IDABUS Password Change Notification Service (PCNS)

Password synchronization in real time

The IDABUS Password Change Notification Service (PCNS) is your reliable solution to be informed about every password change in your system. Our service allows you to receive notifications as soon as a password has been changed.

With PCNS, you can be sure that all password changes in your system are logged and monitored. This contributes significantly to the security and compliance of your company.

Our user-friendly interface and configurable settings make PCNS a solution that can be easily integrated into your existing infrastructure. You have full control over which users and systems are informed about password changes.

Rely on the IDABUS Password Change Notification Service to keep track of password changes at all times and ensure the security of your systems.

Contact us today to learn more about PCNS and how it can optimize your security measures.

Download the data sheet here.

Our password synchronization consists of three primary components: IDABUS Password Filter (PF), IDABUS Password Change Notification Service (IDABUS PCNS) and IDABUS Password Manager (PWM).

Below you will find a rough overview of the functions of the individual components and how they work together:

The PF is installed together with the PCNS on the domain controllers (DC) that are to be used as the source for your password changes. The PF intervenes directly in the writing process of the changed password and encrypts the new password based on certificates together with information about the account of the object whose password is being changed on the DC. The second component – the IDABUS PCNS – recognizes the pending password change and transmits it via HTTPS to the central PWM, which usually runs directly on the Microsoft Identity Manager (MIM) servers of the source environment. The PWM checks whether the transfer has been approved and the target systems have been determined. Traditionally, the new password is then transferred to the MIM, which transmits it to the target systems via the management agents stored there.

Alternatively, you can also integrate your own solutions for transmission to the target system.

Alternatively, you can also integrate your own solutions for transmission to the target system:

IDABUS password filter

The PF is a library that is integrated into the regular process of a password change on a DC. Filters, which are stored in the registry and can be adjusted at any time if required, are used to decide whether the password change complies with the rules and is eligible for transmission. After a successful check, the password is encrypted and stored in a file in a special directory on the DC and thus added to the queue for the PCNS.

IDABUS Password Change Notification Service

Password changes placed in the queue are recognized by the PCNS, decrypted and transmitted to the Password Manager according to a stored set of rules. In the event of network problems or system downtimes, you can adjust the frequency and intervals for transmission at any time and adapt them to your needs in real time.

Microsoft Identity Manager (MIM)

The MIM serves as a data source for the associated accounts for a password change and, in the standard configuration, also as a distributor for the password changes. In principle, the PWM can also be used without the MIM. We can discuss the desired architectures in a brief meeting.

IDABUS Password Manager

As soon as the PWM receives a password change, it first checks whether the source is generally authorized to set password changes. As soon as this test is passed, all connected accounts in the metaverse are resolved and transferred to the identified target systems, taking into account the stored rules.

  • All passwords are transferred to the password manager via encrypted channels – Only HTTPS release required in the firewall
  • Extended password policies can be set, e.g. for SAP, Unix, host systems
  • No schema extension required in the Active Directory
  • ÜTransmission of passwords across AD-Forest boundaries (no trust required)
  • Separate service accounts configurable for each source environment
  • Password filter function can be used independently of password sync function
  • All functions are compatible with the standard PCNS from Microsoft

IDABUS in the cloud

Identity and access management

Academy

Training courses and seminars

The company

The Oxford Computer Group

For a direct connection

Do you have any questions or would you like us to advise you? We will help you find the best solution for your specific requirements.

Logo Oxford Computer Group

zum Ticketsystem

Für unsere Kunden mit Support-Vertrag, klicken Sie hier für die Eröffnung eines Tickets. In unserem Kundenbereich können Tickets eröffnet, bearbeitet und in den aktuellen Stand eingesehen werden.
Logo Oxford Computer Group

Demo buchen

Wir geben Ihnen einen Überblick über die wichtigsten Funktionen in einem modernen Identity & Access Management System und entwickeln eine auf Ihre Bedürfnisse zugeschnittene Identitätslösung – vereinbaren Sie jetzt ein individuelles Gespräch mit uns!
Logo Oxford Computer Group

Newsletter

Stay up to date on training courses, events, webinars and general news from the industry.