Security Manager for Directory and Resource Administrator Module

Release Notes

Date Published: September 2010

 
 

 

Security Manager for Directory and Resource Administrator (DRA module) allows Security Manager to monitor the Administration server and the NetIQ DRA Agent. By using Security Manager with the DRA module to monitor Directory and Resource Administrator (DRA) operations, view categorized events, and audit your enterprise security, you can extend the proven security DRA provides. By detecting and alerting on critical events, this module enables Security Manager to indicate possible service failures and security issues, such as when users continue to attempt operations for which they have no permissions.

With the embedded expertise in the DRA module, you can use Security Manager to proactively monitor your DRA environment and identify issues before they become critical. The DRA module configures Security Manager to monitor events generated by DRA and highlight events that may indicate service exceptions or security issues so you can quickly take corrective actions. For example, with this module, Security Manager alerts you to the following critical conditions:

  • Administration server or NetIQ DRA Agent failures
  • Failure to replicate configurations
  • Unavailable domains
  • Inability to register last logon/logoff statistics
  • Latency in binding to the Active Directory
  • Numerous audit failure events for a user account

The DRA module allows Security Manager to quickly bring Administration server failures and security issues to your attention, increasing the availability and security of your DRA deployment.

For each monitored environment, NetIQ modules extend Security Manager with computer groups and processing rules, such as filters and alerts. NetIQ modules also provide the following building blocks for Security Manager rules: predefined computer attributes, providers, scripts, and the NetIQ Knowledge Base, as well as public views and default notification groups.

You can monitor the product by examining product-specific views in Security Manager Control Center. You can also query stored log data and run reports. For more information about views and reports, see the User Guide for NetIQ Security Manager.

This module for the Security Manager product includes several new features. This version also improves usability and resolves several previous issues. Many of these improvements were made in direct response to suggestions from our customers. We thank you for your time and valuable input. We hope you continue to help us ensure our products meet all your needs. You can post feedback in the Security Manager forum on Qmunity, our community Web site that also includes product notifications, blogs, and the Security Manager user group.

This document outlines why you should install this module, lists any installation requirements, and identifies any known issues.

Supported Products

This release supports the following products:

  • NetIQ Directory and Resource Administrator 7.x and 8.x

Return to Top

Why Install This Module?

Improvements are made in direct response to suggestions from our customers. We thank you for your time and valuable input. We hope you continue to help us ensure our products meet all your needs.

Forensic Analysis Queries Moved From NetIQ Change Guardian for Active Directory

In this version, the following Forensic Analysis queries have been moved from the NetIQ Change Guardian for Active Directory product (Change Guardian for Active Directory) to the Security Manager for NetIQ Directory and Resource Administrator module:

  • All Managed DRA Changes in Active Directory
  • All Managed DRA Computer Account Changes in Active Directory
  • Managed DRA Computer Account Properties Changes in Active Directory
  • Managed DRA Computer Account Created Change in Active Directory
  • Managed DRA Computer Account Deleted Change in Active Directory
  • All Managed DRA Contact Changes in Active Directory
  • Managed DRA Contact Created Change in Active Directory
  • Managed DRA Contact Deleted Change in Active Directory
  • Managed DRA Contact Email Disabled Change in Active Directory
  • Managed DRA Contact Email Enabled Change in Active Directory
  • Managed DRA Contacts Properties Change in Active Directory
  • All Managed DRA Group Changes in Active Directory
  • Managed DRA Group Email Disabled Change in Active Directory
  • Managed DRA Group Email Enabled Change in Active Directory
  • Managed DRA Group Email Membership Exposed in Active Directory
  • Managed DRA Group Email Membership Hidden in Active Directory
  • Managed DRA Group Members Added Change in Active Directory
  • Managed DRA Group Members Removed Change in Active Directory
  • Managed DRA Group Copied Change in Active Directory
  • Managed DRA Group Created Change in Active Directory
  • Managed DRA Group Deleted Change in Active Directory
  • Managed DRA Group Properties Changed in Active Directory
  • Managed DRA Group Set Permissions Change in Active Directory
  • All Managed Organizational Unit DRA Changes in Active Directory
  • Managed DRA Organizational Unit Created Change in Active Directory
  • Managed DRA Organizational Unit Deleted Change in Active Directory
  • Managed DRA Organizational Unit Moved Change in Active Directory
  • Managed DRA Organizational Unit Properties Changes in Active Directory
  • All Managed DRA User Changes in Active Directory
  • Managed DRA User Copied Change in Active Directory
  • Managed DRA User Created Change in Active Directory
  • Managed DRA User Deleted Change in Active Directory
  • Managed DRA User Deleted from Recycle Bin Change in Active Directory
  • Managed DRA User Email Disabled Change in Active Directory
  • Managed DRA User Email Enabled Change in Active Directory
  • Managed DRA User Enabled or Disabled Change in Active Directory
  • Managed DRA User Password Changed in Active Directory
  • Managed DRA User Properties Changed in Active Directory
  • Managed DRA User Sent to Recycle Bin Change in Active Directory
  • Managed DRA User Transformed Change in Active Directory
  • Managed DRA User Undeleted from Recycle Change in Active Directory

