- Free Edition
- Quick Links
- Multi-factor authentication
- Active Directory MFA
- Endpoint MFA
- Windows login MFA
- Two-factor authentication
- Conditional access
- Offline MFA
- FIDO2 MFA
- Passwordless authentication
- MFA for VPN logons
- MFA for OWA logons
- MFA for Microsoft 365 users
- MFA for UAC
- MFA for remote and local macOS logons
- MFA for remote and local Linux logons
- MFA for Windows servers
- MFA for RDP
- Device-based MFA
- MFA for cloud apps
- Phishing-resistant MFA
- Adaptive MFA
- Password management
- Self-service password reset
- Self-service account unlock
- Password expiration notifications
- Password synchronization
- Password policy enforcer
- Web-based domain password change
- Cached credentials update
- Reporting and auditing
- Password self-service from logon screens
- Help-desk-assisted password reset
- Mobile password management
- Password security and compliance
- Password management and security
- Single sign-on
- Remote work enablement
- Enterprise self-service
- Reporting and auditing
- Zero trust
- Integrations
- Security
- Related Products
- ADManager Plus Active Directory Management & Reporting
- ADAudit Plus Real-time Active Directory Auditing and UBA
- Exchange Reporter Plus Exchange Server Auditing & Reporting
- EventLog Analyzer Real-time Log Analysis & Reporting
- M365 Manager Plus Microsoft 365 Management & Reporting Tool
- DataSecurity Plus File server auditing & data discovery
- RecoveryManager Plus Enterprise backup and recovery tool
- SharePoint Manager Plus SharePoint Reporting and Auditing
- AD360 Integrated Identity & Access Management
- Log360 (On-Premise | Cloud) Comprehensive SIEM and UEBA
- AD Free Tools Active Directory FREE Tools
Privileged account security with ADSelfService Plus
Privileged accounts are identities with exceptional access or abilities that go beyond what regular users possess. Being fully aware of these special capabilities, attackers are always looking to exploit privileged accounts to access and disrupt a company's most sensitive data, applications, and infrastructure.
For this reason, privileged or administrator-level accounts need to be protected with more caution. Privileged account security solutions aim to do so by adding extra layers of authentication during privileged account access.
Protecting privileged system activities with adaptive MFA
ManageEngine ADSelfService Plus offers customizable MFA with conditional access, and strong password policies to provide added security for privileged accounts. You can tailor the MFA methods and the password policy requirements for users based on their OU and group memberships, thus configuring stringent settings for administrator accounts. Using conditional access policies, you can also create your own exclusive MFA rules for privileged identities on the basis of IPs, business hours, and geolocation.
ADSelfService Plus also offers MFA for Windows User Account Control (UAC), which secures elevated system activities carried out on standard user accounts. This happens by enforcing additional authentication methods on top of passwords during all UAC credential prompts. Successful identity verification is mandatory for performing administrative actions. ADSelfService Plus provides various MFA authenticators to enhance the privileged account security.
Conditional access

Devise customized rules or conditions for adaptive authentication to occur.
Select from a broad range of conditions including IPs, business hours, and geolocation.
Windows UAC MFA

Enable Windows UAC MFA and secure admin-level activities performed on the system.
Password policy enforcer

Using the Select the Policy option, configure special password requirements for privileged users.
Enhance password complexity by configuring the use of alphanumeric characters in passwords.
Restrict the use of common dictionary words and patterns in users' passwords.
Benefits of securing your privileged accounts using ADSelfService Plus
-
Broad range of authenticators
Choose from multiple authentication factors that ADSelfService Plus offers to protect privileged system activities with MFA.
-
Customizable authenticators
Tailor UAC MFA for users according to their privileges, OU, group, and domain memberships by assigning different authenticators for verification.
-
Security for privileged activities
Prevent potential exploitation of critical system activities, even in the event of compromised administrator credentials, and enhance privileged account security.
Highlights of ADSelfService Plus
Adaptive MFA
Enable context-based MFA with 19 different authentication factors for endpoint and application logins.
Enterprise single sign-on
Allow users to access all enterprise applications with a single, secure authentication flow.
Remote work enablement
Enhance remote work with cached credential updates, secure logins, and mobile password management.
Powerful integrations
Establish an efficient and secure IT environment through integration with SIEM, ITSM, and IAM tools.
Enterprise self-service
Delegate profile updates and group subscriptions to end users and monitor these self-service actions with approval workflows.
Zero Trust
Create a Zero Trust environment with advanced identity verification techniques and render your networks impenetrable to threats.