
Использование привилегированных учетных записей при проведении атак на инфраструктуру
Узнать больше19.02.2025
Array ( [bSimple] => N [bAdmin] => N [arForm] => Array ( [ID] => 87 [TIMESTAMP_X] => 11.10.2022 17:18:10 [NAME] => Форма на странице SafeInspect [SID] => form_safeInspect [BUTTON] => Сохранить [C_SORT] => 300 [FIRST_SITE_ID] => [IMAGE_ID] => [USE_CAPTCHA] => N [DESCRIPTION] => [DESCRIPTION_TYPE] => text [FORM_TEMPLATE] => [USE_DEFAULT_TEMPLATE] => Y [SHOW_TEMPLATE] => [MAIL_EVENT_TYPE] => FORM_FILLING_form_safeInspect [SHOW_RESULT_TEMPLATE] => [PRINT_RESULT_TEMPLATE] => [EDIT_RESULT_TEMPLATE] => [FILTER_RESULT_TEMPLATE] => [TABLE_RESULT_TEMPLATE] => [USE_RESTRICTIONS] => N [RESTRICT_USER] => 0 [RESTRICT_TIME] => 0 [RESTRICT_STATUS] => [STAT_EVENT1] => form [STAT_EVENT2] => form_safeInspect [STAT_EVENT3] => [LID] => [VARNAME] => form_safeInspect [C_FIELDS] => 0 [QUESTIONS] => 18 [STATUSES] => 1 ) [arQuestions] => Array ( [fio] => Array ( [ID] => 776 [FORM_ID] => 87 [TIMESTAMP_X] => 15.04.2024 16:47:24 [ACTIVE] => Y [TITLE] => ФИО [TITLE_TYPE] => text [SID] => fio [C_SORT] => 100 [ADDITIONAL] => N [REQUIRED] => Y [IN_FILTER] => Y [IN_RESULTS_TABLE] => Y [IN_EXCEL_TABLE] => Y [FIELD_TYPE] => [IMAGE_ID] => [COMMENTS] => [FILTER_TITLE] => ФИО [RESULTS_TABLE_TITLE] => ФИО [VARNAME] => fio ) [phone] => Array ( [ID] => 777 [FORM_ID] => 87 [TIMESTAMP_X] => 11.10.2022 15:36:26 [ACTIVE] => Y [TITLE] => Телефон [TITLE_TYPE] => text [SID] => phone [C_SORT] => 200 [ADDITIONAL] => N [REQUIRED] => Y [IN_FILTER] => Y [IN_RESULTS_TABLE] => Y [IN_EXCEL_TABLE] => Y [FIELD_TYPE] => [IMAGE_ID] => [COMMENTS] => [FILTER_TITLE] => Телефон [RESULTS_TABLE_TITLE] => Телефон [VARNAME] => phone ) [email] => Array ( [ID] => 778 [FORM_ID] => 87 [TIMESTAMP_X] => 11.10.2022 15:36:37 [ACTIVE] => Y [TITLE] => E-mail [TITLE_TYPE] => text [SID] => email [C_SORT] => 300 [ADDITIONAL] => N [REQUIRED] => Y [IN_FILTER] => Y [IN_RESULTS_TABLE] => Y [IN_EXCEL_TABLE] => Y [FIELD_TYPE] => [IMAGE_ID] => [COMMENTS] => [FILTER_TITLE] => E-mail [RESULTS_TABLE_TITLE] => E-mail [VARNAME] => email ) [company] => Array ( [ID] => 779 [FORM_ID] => 87 [TIMESTAMP_X] => 11.10.2022 15:36:51 [ACTIVE] => Y [TITLE] => Компания [TITLE_TYPE] => text [SID] => company [C_SORT] => 400 [ADDITIONAL] => N [REQUIRED] => N [IN_FILTER] => Y [IN_RESULTS_TABLE] => Y [IN_EXCEL_TABLE] => Y [FIELD_TYPE] => [IMAGE_ID] => [COMMENTS] => [FILTER_TITLE] => Компания [RESULTS_TABLE_TITLE] => Компания [VARNAME] => company ) [comment] => Array ( [ID] => 780 [FORM_ID] => 87 [TIMESTAMP_X] => 11.10.2022 15:37:02 [ACTIVE] => Y [TITLE] => Комментарий [TITLE_TYPE] => text [SID] => comment [C_SORT] => 500 [ADDITIONAL] => N [REQUIRED] => N [IN_FILTER] => Y [IN_RESULTS_TABLE] => Y [IN_EXCEL_TABLE] => Y [FIELD_TYPE] => [IMAGE_ID] => [COMMENTS] => [FILTER_TITLE] => Комментарий [RESULTS_TABLE_TITLE] => Комментарий [VARNAME] => comment ) [product] => Array ( [ID] => 781 [FORM_ID] => 87 [TIMESTAMP_X] => 11.10.2022 15:37:18 [ACTIVE] => Y [TITLE] => Продукт [TITLE_TYPE] => text [SID] => product [C_SORT] => 600 [ADDITIONAL] => N [REQUIRED] => N [IN_FILTER] => Y [IN_RESULTS_TABLE] => Y [IN_EXCEL_TABLE] => Y [FIELD_TYPE] => [IMAGE_ID] => [COMMENTS] => [FILTER_TITLE] => Продукт [RESULTS_TABLE_TITLE] => Продукт [VARNAME] => product ) [utm_source] => Array ( [ID] => 782 [FORM_ID] => 87 [TIMESTAMP_X] => 11.10.2022 15:37:39 [ACTIVE] => Y [TITLE] => utm_source [TITLE_TYPE] => text [SID] => utm_source [C_SORT] => 700 [ADDITIONAL] => N [REQUIRED] => N [IN_FILTER] => Y [IN_RESULTS_TABLE] => Y [IN_EXCEL_TABLE] => Y [FIELD_TYPE] => [IMAGE_ID] => [COMMENTS] => [FILTER_TITLE] => utm_source [RESULTS_TABLE_TITLE] => utm_source [VARNAME] => utm_source ) [utm_medium] => Array ( [ID] => 783 [FORM_ID] => 87 [TIMESTAMP_X] => 11.10.2022 15:39:55 [ACTIVE] => Y [TITLE] => utm_medium [TITLE_TYPE] => text [SID] => utm_medium [C_SORT] => 800 [ADDITIONAL] => N [REQUIRED] => N [IN_FILTER] => Y [IN_RESULTS_TABLE] => Y [IN_EXCEL_TABLE] => Y [FIELD_TYPE] => [IMAGE_ID] => [COMMENTS] => [FILTER_TITLE] => utm_medium [RESULTS_TABLE_TITLE] => utm_medium [VARNAME] => utm_medium ) [utm_campaign] => Array ( [ID] => 784 [FORM_ID] => 87 [TIMESTAMP_X] => 11.10.2022 15:40:13 [ACTIVE] => Y [TITLE] => utm_campaign [TITLE_TYPE] => text [SID] => utm_campaign [C_SORT] => 900 [ADDITIONAL] => N [REQUIRED] => N [IN_FILTER] => Y [IN_RESULTS_TABLE] => Y [IN_EXCEL_TABLE] => Y [FIELD_TYPE] => [IMAGE_ID] => [COMMENTS] => [FILTER_TITLE] => utm_campaign [RESULTS_TABLE_TITLE] => utm_campaign [VARNAME] => utm_campaign ) [utm_term] => Array ( [ID] => 785 [FORM_ID] => 87 [TIMESTAMP_X] => 11.10.2022 15:40:24 [ACTIVE] => Y [TITLE] => utm_term [TITLE_TYPE] => text [SID] => utm_term [C_SORT] => 1000 [ADDITIONAL] => N [REQUIRED] => N [IN_FILTER] => Y [IN_RESULTS_TABLE] => Y [IN_EXCEL_TABLE] => Y [FIELD_TYPE] => [IMAGE_ID] => [COMMENTS] => [FILTER_TITLE] => utm_term [RESULTS_TABLE_TITLE] => utm_term [VARNAME] => utm_term ) [reff] => Array ( [ID] => 786 [FORM_ID] => 87 [TIMESTAMP_X] => 11.10.2022 15:46:34 [ACTIVE] => Y [TITLE] => Первый заход [TITLE_TYPE] => text [SID] => reff [C_SORT] => 1100 [ADDITIONAL] => N [REQUIRED] => N [IN_FILTER] => Y [IN_RESULTS_TABLE] => Y [IN_EXCEL_TABLE] => Y [FIELD_TYPE] => [IMAGE_ID] => [COMMENTS] => [FILTER_TITLE] => Первый заход [RESULTS_TABLE_TITLE] => Первый заход [VARNAME] => reff ) [url] => Array ( [ID] => 787 [FORM_ID] => 87 [TIMESTAMP_X] => 11.10.2022 14:52:57 [ACTIVE] => Y [TITLE] => url [TITLE_TYPE] => text [SID] => url [C_SORT] => 1200 [ADDITIONAL] => N [REQUIRED] => N [IN_FILTER] => N [IN_RESULTS_TABLE] => Y [IN_EXCEL_TABLE] => Y [FIELD_TYPE] => [IMAGE_ID] => [COMMENTS] => [FILTER_TITLE] => [RESULTS_TABLE_TITLE] => [VARNAME] => url ) [clientidga] => Array ( [ID] => 788 [FORM_ID] => 87 [TIMESTAMP_X] => 11.10.2022 14:52:57 [ACTIVE] => Y [TITLE] => client-id-ga [TITLE_TYPE] => text [SID] => clientidga [C_SORT] => 1300 [ADDITIONAL] => N [REQUIRED] => N [IN_FILTER] => N [IN_RESULTS_TABLE] => Y [IN_EXCEL_TABLE] => Y [FIELD_TYPE] => [IMAGE_ID] => [COMMENTS] => [FILTER_TITLE] => [RESULTS_TABLE_TITLE] => [VARNAME] => clientidga ) [clientidym] => Array ( [ID] => 789 [FORM_ID] => 87 [TIMESTAMP_X] => 11.10.2022 14:52:57 [ACTIVE] => Y [TITLE] => client-id-ym [TITLE_TYPE] => text [SID] => clientidym [C_SORT] => 1400 [ADDITIONAL] => N [REQUIRED] => N [IN_FILTER] => N [IN_RESULTS_TABLE] => Y [IN_EXCEL_TABLE] => Y [FIELD_TYPE] => [IMAGE_ID] => [COMMENTS] => [FILTER_TITLE] => [RESULTS_TABLE_TITLE] => [VARNAME] => clientidym ) [gacounterid] => Array ( [ID] => 790 [FORM_ID] => 87 [TIMESTAMP_X] => 11.10.2022 14:52:57 [ACTIVE] => Y [TITLE] => ga-counter-id [TITLE_TYPE] => text [SID] => gacounterid [C_SORT] => 1500 [ADDITIONAL] => N [REQUIRED] => N [IN_FILTER] => N [IN_RESULTS_TABLE] => Y [IN_EXCEL_TABLE] => Y [FIELD_TYPE] => [IMAGE_ID] => [COMMENTS] => [FILTER_TITLE] => [RESULTS_TABLE_TITLE] => [VARNAME] => gacounterid ) [ymcounterid] => Array ( [ID] => 791 [FORM_ID] => 87 [TIMESTAMP_X] => 11.10.2022 14:52:57 [ACTIVE] => Y [TITLE] => ym-counter-id [TITLE_TYPE] => text [SID] => ymcounterid [C_SORT] => 1600 [ADDITIONAL] => N [REQUIRED] => N [IN_FILTER] => N [IN_RESULTS_TABLE] => Y [IN_EXCEL_TABLE] => Y [FIELD_TYPE] => [IMAGE_ID] => [COMMENTS] => [FILTER_TITLE] => [RESULTS_TABLE_TITLE] => [VARNAME] => ymcounterid ) [marketing] => Array ( [ID] => 884 [FORM_ID] => 87 [TIMESTAMP_X] => 11.01.2023 18:38:57 [ACTIVE] => Y [TITLE] => Согласие на получение последних новостей компании, сообщений рекламного и информационного характера [TITLE_TYPE] => text [SID] => marketing [C_SORT] => 1700 [ADDITIONAL] => N [REQUIRED] => N [IN_FILTER] => N [IN_RESULTS_TABLE] => Y [IN_EXCEL_TABLE] => Y [FIELD_TYPE] => [IMAGE_ID] => [COMMENTS] => [FILTER_TITLE] => [RESULTS_TABLE_TITLE] => [VARNAME] => marketing ) [policy] => Array ( [ID] => 1434 [FORM_ID] => 87 [TIMESTAMP_X] => 05.06.2024 13:55:59 [ACTIVE] => Y [TITLE] => Cогласие на обработку своих данных согласно политике обработки персональных данных. [TITLE_TYPE] => text [SID] => policy [C_SORT] => 1800 [ADDITIONAL] => N [REQUIRED] => Y [IN_FILTER] => N [IN_RESULTS_TABLE] => Y [IN_EXCEL_TABLE] => Y [FIELD_TYPE] => [IMAGE_ID] => [COMMENTS] => [FILTER_TITLE] => [RESULTS_TABLE_TITLE] => Cогласие на обработку своих данных согласно политике обработки персональных данных. [VARNAME] => policy ) ) [arAnswers] => Array ( [fio] => Array ( [0] => Array ( [ID] => 1568 [FIELD_ID] => 776 [QUESTION_ID] => 