Integrate SolarWinds Observability Self-Hosted with ARM to see user access rights details in the web console
When you integrate SolarWinds Observability Self-Hosted with SolarWinds Access Rights Manager (ARM), you can view user access rights across supported systems, such as Active Directory, SharePoint or Exchange in the SolarWinds Platform Web Console.
This gives you a single-pane-of-glass view of the top security events and issues and enables you to launch in-context into ARM, reducing the time necessary to identify issues.
Integrate with ARM
If HTTPS is used, valid certificates are required. If self-signed certificates are used, you must install the necessary ARM certificates on the server running SolarWinds Observability Self-Hosted before you establish the connection.
-
Click Settings > All Settings in the menu bar.
-
Under Product Specific Settings, click Security Settings.
-
Under Getting Started with Security, click Access Rights Manager Settings. The settings dialog opens.
-
Enter the Base URL of your ARM server.
-
Enter your ARM credentials.
-
Click Submit.
View a summary of ARM data in the SolarWinds Platform Web Console
After ARM has been integrated, Click My Dashboards > Security > Security Summary to see ARM data on the Security Summary page.
View ARM data for individual nodes
By default, node details pages do not include ARM-specific widgets. You can manually add widgets to display ARM data for individual nodes.
The widgets are hidden on Node Details pages for non-ARM nodes.
Add ARM widgets
-
On the node details page, click the pencil icon (Edit page).
-
Click Add Widgets.
-
In the Group by filter, select Type > Security or enter "ARM node" into the search box.
-
Drag and drop the widget onto the page.
-
Click Done Adding Widgets, then click Done Editing to save your changes.
Get an overview of Active Directory
Review the number of users, groups, and more in Active Directory associated with the node's IP address.
-
Add the Active Directory Overview widget to a node details page. See Add ARM widgets.
-
Click Edit in the widget to change the information displayed.
-
Clear boxes for any items you dont need displayed in the widget and save your changes.
-
If you need more details, click Open in ARM and check the node in ARM.
See Oldest Logons
If ARM recognizes that the node IP belongs to a scanned Active directory, use Oldest 5 Logons or Oldest XX Logons to display the latest logon details, such as the user name and time stamp.
-
Add the Oldest Logons widget to a node details page. See Add ARM widgets.
-
Click Edit in the widget to change the number of records displayed, the title or subtitle.
-
If you need more details, click Open in ARM and check the node in ARM.
Review Risk Assessment
Review the summary of risk scenarios for nodes with IP addresses that belong to a scanned Active Directory or file servers. Risk Assessment information includes the IP status, risk name, the severity of the risl, and the number of IP addresses that might be affected by the risk scenario.
-
Add the Risk Assessment widget to a node details page. See Add ARM widgets.
-
Click Edit in the widget to change the title or subtitle for the widget.
-
If you need more details, click Open in ARM and check the node in ARM.