 |

All the major functions you need to effectively manage, monitor, and secure your front-line desktops security policies.
Included is unparalleled real-time assets monitoring and tracking that reveals the actual programs run and the network and internet connections made. Log and view the activities of browsers, media, instant messaging, or file transfer programs. It even monitors for the presence of hostile trojan or worm programs on your network and can send you alerts 24 hours a day.
And it may be more easily deployed in scale at significantly lower overall up-front costs.
|
 |
Principles of Operation Preview
Security and Productivity on the Inside Edge:
ActivatorDesk Enterprise Desktops Controller begins the same as the acclaimed ActivatorDesk desktop itself, by installing a powerful free database SQL server called Interbase. This is a proven and very successful server system that runs very fast, very reliably, and consumes little processor and memory with an extremely small foot-print. This is the legendary database server system that has already been in use by large companies such as Boeing, the Boston Stock Exchange, and many prominent banks and institutions world-wide for many years.
ActivatorDesk is the first and only highly successful software system to provide for operating the Windows desktop, using a client version that may interact with a central desktops controller server using this unique 'real database' methodology. Now, for the first time, changes made to security settings, desktop portal content, and logging or monitoring functions in a centralized Controller system, appear magically minutes later on the desired individual desktops.. all automatically!
Once such powerful database servers exist on both the desktops level and a central controller system, data; such as security settings, desktop portal content, and activity logs may be efficiently transferred and put to immediate use. Crucial data is encoded and encrypted in each of the especially secured databases used. The new integrated desktops monitoring system alone forms a powerful data collection system, which produces detailed reports of network usage specific information for desktops policies enforcement, assets tracking, and forensics, including websites actually visited, programs run, Internet and local network connections made, and even the tracking of actual hacker connection locations upon intrusions of trojans or worms.
The data can even be exported into XML, HTML, or Excel data formats for further independent analysis. Instant reports of software programs manufacturers and versions running network-wide, desktop policy violations, and trojan attack summaries are already built-in. Since records of user activities are acquired 'at the desktop level' it is possible to monitor and enforce browsing and desktop use policies right through VPN-Proxy combinations that currently cause proxies to fail due to VPN packet encryption!

