Symantec Access Management

 View Only
  • 1.  CA PAM:  Application Access privileges

    Posted Jan 02, 2018 12:38 PM

    CA PAM:  Application Access privileges

    Hi,  when a A non-admin windows user logs in to the windows system and when he makes an attempt to access a particular application that requires administrative privilege, he should be prompted to provide the admin credentials. Upon providing the admin account credentials he/she should be able to access the application.

    is this possible through CA Privileged access manager?



  • 2.  Re: CA PAM:  Application Access privileges

    Posted Jan 05, 2018 04:40 AM

    Well there is no such way where a user is authorized before elevating a privilege automatically, although this can be done using policies, let me explain, assuming you have configured RDP application before for transparent login, then you may have an idea about a check box called RDP session in the RDP application window. If you enable this check box, TL works even in normal RDP session, so, if you configure the windows pop up as TL application and create the access policy to provide credentials for that window, whenever a user will be prompted for elevated credentials PAM TL will provide those real time.

    Again, continuing my first statement, these credentials will be provided to everyone who logs in to that server using that RDP application, so this has to be managed using different RDP applications in the Access Policies for the same device but different users, hope this helps.

     

    Shubham.