2 Installing Privileged User Manager 2.3



Similar documents
2 Downloading Access Manager 3.1 SP4 IR1

NetIQ Sentinel Quick Start Guide

Novell Access Manager

Novell Identity Manager Resource Kit

Mobile App Quick Start

Administration Quick Start

Remote Management Reference

Novell SUSE Linux Enterprise Virtual Machine Driver Pack

For Active Directory Installation Guide

Remote Management Reference

Administration Guide GroupWise Mobility Service 2.1 February 2015

SSL Management Reference

How To Manage Storage With Novell Storage Manager 3.X For Active Directory

Software Distribution Reference

ZENworks Mobile Management 3.0.x Deployment Quick Start

Server Installation ZENworks Mobile Management 2.7.x August 2013

Policy Guide Access Manager 3.1 SP5 January 2013

Installation and Configuration Guide

Novell ZENworks 10 Configuration Management SP3

Server Installation Guide ZENworks Patch Management 6.4 SP2

User Guide Novell iprint 1.1 March 2015

Novell Sentinel Log Manager 1.2 Release Notes. 1 What s New. 1.1 Enhancements to Licenses. Novell. February 2011

This Readme includes information pertaining to Novell Service Desk 7.0.

High Availability Configuration

Migration Tool Administration Guide

Migration Tool Administration Guide

Administration Guide Messenger 3.0 February 2015

Novell Open Workgroup Suite Small Business Edition Helpdesk

Installation Guide. Novell Storage Manager for Active Directory. Novell Storage Manager for Active Directory Installation Guide

Audit Management Reference

Administration Guide Messenger 2.2 July 30, 2013

2 Configuring GroupWise Mobility Service to Support Microsoft Outlook Clients

System Administration Guide

Novell Remote Manager Administration Guide

Administration Guide Novell Filr May 2014

SSL VPN Server Guide Access Manager 3.1 SP5 January 2013

Jobs Guide Identity Manager February 10, 2012

Managing Macintosh OS-X with Novell ZCM 11.2 Lecture

Out-of-Band Management Reference

User Self-Administration

Database Management Reference

Novell Distributed File Services Administration Guide

Administration Guide Modular Authentication Services (NMAS) April 2013

Administration Guide NetIQ Privileged Account Manager 3.0.1

ATT8367-Novell GroupWise 2014 and the Directory Labs

Generating an Apple Push Notification Service Certificate

System Planning, Deployment, and Best Practices Guide

Novell Storage ServicesTM File System Administration Guide for Linux

Novell LDAP Proxy Server

User Source and Authentication Reference

Upgrade and Migration Guide

Integrated Installation Guide

Database Maintenance ZENworks Mobile Management 2.7.x August 2013

Certificate Management

Novell Identity Manager

Novell Identity Manager

Installation and Configuration Guide

Password Management Guide

SSL VPN User Guide Access Manager 3.1 SP5 January 2013

Sentinel Migration Utility

Full Disk Encryption Pre-Boot Authentication Reference

ZENworks Adaptive Agent Reference

Administration Guide. Novell Storage Manager for Active Directory. Novell Storage Manager for Active Directory Administration Guide

Asset Inventory Reference

ZENworks Virtual Appliance Deployment and Administration Reference

Android App User Guide

Configuring File Servers and Active Directory with Domain Services for Windows-Lab

Patch Management Reference

Patch Management Reference

NCP Server for Linux Administration Guide

Install and Configure an Open Source Identity Server Lab

Symantec AntiVirus Corporate Edition Patch Update

Patch Management Reference

Asset Management Reference

Synchronization Agent Configuration Guide

Troubleshooting: 2 Solutions to Common Problems

Novell PlateSpin Portability Suite

Full Disk Encryption Agent Reference

Installing RMFT on an MS Cluster

Administration Guide Certificate Server May 2013

Novell Identity Manager Driver for Remedy Action Request System (ARS)

SafeNet Authentication Manager Express. Upgrade Instructions All versions

Remote Filtering Software

IBM WebSphere Application Server Version 7.0

Quick Start Guide for Parallels Virtuozzo

Web Application User Guide

Novell PlateSpin Recon

NetIQ Operations Center 5: The Best IT Management Tool in the World Lab

Reconfiguring VMware vsphere Update Manager

Windows Client User Guide

Advanced User Guide Vibe 4.0 March 2015

TROUBLESHOOTING GUIDE

Novell Identity Manager

Novell PlateSpin Orchestrate

NOVELL ZENWORKS ENDPOINT SECURITY MANAGEMENT

Transcription:

