|
StealthAUDIT
offers a wealth of capabilities that give even the most
demanding administrator an arsenal at his fingertips.
User
Interface
The richest application is only good if people can use it.
StealthAUDIT makes getting and publishing information easy:
- Add Job Wizard
Simple quick start wizard has you collecting data within
minutes of installation
- Pre-Built Tasks
Libraries contain "out of box" common tasks to make it
simple to get at what you need
-
Familiar administrative user interface
works like other administrative tools like RegEdit and
Perfmon. Connect to a server, pick what you want and
StealthAUDIT will get that from all of your machines.
- Data
View
With grouping, sorting and filtering featues, the powerful
grid style viewer allows you to get to the meat quickly.
Find what you're looking for in seconds using this simple
and powerful interface.
Host Discovery
When you want StealthAUDIT to collect data, you need to
identify the hosts that you want to collect from. StealthAUDIT
allows you to identify hosts via the following methods:
- Import from CSV
- IP Network Scan
Scan subnet ranges for hosts, optionally specifying to scan
for open ports
- Netbios Scan
Scan your network's browse list for machines. Criteria can
be specified restricting the scope.
Data Collection
StealthAUDIT's core architecture is designed to support
snap-in data collectors, each of which exposes a particular data
source, making it extremely simple to define what you want to
collect while keeping an open window to the future. The
following data collectors are included with StealthAUDIT:
- Registry
The registry is the central repository for configuration
data on a Windows machine. Having widescale access to this
provides you countless auditing possibilities including
- Installed hotfixes
- Installed software
- Installed Internet
Explorer components
- Login information,
who? when?
- Network card settings
- Active
Directory
The heart of Windows 2000 networks, Active Directory
contains pretty much everything there is to know about your
Microsoft network. Using this data collector, you can browse
the directory and retrieve virtually any object or group of
objects and their associated properties. Combined with
StealthAUDIT's change detection this is a must have tool for
Windows shops.
- Event Log
This data collector is another one with limitless
possibilities. Event logs largely go unnoticed since there's
no practical way to examine them. Using StealthAUDIT, you
can check all your machines for STOP or WARNING messages,
scan for particular event types, etc. Things like Microsoft
Exchange Server Whitespace events, Audit Failure events,
Logon Events, etc. can be extracted and put into useful
reports.
- Services
Check which services are installed, their status, login id,
startup settings, etc. You can also quickly scan your
network for the status of one or more specific services.
Very useful when you need to find all the machines running a
service with a given services account.
- Performance Monitor
Check your CPU, memory load, uptime, etc. Very useful for
capacity planning, problem detection, memory leak watch,
etc. Also useful for backup monitoring or as an in-depth
specific monitor.
- File System
Scan your machines for files. Ideal for checking critical
file sizes like the size of a database or transaction log.
Also very useful for checking EXE and DLL versions and for
things like checking the size of users' home directories
- Disk Info
Find out what disks are out there, the size and how much
free space there is. Very useful for trending and capacity
planning. Invaluable for detecting low disk on critical
partitions that are home to databases and transaction logs.
- Users and Groups
Knowing who belongs (and more importantly who does not)
in a group can be critical to security of a server. This
data collector will resolve group memberships, returning
back the user id's for any given group. Combine this with
StealthAUDIT's change management features and you have a
powerful way to detect change to key groups.
- Patch Check
Find out which servers comply with Microsoft security
bulletins and Q Articles. This data collector allows you to
enter a Q Article or a MS Security bulletin Id, and
instantly scan all of your machines to see which ones are
vulnerable. A *must have* tool for fighting security
threats.
- Script
Extend StealthAUDIT by adding your own scripts. While you
seldom ever need to script, the capability is there to
ensure that you can tap into the richness of the
StealthAUDIT engine.
Data Analysis and
Presentation
StealthAUDIT offers several post data collection features such
as
- Change Management
Have StealthAUDIT watch for changes on your network. This is
key to finding things like changed service accounts,
installed software changes, etc.
- Conformance Management
With rapid change it is increasing difficult to verify that
all servers are configured the same way. No worry, let
StealthAUDIT do it for you. Identify either a key "golden"
server or specify a configuration file and StealthAUDIT will
tell you how your servers differ.
- Reporting
Share your findings instantly using our automatic web
reporting facility. Publish virtually anything you collect
in tables and charts to your favourite web server.
|