Record and replay secure remote access of outsource providers and remote employees
Abstract
In the following article, we will demonstrate how to audit, record and replay secure remote access gateway sessions, using Terminal Services/Citrix in conjunction with ObserveIT. In this deployment, all remote access sessions are routed through one or more central Terminal Services/Citrix remote access gateways, with management tools and secondary remote desktop sessions serving as the method to access internal Windows or UNIX servers and other network devices. All activities of outsource providers and remote employees are fully audited and recorded. This recording allows auditors and IT managers to track the complete sequence of events: have a full visual audit trail of all remote connections; identify the source of each connection; and view a step-by-step replay of the actions taken and applications accessed on these machines.
This white paper covers the following:

Setting up a secure remote access gateway
Securing the remote connection via SSL VPN Appliances or Windows 2008 TS Gateway
Recording and replaying Secure Remote Access sessions
Implementing ObserveIT User Identification
ObserveIT Real-time alerting and integration with management tools
Establishing and recording Secure Remote Access connections
In order to mitigate this risk, a leading approach to enabling remote connections is to create a secure remote
access solution.
|