NetIQ Privileged User Manager 2.3.2 Release Notes January, 2013 1 Documentation The following sources provide information about Privileged User Manager: Privileged User Manager 2.3 Documentation Site (http://www.novell.com/documentation/ privilegedusermanager23/index.html) Novell Support (http://www.novell.com/support/microsites/microsite.do) 2 Installing Privileged User Manager 2.3 2.1 AIX Privileged User Manager can be downloaded from the Novell Downloads site (http:// download.novell.com/index.jsp). To obtain the purchased license, log in to the Novell Customer Center (http://www.novell.com/ center) and follow the link that allows you to download the software and the license key. The ISO image contains the following directories and files for Framework Managers, Agents, and the Manager. Section 2.1, AIX, on page 1 Section 2.2, HP UX, on page 2 Section 2.3, Linux, on page 3 Section 2.4, SLES10, on page 3 Section 2.5, SLES11, on page 4 Section 2.6, Solaris, on page 5 Section 2.7, Tru64, on page 5 Section 2.8, Windows, on page 6 Section 2.9, Manager, on page 6 netiq-npum-agent-2.3.2-aix-5.1-powerpc.bff.gz Agent package for AIX* 5.1 netiq-npum-manager-2.3.2-aix-5.1-powerpc.bff.gz Framework Manager package for AIX 5.1 NetIQ Privileged User Manager 2.3.2 Release Notes 1

For installation instructions, see the following sections in the NetIQ Privileged User Manager Getting 2.2 HP-UX netiq-npum-agent-2.3.2-hpux-11.00-hppa.depot.gz Agent package for HP-UX 11 and 11i HPPA netiq-npum-agent-2.3.2-hpux-11.23-ia64.depot.gz Agent package for HP-UX 11i v2 and v3 Itanium* netiq-npum-manager-2.3.2-hpux-11.00-hppa.depot.gz Framework Manager package for HP-UX 11 & 11i HPPA netiq-npum-manager-2.3.2-hpux-11.23-ia64.depot.gz Framework Manager package for HP-UX 11i v2 and v3 Itanium For installation instructions, see the following sections in the NetIQ Privileged User Manager Getting 2 NetIQ Privileged User Manager 2.3.2 Release Notes

2.3 Linux netiq-npum-agent-2.3.2-linux-2.6-s390x.rpm Agent package for Linux on zseries mainframes with a 2.6 kernel. netiq-npum-agent-2.3.2-linux-2.6-x86_64.rpm Agent package for Linux on Intel 64-bit machines with a 2.6 kernel netiq-npum-agent-2.3.2-linux-2.6-intel.rpm Agent package for Linux on Intel 32-bit machines with a 2.6 kernel netiq-npum-manager-2.3.2-linux-2.6-s390x.rpm Framework Manager package for Linux on zseries mainframes with a 2.6 kernel netiq-npum-manager-2.3.2-linux-2.6-x86_64.rpm Framework Manager package for Linux on Intel 64-bit machines with a 2.6 kernel netiq-npum-manager-2.3.2-linux-2.6-intel.rpm Framework Manager package for Linux on Intel 32-bit machines with a 2.6 kernel For installation instructions, see the following sections in the NetIQ Privileged User Manager Getting 2.4 SLES10 novell-pum-2.3.2-22885.i586.rpm Agent package on SLES10 32-bit machine novell-pum-2.3.2-22885.x86_64.rpm Agent package on SLES10 64-bit machine novell-pum-manager-2.3.2-22885.i586.rpm Framework Manager package on SLES10 32-bit machine novell-pum-manager-2.3.2-22885.x86_64.rpm Framework Manager package on SLES10 64-bit machine NetIQ Privileged User Manager 2.3.2 Release Notes 3

For installation instructions, see the following sections in the NetIQ Privileged User Manager Getting 2.5 SLES11 novell-pum-2.3.2-22885.i586.rpm Agent package on SLES11 32-bit machine novell-pum-2.3.2-22885.x86_64.rpm Agent package on SLES11 64-bit machine novell-pum-manager-2.3.2-22885.i586.rpm Framework Manager package on SLES11 32-bit machine novell-pum-manager-2.3.2-22885.x86_64.rpm Framework Manager package on SLES11 64-bit machine For installation instructions, see the following sections in the NetIQ Privileged User Manager Getting 4 NetIQ Privileged User Manager 2.3.2 Release Notes

