Aspects and starting points - ips-energy.com€¦ · Group based policies Encrypted password...

13
IPS-SYSTEMS™ & IT Security Aspects and starting points © 2014 IPS GmbH

Transcript of Aspects and starting points - ips-energy.com€¦ · Group based policies Encrypted password...

Page 1: Aspects and starting points - ips-energy.com€¦ · Group based policies Encrypted password storage ... IPS User management withing the Active Directory - Service Accounts Active

IPS-SYSTEMS™ & IT SecurityAspects and starting points

© 2014 IPS GmbH

Page 2: Aspects and starting points - ips-energy.com€¦ · Group based policies Encrypted password storage ... IPS User management withing the Active Directory - Service Accounts Active

© 2014 IPS GmbH

IPS-SYSTEMS™ & IT-SecurityAspects and starting points

New Encryptionfeature in IPS-ENERGY™ 1.90

User accounts in IPS-SYSTEMS™

Fail Safe, Failover

IPS User Management within the Active Directory

Safe synchronisation in non trusted networks

Page 3: Aspects and starting points - ips-energy.com€¦ · Group based policies Encrypted password storage ... IPS User management withing the Active Directory - Service Accounts Active

© 2014 IPS GmbH

IPS-SYSTEMS™ & IT-SecurityAspects and starting points

New Encryptionfeature in IPS-ENERGY™ 1.90

IPS-Database

Encrypted with a user-specific public

AES encryption key

Page 4: Aspects and starting points - ips-energy.com€¦ · Group based policies Encrypted password storage ... IPS User management withing the Active Directory - Service Accounts Active

© 2014 IPS GmbH

IPS-SYSTEMS™ & IT-SecurityAspects and starting points

User accounts in IPS-SYSTEMS™

seperate administration module

special access rights for administration

Group based Access management

Group based policies

Encrypted password storage

Authentication possible via Domain Accounts or IPS-Accounts

Page 5: Aspects and starting points - ips-energy.com€¦ · Group based policies Encrypted password storage ... IPS User management withing the Active Directory - Service Accounts Active

© 2014 IPS GmbH

IPS-SYSTEMS™ & IT-SecurityAspects and starting points

User accounts in IPS-SYSTEMS™

Page 6: Aspects and starting points - ips-energy.com€¦ · Group based policies Encrypted password storage ... IPS User management withing the Active Directory - Service Accounts Active

© 2014 IPS GmbH

IPS-SYSTEMS™ & IT-SecurityAspects and starting points

IPS User management withing the Active Directory - IPS vs. Domain Accounts

Page 7: Aspects and starting points - ips-energy.com€¦ · Group based policies Encrypted password storage ... IPS User management withing the Active Directory - Service Accounts Active

© 2014 IPS GmbH

IPS-SYSTEMS™ & IT-SecurityAspects and starting points

IPS User management withing the Active Directory - Service Accounts

Active Directory Service Accounts can be used to control services

No other domain accounts with administrative rights necessary

Safety and access rights can be easily adjusted

Page 8: Aspects and starting points - ips-energy.com€¦ · Group based policies Encrypted password storage ... IPS User management withing the Active Directory - Service Accounts Active

© 2014 IPS GmbH

IPS-SYSTEMS™ & IT-SecurityAspects and starting points

Fail-Safe, Failover

Hardware based fail-safe

What means fail-safe/failover?

Does the investment makes sense for me?

Software based fail-safe

Page 9: Aspects and starting points - ips-energy.com€¦ · Group based policies Encrypted password storage ... IPS User management withing the Active Directory - Service Accounts Active

© 2014 IPS GmbH

IPS-SYSTEMS™ & IT-SecurityAspects and starting points

Fail-safe, Failover – What means Fail-safe, Failover?

“Fail-safe and fail-secure are similar but distinct concepts. Fail-safe means that a device

will not endanger lives or properties when it fails. Fail-secure means that access or data

will not fall into the wrong hands in a failure. Sometimes the approaches suggest opposite

solutions. For example, if a building catches fire, fail-safe systems would unlock doors to

ensure quick escape and allow firefighters inside, while fail-secure would lock doors to

prevent unauthorized access to the building.”

redundant system architectur through the whole system

Intelligent system monitoring

Detect errors before they happen

Page 10: Aspects and starting points - ips-energy.com€¦ · Group based policies Encrypted password storage ... IPS User management withing the Active Directory - Service Accounts Active

© 2014 IPS GmbH

IPS-SYSTEMS™ & IT-SecurityAspects and starting points

Fail-safe, Failover – Hardware based Fail-safe, Failover

Page 11: Aspects and starting points - ips-energy.com€¦ · Group based policies Encrypted password storage ... IPS User management withing the Active Directory - Service Accounts Active

© 2014 IPS GmbH

IPS-SYSTEMS™ & IT-SecurityAspects and starting points

Fail-safe, Failover – Software based Fail-safe, Failover

Node 1 Node 2

Cluster Management

Page 12: Aspects and starting points - ips-energy.com€¦ · Group based policies Encrypted password storage ... IPS User management withing the Active Directory - Service Accounts Active

© 2014 IPS GmbH

IPS-SYSTEMS™ & IT-SecurityAspects and starting points

Safe synchronisation in non trusted networks

Page 13: Aspects and starting points - ips-energy.com€¦ · Group based policies Encrypted password storage ... IPS User management withing the Active Directory - Service Accounts Active

© 2014 IPS GmbH

Thank you very much for your attention

For more information, please visit

www.ips-energy.com