Cloud Help desk

  • Subscribe to our RSS feed.
  • Twitter
  • StumbleUpon
  • Reddit
  • Facebook
  • Digg

Friday, 6 January 2012

Don’t let your administrative passwords become Pulcinella's Secrets!

Posted on 02:23 by Unknown
If you wonder what the phrase 'Pulcinella's Secret' means, let me start with explaining that:
Pulcinella is a popular comic character in Commedia dell'Arte, a form of theatre that began in Italy in the mid-16th century. The very character of Pulcinella is his inability to keep secrets. That means, any confidential matter revealed to him would soon become an open secret. Everyone will come to know of the 'secret', but will pretend not to be knowing. So, in reality, Pulcinella's secrets are not secrets at all!

Now, coming back to the question: Do you leave your administrative passwords as Pulcinella's Secrets?

I am afraid the answer would be ‘Yes’ if you still follow the practice of keeping your administrative passwords in text files and spread sheets. Everyone will be knowing all the passwords, while you would be thinking otherwise!

Let me explain further:

Modern IT and other enterprises are heavily dependant on servers, databases, network devices, security infrastructure and other software applications for their day-to-day operations. These infrastructure are accessed and controlled through administrative passwords. Typically, the applications are used in a shared environment by a group of administrators.
The number of administrative passwords keep on growing as more and more servers, devices and applications are added to the enterprise. Administrators end up virtually struggling with a pile of passwords and face problems on securely storing, managing and sharing the passwords.

How administrative passwords are being handled in enterprises?

If truth be told, even many big enterprises do not have any effective password management system in place at all. Employees follow their own, haphazard way of maintaining the passwords; there is rarely any meaningful management
  • Sensitive passwords are stored in volatile sources such as text files, spread sheets, print-outs etc.,
  • Many copies of the administrative passwords are circulated among the administrators who require them for their job functions. The passwords thus become impersonal in the shared environment – no accountability for actions
  • When other members of the organization such as developers, database administrators and support personnel require access to IT resources, passwords are generally transmitted over word of mouth
  • The administrative passwords mostly remain unchanged for fear of inviting system lockout issues
  • Still worse, most resources are assigned the same, non-unique password for ease of coordination among administrators. In most of the organizations, a common administrative account is created and all the administrators use the same account to access the infrastructure - for instance 'Administrator' on Windows, 'root' on Unix/Linux, 'enable' on Cisco, 'sa' on SQL server etc.  
  • There is rarely any internal control on password access or usage. Administrators freely get access to the passwords of all the resources in the organization
  • There is generally no trace on ‘who’ accessed ‘what’ resources and ‘when’. This creates lack of accountability for actions
  • If an administrator leaves the organization, it is quite possible that he/she may be getting out with a copy of all the passwords
 So, if you follow the traditional practice of storing the passwords in text files and spreadsheets, sensitive administrative passwords will be known to everyone, much like Pulcinella’s secrets.

What is the Solution? 

One of the effective ways to securely manage the administrative passwords is to store the passwords in a central, secure vault and automate password management tasks. Deploying 'Password Management Applications' or in simple words, the 'Enterprise Password Managers' can help you in controlling access to administrative passwords and in taking total control of the shared administrative passwords. Your passwords will no longer remain as Pulcinella’s Secrets.
ManageEngine Password Manager Pro precisely helps achieve this.  Deploy Password Manager Pro and Stay Secure!
Email ThisBlogThis!Share to XShare to Facebook
Posted in ManageEngine, password management | No comments
Newer Post Older Post Home

0 comments:

Post a Comment

Subscribe to: Post Comments (Atom)