2.6 Solaris netiq-npum-agent-2.3.2-solaris-2.8-intel.pkg.gz Agent package for Solaris* 2.8 Intel netiq-npum-agent-2.3.2-solaris-2.8-sparc.pkg.gz Agent package for Solaris 2.8 SPARC* netiq-npum-manager-2.3.2-solaris-2.8-intel.pkg.gz Framework Manager package for Solaris 2.8 Intel netiq-npum-manager-2.3.2-solaris-2.8-sparc.pkg.gz Framework Manager package for Solaris 2.8 SPARC For installation instructions, see the following sections in the NetIQ Privileged User Manager Getting 2.7 Tru64 netiq-npum-agent-2.3.2-tru64-5.0-alpha.tar.gz Agent package for Tru64 v5.x OSF1 For installation instructions, see the following sections in the NetIQ Privileged User Manager Getting NetIQ Privileged User Manager 2.3.2 Release Notes 5

2.8 Windows netiq_pum_agent_2.3.2_x86.msi Agent package for Windows 32 bits netiq_pum_agent_2.3.2_x64.msi Agent package for Windows 64 bits netiq_pum_manager_2.3.2_x86.msi Framework Manager package for Windows 32 bits netiq_pum_manager_2.3.2_x64.msi Framework Manager package for Windows 64 bits For installation instructions, see Installing a Framework Manager (http://www.novell.com/ documentation/ in the NetIQ Privileged User Manager Getting Started Guide (http://www.novell.com/documentation/ privilegedusermanager23/npum_install/data/index.html). 2.9 Manager netiq-npum-packages-2.3.2.tar.gz Zipped file for setting up a local package manager. For instructions on how to set up either the Framework Manager or an agent to be the local package manager, see Setting Up a Manager (http://www.novell.com/documentation/ privilegedusermanager23/npum_install/data/bjjnusa.html) in the NetIQ Privileged User Manager Getting Started Guide (http://www.novell.com/documentation/privilegedusermanager23/ npum_install/data/index.html). 3 Upgrading from Novell Privileged User Manager 2.2 to 2.3 To upgrade from Novell Privileged User Manager 2.2 to 2.3, you can download the packages from the Novell Customer Center (http://www.novell.com/center) or from Novell Downloads (http:// download.novell.com/index.jsp). Then you must add the packages to your Framework Manager and update your system with the Framework patch.you can then update the other packages. To install new 2.3 agents, you need to download the ISO image from Novell Downloads (http:// download.novell.com/index.jsp) or from the Novell Customer Center (http://www.novell.com/ center). 6 NetIQ Privileged User Manager 2.3.2 Release Notes

4 New Features Section 4.1, Video Capture for Windows, on page 7 Section 4.2, Two Factor Authentication, on page 7 Section 4.3, SSL Renegotiation DOS Attack Protection, on page 7 Section 4.4, Change Management, on page 7 4.1 Video Capture for Windows Video Capture for Windows monitors user activity by capturing videos of every task performed by the user. You can browse the text log of a user and select a particular task and watch the video. You can search for a particular event within a video based on the keyword search option. You can schedule compression and archiving of video files to external storage. You can turn the Video capture feature ON or OFF for a particular user based on your requirement. For detailed information, see Video Capture for Windows in the NetIQ Privileged User Manager 2.3.2 Administration Guide. 4.2 Two Factor Authentication Two factor authentication is required to enhance the security and to ensure the identity of the user is valid. Every framework user has to enter the secondary password to log in to the PUM Administration Console. For detailed information, see Modify User: Authentication Script in the NetIQ Privileged User Manager 2.3.2 Administration Guide. 4.3 SSL Renegotiation DOS Attack Protection A client can attack the SSL server by sending a number of renegotiation (SSL handshake) requests to it. This can overwhelm the server and the server can go down. To prevent such attacks you can limit the renegotiation requests from a particular client by setting a threshold. For detailed information, see SSL Renegotiation DOS Attack Protection in the NetIQ Privileged User Manager 2.3.2 Administration Guide. 4.4 Change Management Any GUI specific operations performed by you is audited by the Change Management feature. Each operation is tracked and the log is maintained in the Change Management report. The default Sample Report displays all the collected audit records and any associated keystroke captures. For detailed information, see Change Management in the NetIQ Privileged User Manager 2.3.2 Administration Guide. NetIQ Privileged User Manager 2.3.2 Release Notes 7

