Imperva Cyber Community

communities_1.jpg
 View Only
  • 1.  Profile update. Adding user to multiple profiles

    Posted 02-08-2022 07:51
    We have a DAM installation with over 15 server groups and as a result over 20 application profiles. The admins should be monitored as every other user so we have  a user group of admins in each profile. Each time, a new DB admin joins the DM team we have to add them to the user group of each profile manually. Unfortunately, API is not mature yet in order to add users automatically. 
    What method do you use in order to add a user or multiple users in multiple user profiles? 

    Thanks
    #DatabaseActivityMonitoring

    ------------------------------
    George
    ------------------------------


  • 2.  RE: Profile update. Adding user to multiple profiles

    Posted 02-14-2022 10:15
    Hi George,
    If we are speaking about DB Admins then IMPERVA has a different workflow/idea for monitoring them.
    You should create the new user group in profiles for all admins. On the last tab please click on "No profiling and protection (DBAs)".
    Everywhere where you can see the padlock, please click on it and klick option "allow any value"
    This article can help you:
    https://docs.imperva.com/howto/89c06983

    do not forget create audit policy. You have to auditing all DB Admins' actions.
    You can create the security policy too and try to find events e.g.: someone is logging in as admin but from different IP.



    ------------------------------
    Karol Gruszczynski
    IT SECURITY EXPERT
    Trafford IT
    Warsaw
    ------------------------------