System overview¶
Fudo Enterprise is a complete solution for managing remote privileged access. Fudo Enterprise includes a range of features, each dedicated to different aspects of remote access management:
- Session Monitoring & Recording
- Secret Management
- Just-in-Time (JIT) Access
- Single Sign-On (SSO)
- Agentless Convenient Access
- AI-Powered Prevention
- Productivity Analyzer
- Rapid Deployment
- Compliance Support
Session Monitoring & Recording¶
Fudo Enterprise provides administrators with advanced tools to monitor and manage sessions in real-time. Administrators can join, share, pause, or terminate sessions, ensuring swift action in response to potentially suspicious activities.
The platform supports resource sharing over 10+ protocols, including RDP, SSH, and HTTPS, enabling secure access to critical systems. Fudo Enterprise records complete network traffic along with meta data, enabling precise session playback and full-text content search. This functionality provides a comprehensive audit trail to enhance security and ensure compliance.
Fudo Enterprise acts as a proxy between users and monitored servers and it registers users’ actions, including mouse pointer moves, keystrokes and transferred files.
Data stored on Fudo can be timestamped which makes session material a more reliable evidence in court.
Fudo Enterprise session monitoring module supports following system configurations:
- Linux,
- FreeBSD,
- Mac OS X
- Microsoft Windows Server,
- Microsoft Windows,
- TightVNC,
- Solaris.
Secret Management¶
Fudo Enterprise provides a secure and flexible system for managing privileged account credentials. Credentials are stored securely and never leave the system, ensuring robust protection.
Administrators can utilize predefined templates to quickly set up password changers within minutes. These password changers operate on a separate transport layer, such as SSH, LDAP, Telnet, or WinRM, allowing integration with various systems.
Fudo Enterprise supports password changing on following systems:
- Unix
- MySQL
- Cisco
- Cisco Enable Password
- MS Windows
Beyond the built-in examples, custom scripts can be created to enhance functionality, offering precise control over credential management on monitored servers. For more information, refer to the Password changers section.
Just-in-Time (JIT) Access¶
Fudo Enterprise supports Just-in-Time (JIT) access workflows, enabling organizations to implement a Zero-Trust security approach. Through the request management section, administrators can define and schedule specific time windows for resource availability, granting access only when necessary. This ensures adherence to the zero-standing-privileges principle, minimizing security risks by limiting prolonged access to critical systems.
Single Sign-On (SSO)¶
Fudo Enterprise provides Single Sign-On (SSO) functionality for both the Admin Panel and the User Access Gateway. SSO streamlines authentication by automatically logging users into the system, enhancing usability and efficiency while maintaining robust security standards.
Agentless Convenient Access¶
Fudo Enterprise offers flexible and agentless access to resources, allowing users to choose their preferred method of connection. Users can continue using their favorite native clients for a seamless experience or take advantage of the built-in, browser-based Webclient provided by Fudo Enterprise. This flexibility ensures ease of use for both technical and non-technical users alike.
AI-Powered Prevention¶
Fudo Enterprise incorporates AI-driven capabilities to assist in daily security management tasks. The system provides actionable guidelines to support verification and monitoring processes, simplifying the responsibilities of security teams and CISOs. By analyzing behavioral and semantic patterns, Fudo Enterprise detects potential credential compromises and sends notifications, enabling swift response to mitigate risks and enhance overall security posture.
Productivity Analyzer¶
Productivity Analyzer module tracks users’ actions and provides precise information on their activity and idle times.
For more information on the Productivity Analyzer module, refer to the Productivity topic.
Rapid Deployment¶
Fudo Enterprise is designed as an all-in-one solution, eliminating the need for additional software or hidden costs to initiate your instance. Whether deployed as an appliance or a virtual machine, all necessary components are included within the core system. This streamlined approach ensures a quick and efficient installation process, enabling full deployment in as little as one day.
Compliance Support¶
Fudo Enterprise is designed to help organizations meet a wide range of compliance requirements, including PCI-DSS, SOX, HIPAA, NIST, GDPR, and ISA/IEC 62443. By providing robust security and auditing features, Fudo Enterprise ensures adherence to industry standards and regulatory frameworks, simplifying compliance management for your organization.
Related topics: