory outside of DRA and workflow automation.