Which is the best way to use the mmc console and monitor the account that open it?
Is there a best practice? With which implementation could be integrate it?
Which is the best way to use the mmc console and monitor the account that open it?
Is there a best practice? With which implementation could be integrate it?
Hi,
If you mean mmc console opened inside of RDP session?
SPS would still record the RDP session and you can have a content policy attached to the Drawing channel policy that could alert if a matching Window title is detected in the session possibly.
Thanks!
No, not really, not by opening an mmc console within an RDP session but the case is that the user from his PC opens the mmc console with his account or with a different and specific account that has administrator permissions to open and use the mmc console and be able to make changes, configurations and so on...(If possible, but if not, we will suggest to the customer to put it under citrix just to see the icon and click on in and open the mmc console if this could be the best and simple solution)
No, not really, not by opening an mmc console within an RDP session but the case is that the user from his PC opens the mmc console with his account or with a different and specific account that has administrator permissions to open and use the mmc console and be able to make changes, configurations and so on...(If possible, but if not, we will suggest to the customer to put it under citrix just to see the icon and click on in and open the mmc console if this could be the best and simple solution)
that may require a different product, for example, Safeguard Privilege Manager for Windows, controls which applications can be run as elevated in Windows or completely block mmc via rules that get pushed to machine via GPO
OK, great! I will talk to the customer about it. Thank you very much