Popular Posts

  • New Spiceworks Dashboard Gives Technology Vendors a Snapshot of Their Standing With Small and Mid-Size Businesses Worldwide
    AUSTIN, TX, Oct 09, 2012 (MARKETWIRE via COMTEX) -- Today at the fifth annual SpiceWorld conference, Spiceworks(TM), Inc. unveiled the new S...
  • IT Help Desk Softwares List
    List of popular IT help desk softwares in the market. Add any IT help desk software, like or dislike and share your comments about the IT he...
  • SysAid Integrates MDM Into IT Service Management Platform
    IT service management software (ITSM) solutions provider  SysAid Technologies Ltd.  has released SysAid 9.0,  the company’s most recent IT ...
  • Solarwinds Acquired Web Help Desk Software
    Solarwinds , a leading provider of IT management software acquired web help desk software, a provider of online help desk software, for $20...
  • SupportBee, a help desk software aimed at startups and small companies, encourages an all-hands approach : SGE
    SupportBee, a help desk software aimed at startups and small companies, encourages an all-hands approach January 8, 2013 by Terence LEE Su...
  • How ITIL-based IT Help Desk can help Small and Medium Businesses
    Author: ManageEngine Zoho Introduction:   Everybody knows Bob! Bob works in the IT department of a Financial Services company. When the Offi...
  • ServiceDesk Plus Tips and Tricks on Change Management - Best Practices Webinar
    ServiceDesk Plus Tips and Tricks on Change Management -  Best Practices Webinar Presenter: Arvind Parthiban,Technical Advisor & Marketin...
  • Zendesk Now Offers Facebook Private Messages For Customer Service
    Zendesk has a new feature out today, that lets customers send private Facebook messages that automatically go to agents as Zendesk customer...
  • Absolute Software to Acquire LiveTime for IT Help Desk
    Transaction enhances Absolute's Asset Management capability and provides entry to the IT Service Support Management market VANCOUVER , ...
  • SolarWinds Survey Indicates Growing Need for Time-Saving Patch Management Tools to Address Business-Critical Vulnerabilities
    AUSTIN, TX--(Marketwire - Sep 19, 2012) - SolarWinds ( SWI ), a leading provider of powerful and affordable IT management software , today ...

Categories

  • Absolute Software
  • Alloy Navigator
  • CA
  • CA Technologies
  • Frontrange
  • Gartner
  • Help Desk Infographics
  • help desk news
  • Help Desk Software Review
  • Help Desk Software Tips
  • Help Desk Story
  • Help Desk Videos
  • IT Asset Management
  • IT Help Desk Software
  • ITIL
  • Kaseya
  • Landesk
  • List of IT help desk softwares
  • list of top 100 it help desk softwares
  • ManageEngine
  • Parature
  • password management
  • quest software
  • solarwinds
  • Spiceworks
  • SupportBee
  • SysAid
  • Technology
  • Vision HelpDesk
  • web help desk
  • Zendesk

Blog Archive

  • ►  2013 (21)
    • ►  September (3)
    • ►  July (2)
    • ►  June (11)
    • ►  April (3)
    • ►  January (2)
  • ▼  2012 (157)
    • ►  November (2)
    • ►  October (9)
    • ►  September (42)
    • ►  August (23)
    • ►  July (42)
    • ►  June (1)
    • ►  May (6)
    • ►  April (7)
    • ►  March (9)
    • ►  February (6)
    • ▼  January (10)
      • Promote your product here
      • Help Desk Tips & Tricks - Incident Management
      • FrontRange HEAT Help Desk Software Demo
      • Perils of 'Static' Windows Service Accounts
      • Privileged password management: Protection alone i...
      • An automated solution to enforce IT policy on stan...
      • Don’t let your administrative passwords become Pul...
      • Do you still keep your administrative passwords in...
      • Allowing Temporary Access To Sensitive IT Resources
      • How do you control concurrent privileged access to...
  • ►  2011 (46)
    • ►  December (3)
    • ►  November (6)
    • ►  October (14)
    • ►  September (10)
    • ►  August (4)
    • ►  July (4)
    • ►  June (3)
    • ►  April (1)
    • ►  February (1)
Powered by Blogger.

About Me

Unknown
View my complete profile