Desktops security is based around a very simple Mutual Consent Model whereby desktops running the ActivatorDesk Enterprise Client software voluntarily request both monitoring and control by an ActivatorDesk Enterprise Controller. The Controller may then agree to control each specific desktop by simply placing that desktop under a particular Group Policy Folder. It could not be easier to instantly align desired policies with critical front-line desktops monitoring and security controls.
Once desktop clients are 'activated' with the ActivatorDesk Enterprise Desktop Client they routinely look for their assigned controller and when communications is established with that controller they auto update their security settings, browser settings, custom portal links and content, and they send over any requested logs of desktop activities and connections made. All of this is performed on the Windows desktop transparently with the user hardly noticing. Data collection and transfer processes have been made super-efficient so the desktop user rarely knows it is working behind the scenes. If a computer is 'off-line' or disconnected from the network for a while, it can report what it did 'off-line' once it is reconnected to its assigned controller system!
The ActivatorDesk desktop with its Integrated Internet Browser System (utilizing the most popular and compatible Microsoft IE engine) has already received rave reviews world-wide. The integrated browser actually contains its own unique protocol similar to 'http://' that enables the desktop to look inside its local database and run as its own desktop portal and personal local web-server. Customized web content and links may be delivered originating from any Enterprise Controller Portal Server which is then loaded right up locally into the desktop browser itself. This is why it is called a Desktop Portal System. Since this portal is right on the desktop it loads instantly and far more reliably than any internet web portal can. It may even be viewed when totally off-line after the content was updated.
In addition, security and internet specific settings extend much beyond conventional custom browser setups becoming dynamic when used with an ActivatorDesk Controller. For example, the ActivatorDesk browser is the only browser with a '?' help-desk button for navigation. When an Administrator changes the help-desk URL for a user on a Controller, then these changes magically appear on that user's desktop in just seconds or minutes later. Similarly, the default load up page may be changed to a specific department or company portal news or organization support page, while the Home Page and Search Page are still, very politely, under the control of each individual user.
All of this is fully aligned with Windows security or the Windows Logged in User Account, although it does not depend on Windows domains and security per se. In fact, desktop level monitoring and security policies may be managed completely independently without the very expensive effort to initially setup and deploy Windows centralized security at all, potentially saving the enterprise thousands or tens of thousands of dollars of up-front deployment expenses. If Windows security is already in use, then the Enterprise Desktops Controller can only serve to extend Windows desktops security and monitoring controls much beyond its own limitations. ActivatorDesk security features even extend beyond Windows XP capabilities. Dependencies upon small vulnerable script files and replication of minature disk desktop files are also minimized in favor of more secure hard-coded executables and a 'real' robust and secured database system that cannot be easily tampered with to defeat critical security.
The ActivatorDesk Desktop Security System may be used as a simple and powerful desktops monitoring system for policies enforcement and asset tracking, but it also may restrict Internet browsing to Safe-Sites-Only. Put very simply, the Controller Portal Server can send over a group of safe or especially allowed customized links, on a per Group or per User account basis, and then restrict browsing to these 100% safe or business relevant links only. These Custom Portals are Controller Specific and will appear, or disappear, based on a change of controller used by a particular desktop.
Provisions are made for Thin Client use of this system. The client programs may be redirected to a client database residing for the logged in user on a select disk drive path. This way clusters of individual client databases, based upon the Logged in Windows User, may operate on a separate load ups to a prespecified disk drive.
Nothing can beat the speed of the Controller Real-Time Monitoring display to see immediate policy violations or trojan or worm network intrusions. But each Controller also includes a Network Alert Notification System that Administrators may use for prompt notification of all violations detected in the Main Log of that controller. Notifications may be sent 24 hours a day by e-mail (even to a pager or PDA) or may play audio warnings, or both. Alerts may be specific to browsing, program, or port violations. Port violations also include identification of common trojan and worm programs, their hacker connection location, and look-up of the involved desktops physical locations, Administrators immediately receive detailed warnings of any such events spreading on their networks as these appear in the Controller's Main Log. Now highly responsive, specific, and effective containment actions may be planned and executed, where it counts, to protect the organization.

|
Know what is happening on your whole network with just one click.
All database reporting systems are complimented by an Advanced Printing System which enable detailed printing of reports regarding almost any information including user or desktop specific violations, or even where and which trojan programs are operating. Even software version reports may be printed detailing a single desktop or enterprise-wide use of specific programs for asset management and licensing compliance. Even if a desktop or laptop were stolen, and the client software 'reports in', then a detailed report may be generated showing where it is and what it is being used for, possibly revealing other 'collaborators' as well! Such unique features are easily and quickly deployed at relatively low expense primarily because the focus of the product's development is such as to achieve stand-alone security not dependent upon Windows security in the first place.
|
For example, one of the most perplexing problems facing IT professionals today is how to secure Roaming Computers, like laptops to be more specific. But with the Client Consent Model utilized by this system Roaming Computers may consent to monitoring and security 'on-the-fly' when moving from one Enterprise Controller or network to another. This can form an instant Temporary Trust Relationship not dependent upon Windows security, whereby network participation is traded for authorized secured monitoring. Administrators may be more confident letting someone 'in the door' in exchange for knowing what was done on their network while the Roaming Computer was connected. A secure log of the pertinent activities forms a solid mutual reference point for constructing this relationship.
The Controller software may also be used to Remotely Login to any ActivatorDesk Enterprise Controller located anywhere, over a local network or on the other side of the globe over the Internet! Whether one simply needs to change a user's help-desk load-up page or lock a hostile employee out of a group of desktops, never has front-line internet desktop monitoring, security, and portal content and links distribution been more comprehensive or easier to deploy, scale, and manage.
This is just a beginning. Stay tuned for more as this system becomes released and even more highly developed!
R. Lee Heath
Chief Software Architect
www.rleeheath.com
|
 |
 |