Welcome to the new Splunkbase! To return to the old Splunkbase, click here.
Warning

This app is archived. Learn more

Balabit SCB App for Splunk app icon

Balabit SCB App for Splunk

Privileged users, such as system administrators, IT vendors or powerful business users pose security risk for Splunk customers managing sensitive data. Actions of a malicious administrator or a privileged account hijack-based cyber-attack can go undetected for months while causing huge damage for the business. Shell Control Box (SCB) is a user monitoring appliance that controls privileged access to remote IT systems, records activities in searchable, movie-like audit trails, and prevents malicious actions. With the Balabit SCB App security events managed by Splunk Enterprise are extended by privileged user activities captured by Shell Control Box. Daily security operation tasks are greatly simplified, as it is no longer necessary to manually download and inspect user-related logs, as all the information is searchable and visualized in the Splunk web GUI. By having a complete, tamper-proof evidence about privileged users' access, you will be in a better position to prevent APT attacks. Tested with SCB 4F2

Built by One Identity
splunk product badge

Latest Version 1.0
March 10, 2016
Compatibility
Not Available
CIM Version: 4.x
Rating

0

(0)

Log in to rate this app
Support
Balabit SCB App for Splunk support icon
Not Supported
Learn more
Privileged users, such as system administrators, IT vendors or powerful business users pose security risk for Splunk customers managing sensitive data. Actions of a malicious administrator or a privileged account hijack-based cyber-attack can go undetected for months while causing huge damage for the business. Shell Control Box (SCB) is a user monitoring appliance that controls privileged access to remote IT systems, records activities in searchable, movie-like audit trails, and prevents malicious actions. With the Balabit SCB App security events managed by Splunk Enterprise are extended by privileged user activities captured by Shell Control Box. Daily security operation tasks are greatly simplified, as it is no longer necessary to manually download and inspect user-related logs, as all the information is searchable and visualized in the Splunk web GUI. By having a complete, tamper-proof evidence about privileged users' access, you will be in a better position to prevent APT attacks. Tested with SCB 4F2

Categories

Created By

One Identity

Type

app

Downloads

398

Resources

Login to report this app listing