- Related Products
- AD360
- Log360
- ADManager Plus
- ADSelfService Plus
- EventLog Analyzer
- Exchange Reporter Plus
Click here to expand
To enhance the security of your ADAudit Plus installation, starting from build 7251, default access to the ADAudit Plus folder is limited to the user account used for installation and the SYSTEM, Administrators, and Domain Admins groups. However, to allow other users to start ADAudit Plus, you can follow the steps under Assign Modify permission to the ADAudit Plus folder for users starting the product.
If you are using an earlier build of ADAudit Plus, or if you have upgraded to build 7251 recently, there are two ways to safeguard the ADAudit Plus folder from unauthorized modifications:
The SecureDeployment.exe file will strengthen the security of your ADAudit Plus installation by automatically:
To run the SecureDeployment.exe file:
Note: If you are using an earlier build, download the SecureDeployment zip file, unzip it and copy its contents to <Installation_Directory>\ADAudit Plus\bin folder.
Note: If you have installed ADAudit Plus as a service with "Log On" account credentials, enter the username associated with that account.
Note: If you want to assign the permission to start ADAudit Plus to multiple users, follow the steps under Assign Modify permission to the ADAudit Plus folder for users starting the product.
If you do not want to use the SecureDeployment.exe file, you can strengthen the security of your ADAudit Plus installation by ensuring the following:
Note: If the product is installed as a service with "Log On" account credentials, ensure this account has Modify permission.
To prevent any performance issues and to avoid potential disruptions to the ADAudit Plus database's (PostgreSQL) operation, it is essential to exclude certain directories from antivirus and endpoint protection on the ADAudit Plus server. This exclusion is crucial, as antivirus and endpoint protection solutions can sometimes falsely tag the database and other files within ADAudit Plus' installation directory as a threat or vulnerability.
The performance issues that you might face in ADAudit Plus due to antivirus and endpoint protection software include high latency when processing events and alerts, low throughput when adding data to the database or DataEngine, and corruption of database files.
For optimal performance, it is recommended that you exclude the directories used by java.exe and postgres.exe from antivirus and endpoint protection on the ADAudit Plus server. The directories that need to be excluded are listed below:
<Installation_folder>\ManageEngine\ADAudit Plus\index
<Installation_folder>\ManageEngine\ADAudit Plus\eventdata
<Installation_folder>\ManageEngine\ADAudit Plus\alertdata
<Installation_folder>\ManageEngine\ADAudit Plus\ehcache
<Installation_folder>\ManageEngine\ADAudit Plus\apps\dataengine-xnode\data
<Installation_folder>\ManageEngine\ADAudit Plus\pgsql
<Installation_Directory>\ManageEngine\ADAudit Plus\jre\bin\java.exe
Copyright © 2020, ZOHO Corp. All Rights Reserved.