This version of Security Manager for Directory Resource Administrator also provides improved usability of field names. After updating the module, verify that all custom Forensic Analysis queries work with the new fields.

Return to Top

System Requirements

  • NetIQ Security Manager 6.0 or later
  • A Microsoft Windows agent with Directory and Resource Administrator support installed on each Domain Controller computer you want to monitor.

For more information about agent requirements, see the Installation Guide for NetIQ Security Manager.

Return to Top

Installing This Module

This section provides information about installing and configuring Security Manager support for Directory and Resource Administrator.

  1. Install the Security Manager for DRA module.

    Install the module using the Module Installer utility. If this is the first time you have installed the modules, ensure you also add a license. For more information about installing modules, see the User Guide for NetIQ Security Manager.

  2. Install Security Manager Windows agents.

    If you do not have a Security Manager Windows agent installed, manually install or deploy a Windows agent on the DRA Administration Server and DRA Agent computers. For more information about installing Security Manager agents, see the User Guide for NetIQ Security Manager and Installation Guide for NetIQ Security Manager.

  3. Configure the module.

    To receive notifications for alerts generated by the DRA module, add operators to the Help Desk Administrators and DRA Operations default notification groups. For information about configuring email or page responses, see the Programming Guide for NetIQ Security Manager.

  4. Verify a successful installation.

    You can verify successful installation of the module in the Module Installer. After the installation completes, the Module Installer updates the module version and status information. To verify a successful module installation, complete the following steps in the Module Installer for each module you installed:

    1. Verify the Status column indicates the module is current (up-to-date).
    2. Verify the Installed Version displays the same version number as the Available Version.

Return to Top

Known Issues

NetIQ strives to ensure our products provide quality solutions for your enterprise software needs. If you need assistance with any issue, please contact NetIQ Technical Support (www.netiq.com/support).

Superseded Release Notes Not Removed on Upgrade

A known issue exists where Security Manager cannot remove old Release Notes files when installing updated modules. Release notes are now installed in .htm format instead of the previous .mht format. After upgrading this module, you should manually delete any superseded Release Notes.

Duplicate Predefined Queries with CGAD 1.7

If you install Change Guardian for Active Directory version 1.7 and install the latest version of Directory and Resource Administrator (DRA), Security Manager Control Center displays the DRA predefined queries in the Forensic Analysis folders of both modules. (DOC293650)

Return to Top

Contact Information

Our goal is to provide documentation that meets your needs. If you have suggestions for improvements, please email Documentation-Feedback@netiq.com. We value your input and look forward to hearing from you.

For detailed contact information, see the Support Contact Information Web site.

For interactive conversations with your peers and NetIQ experts, become an active member of Qmunity, our community Web site that offers product forums, product notifications, blogs, and product user groups.

Return to Top

Legal Notice

Return to Top