Business Services Industry
DesktopStandard Upgrades PolicyMaker Application Security, a Group Policy Extension for Implementing 'Least Privilege' Security; Adds support for end-user installation of approved ActiveX and Microsoft Installer components
Business Wire, Jan 4, 2006
PORTSMOUTH, N.H. -- DesktopStandard Corporation today announced the release of PolicyMaker(TM) Application Security (PMAS) 2.0, a major upgrade to the patent pending software solution that enables network administrators to enforce the security principle of Least Privilege on Windows desktops via Microsoft's Group Policy change and configuration management system. PMAS was the first product to make it possible to reduce or elevate permissions on a per-application or per-task basis, removing longstanding barriers to implementation of the security best practice of Least Privilege.
With this add-on to the Group Policy Management Console (GPMC), administrators can adjust application privilege levels to the lowest possible point in order to limit damages stemming from network attacks or user error. The ability to control security at such a granular level also helps organizations comply with regulatory mandates such as the Sarbanes-Oxley, HIPAA and Gramm-Leach-Bliley acts.
The product allows administrators to:
--Elevate the permission level for restricted users who are performing selected tasks or running applications that require higher privileges than those to which the user is normally entitled. This eliminates the need to raise each user's privilege levels for all applications which would expose the network to unnecessary risk.
--Reduce the permission level for administrators working on general applications, such as Internet Explorer and Microsoft Outlook. This avoids the use of full administrative permissions for applications that do not have such a need, and without the need to log out and then in as a different user, use the Windows RunAs utility to work under a second user account, or invoke other complicated procedures that reduce productivity.
--Allow restricted users to install approved ActiveX controls while running Internet Explorer in their restricted user security context. This new feature makes restricted user scenarios much more practical, as many organizations have extensive libraries of ActiveX controls or allow use of such controls that install from approved third party sites - including Adobe's Acrobat Reader for example.
--Provide self-service software installation points for restricted users, greatly reducing administrator workload in supporting unmanaged software installation without compromising security. Many organizations have libraries of software packages that end-users may elect to install by simply browsing to them on a network location. This new feature makes it a simple task to support secure elevated permissions installation of such executable and Windows Installer packages.
According to DesktopStandard CTO Eric Voskuil, "Windows provides a Group Policy setting that allows administrators to specify that all Windows Installer packages install with administrator permissions. The use of this feature effectively makes the end-user an administrator, as any package they choose to install will run with administrator permissions. With PolicyMaker's secure self-service installation points, software installations are elevated only for packages that the network administrator has placed into the approved network shares."
Keith Brown, Network Administrator for Gwinnett Health System, a Georgia Medical Center that serves nearly a half million patients per year, stated, "PolicyMaker Application Security is an invaluable part of our strategy to enforce the Principle of Least Privilege. We have several applications in our environment that require administrator rights, and without PolicyMaker Application Security, enforcing Least Privilege would be impossible. Since PolicyMaker Application Security is a Group Policy extension, we can easily apply policy settings to elevate or restrict the rights on applications, without giving the user administrative rights over the workstation. With the version 2.0 we'll be able to apply policies that will allow us to control what ActiveX controls and MSI packages end-users can install, all while enforcing Least Privilege and keeping my users locked down and safe from spyware, malware, root kits and viruses. This is an essential aspect of our security strategy."
The complete suite of PolicyMaker products offers a total of 24 extensions to the Group Policy system that has been integrated with Active Directory since the release of Windows 2000. These extensions complement the 11 native extensions that ship with Windows. All PolicyMaker products seamlessly integrate with Microsoft's Group Policy Management Console, including backup, restore, import, copy, edit, and RSoP capabilities. PolicyMaker settings can be targeted using any of 25 graphical filtering categories.
Pricing, Specifications and Availability
PolicyMaker Application Security 2.0 is available immediately from DesktopStandard and authorized resellers. Pricing starts at $27 per seat for enterprises with less than 1,000 computers, including one year of upgrade assurance and technical support. PolicyMaker supports Windows 2000, XP and 2003 Server, Terminal Server, MetaFrame and all versions of Outlook, Office and Internet Explorer.
- 5 Rules for Immediate Annuities
- Death in the Family: 12 Things to Do Now
- Dumbest Things You Do With Your Money
- 6 Online Networking Mistakes to Avoid
- 401(k) Mistakes to Avoid
- 5 Economic Scenarios to Keep You Up at Night
- The Real ‘Best Places to Retire’
- Best Credit Cards for You
- 12 Tough Questions to Ask Your Parents
- The Real ‘Best Colleges’
- Home Buyer Tax Credit: How to Cash In
- Why You Shouldn't Bash Cash
- 8 Phony 'Bargains' and Better Alternatives
- Danger: 3 Debit Card Scams to Avoid
- 6 Myths About Gas Mileage
- 29 Fees We Hate Most
- Quick and Easy Ways to Boost Returns
- Best Stocks to Buy Now
- Lower Your Taxes: 10 Moves to Make Now
- New Jobs: 8 Lessons from Real-Life Career Switchers
- The New Job Market: Who Wins and Who Loses?
- Health Care Reform's Public Option: Everything You Need to Know
- Volunteer Work When Unemployed: Should You Work for Free?
- Whose Recovery Is This?
- Long-Term-Care Insurance: 4 Biggest Risks to Avoid
Content provided in partnership with
Most Recent Business Articles
- Multiple criteria evaluation and optimization of transportation systems
- Multi-criteria analysis procedure for sustainable mobility evaluation in urban areas
- A two-leveled multi-objective symbiotic evolutionary algorithm for the hub and spoke location problem
- Multi-criteria analysis for evaluating the impacts of intelligent speed adaptation
- The development of Taiwan arterial traffic-adaptive signal control system and its field test: a Taiwan experience
Most Recent Business Publications
Most Popular Business Articles
- 7 tips for effective listening: productive listening does not occur naturally. It requires hard work and practice - Back To Basics - effective listening is a crucial skill for internal auditors
- LIFO vs. FIFO: a return to the basics
- FAS 109: a primer for non-accountants - Financial Accounting Standards Board's "Statement 109: Accounting for Income Taxes"
- Design a commission plan that drives sales - Sales Commissions
- Too Young to Rent a Car? - 25-years-old the minimum age for car renting - Brief Article