5 Known Issues 5.1 The RDP Key is Corrupted when it is Created and throws an Error during Initialization To workaround this issue, take a backup of the rdprelay.ldb file, delete the original rdprelay.ldb file and restart the service. 5.2 EAC Policy does not Work for Non-root Users of the Group. To workaround this issue, in the rule where the EAC script is included, set Submit User to root. 5.3 Unable to Rollback Framework Patch on Windows Platform To resolve this issue, see TID 7010308 in the Novell Support Site. 5.4 Unable to Audit 32-bit Internet Explorer Using PUM Run When you launch a 32 bit Internet Explorer with the PUM Run function, without closing any already launched 32 bit Internet Explorer without PUM Run, you cannot audit the 32 Internet Explorer using PUM Run. To resolve this issue, close all 32 bit Internet Explorers before launching a 32 bit Internet Explorer with PUM Run 5.5 LDAP Server Certificate Validation is Ignored On Windows and Linux platforms the LDAP server certification validation is ignored at the client side. 5.6 Uninstaller does not Remove all PUM Files and Registry Entries When you uninstall Privileged User Manager, the uninstaller does not remove all the PUM files and registry entries. To remove the complete Privileged User Manager folder, manually delete the existing files and restart the system. 5.7 RDP Relay Related Error Message An error message, "This computer cannot connect to the remote computer is displayed when host name cannot be resolved either from DNS or Hosts file on a machine from where a user is trying to connect to an RDP relay session using RDP relay feature. To resolve this issue, on the Windows machine from where you are trying to run the RDP relay session, add the hostname resolved to IP address on hosts file. 8 NetIQ Privileged User Manager 2.3.2 Release Notes

5.8 Account Domains are not Imported or Exported in Command Control Account Domains are not imported or exported with the rest of the configuration for Command Control. 5.9 RPM Upgrade Issues on SLES Platform While upgrading RPM on SLES platforms from version 2.2.2.x to 2.3, new packages such as LDAP agent, SSH relay agent, SSH agent and Privileged Credential manager are unregistered. To resolve this issue, do one of the following: Use the unifi regclnt register to re register the packages to manager. Use the console to register the packages in hosts console. 5.10 RDP Session Cannot be Connected when a Screensaver or Lock Screen Prompts Appears During an RDP session, if a screensaver appears or if the user locks the system, the RDP session cannot be connected. To resolve this issue, close the active RDP session and reconnect to a new RDP session. 5.11 Manager Update Issue While upgrading from version 2.2.2 to 2.3 using Manager, new packages such as Privileged Credential Manager, SSH Relay Agent, SSH Agent are not installed. To resolve this issue, install the new packages through the hostʹs Install packages option. 6 Legal Notices NetIQ Corporation ( NetIQ ) makes no representations or warranties with respect to the contents or use of this documentation, and specifically disclaims any express or implied warranties of merchantability or fitness for any particular purpose. Further, NetIQ reserves the right to revise this publication and to make changes to its content, at any time, without obligation to notify any person or entity of such revisions or changes. NetIQ makes no representations or warranties with respect to any software, and specifically disclaims any express or implied warranties of merchantability or fitness for any particular purpose. Further, NetIQ reserves the right to make changes to any and all parts of the software, at any time, without any obligation to notify any person or entity of such changes. Any products or technical information provided under this Agreement may be subject to U.S. export controls and the trade laws of other countries. You agree to comply with all export control regulations and to obtain any required licenses or classification to export, re export, or import deliverables. You agree not to export or re export to entities on the current U.S. export exclusion lists or to any embargoed or terrorist countries as specified in the U.S. export laws. You agree to not use deliverables for prohibited nuclear, missile, or chemical biological weaponry end uses. NetIQ assumes no responsibility for your failure to obtain any necessary export approvals. NetIQ Privileged User Manager 2.3.2 Release Notes 9

Copyright 2013 NetIQ Corporation. All rights reserved. No part of this publication may be reproduced, photocopied, stored on a retrieval system, or transmitted without the express written consent of the publisher. All third party trademarks are the property of their respective owners. For more information, please contact NetIQ at: 1233 West Loop South, Houston, Texas 77027 U.S.A. www.netiq.com 10 NetIQ Privileged User Manager 2.3.2 Release Notes