Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.


Types of Accounts and there Uses

...

The use of NetID accounts is limited to non-privileged user activities such as accessing email, file shares, web browsers, workstations, and non-privileged application access.  These accounts will not be granted administrative privileges on hosts or used to authenticate services or applications to Active Directory or LDAP 389

 

...

Administrative Account

All users who have elevated access to a system or service will have one secondary account used solely for tasks that require greater administrative access.  These accounts will be created and maintained in the OU Admin in Active Directory and can only be acted on by Domain Admins. In 389 these accounts are stored in the OU People and access is restricted to System Admins. 

...

Type of AccountUsed to gain Administrative Privileged AccessPassword StoragePasswordUsed to authenticate a service or application  
Netid AccountOnly in specific casesNoUser's discretion to keep the password private and securePersonalNo  
Privileged Administrative AccountYesEnterprise Password Management solutionPersonalNo  
Vendor AccountnoNoUser's discretion to keep the password private and securePersonalNo  
Privileged Vendor AccountYesEnterprise Password Management solutionPersonalNo  
Service AccountYesEnterprise Password Management solutionnon-PersonalYes  
Departmental AccountNoUser's discretion to keep the password private and securenon-PersonalNo  
Generic AccountNoUser's discretion to keep the password private and securePersonalNo  
Event Access AccountNoUser's discretion to keep the password private and securenon-PersonalNo  

...