776 [TIMESTAMP_X] => 15.04.2024 16:47:24 [MESSAGE] => [VALUE] => [FIELD_TYPE] => text [FIELD_WIDTH] => 0 [FIELD_HEIGHT] => 0 [FIELD_PARAM] => NOT_FULL [C_SORT] => 0 [ACTIVE] => Y ) ) [phone] => Array ( [0] => Array ( [ID] => 1569 [FIELD_ID] => 777 [QUESTION_ID] => 777 [TIMESTAMP_X] => 11.10.2022 15:36:26 [MESSAGE] => [VALUE] => [FIELD_TYPE] => text [FIELD_WIDTH] => 0 [FIELD_HEIGHT] => 0 [FIELD_PARAM] => [C_SORT] => 0 [ACTIVE] => Y ) ) [email] => Array ( [0] => Array ( [ID] => 1570 [FIELD_ID] => 778 [QUESTION_ID] => 778 [TIMESTAMP_X] => 11.10.2022 15:36:37 [MESSAGE] => [VALUE] => [FIELD_TYPE] => email [FIELD_WIDTH] => 0 [FIELD_HEIGHT] => 0 [FIELD_PARAM] => [C_SORT] => 0 [ACTIVE] => Y ) ) [company] => Array ( [0] => Array ( [ID] => 1571 [FIELD_ID] => 779 [QUESTION_ID] => 779 [TIMESTAMP_X] => 11.10.2022 15:36:51 [MESSAGE] => [VALUE] => [FIELD_TYPE] => text [FIELD_WIDTH] => 0 [FIELD_HEIGHT] => 0 [FIELD_PARAM] => [C_SORT] => 0 [ACTIVE] => Y ) ) [comment] => Array ( [0] => Array ( [ID] => 1572 [FIELD_ID] => 780 [QUESTION_ID] => 780 [TIMESTAMP_X] => 11.10.2022 15:37:02 [MESSAGE] => [VALUE] => [FIELD_TYPE] => textarea [FIELD_WIDTH] => 0 [FIELD_HEIGHT] => 0 [FIELD_PARAM] => [C_SORT] => 0 [ACTIVE] => Y ) ) [product] => Array ( [0] => Array ( [ID] => 1573 [FIELD_ID] => 781 [QUESTION_ID] => 781 [TIMESTAMP_X] => 11.10.2022 15:37:18 [MESSAGE] => [VALUE] => [FIELD_TYPE] => text [FIELD_WIDTH] => 0 [FIELD_HEIGHT] => 0 [FIELD_PARAM] => [C_SORT] => 0 [ACTIVE] => Y ) ) [utm_source] => Array ( [0] => Array ( [ID] => 1574 [FIELD_ID] => 782 [QUESTION_ID] => 782 [TIMESTAMP_X] => 11.10.2022 15:37:39 [MESSAGE] => [VALUE] => [FIELD_TYPE] => text [FIELD_WIDTH] => 0 [FIELD_HEIGHT] => 0 [FIELD_PARAM] => [C_SORT] => 0 [ACTIVE] => Y ) ) [utm_medium] => Array ( [0] => Array ( [ID] => 1575 [FIELD_ID] => 783 [QUESTION_ID] => 783 [TIMESTAMP_X] => 11.10.2022 15:39:55 [MESSAGE] => [VALUE] => [FIELD_TYPE] => text [FIELD_WIDTH] => 0 [FIELD_HEIGHT] => 0 [FIELD_PARAM] => [C_SORT] => 0 [ACTIVE] => Y ) ) [utm_campaign] => Array ( [0] => Array ( [ID] => 1576 [FIELD_ID] => 784 [QUESTION_ID] => 784 [TIMESTAMP_X] => 11.10.2022 15:40:13 [MESSAGE] => [VALUE] => [FIELD_TYPE] => text [FIELD_WIDTH] => 0 [FIELD_HEIGHT] => 0 [FIELD_PARAM] => [C_SORT] => 0 [ACTIVE] => Y ) ) [utm_term] => Array ( [0] => Array ( [ID] => 1577 [FIELD_ID] => 785 [QUESTION_ID] => 785 [TIMESTAMP_X] => 11.10.2022 15:40:24 [MESSAGE] => [VALUE] => [FIELD_TYPE] => text [FIELD_WIDTH] => 0 [FIELD_HEIGHT] => 0 [FIELD_PARAM] => [C_SORT] => 0 [ACTIVE] => Y ) ) [reff] => Array ( [0] => Array ( [ID] => 1578 [FIELD_ID] => 786 [QUESTION_ID] => 786 [TIMESTAMP_X] => 11.10.2022 15:46:34 [MESSAGE] => [VALUE] => [FIELD_TYPE] => text [FIELD_WIDTH] => 0 [FIELD_HEIGHT] => 0 [FIELD_PARAM] => [C_SORT] => 0 [ACTIVE] => Y ) ) [url] => Array ( [0] => Array ( [ID] => 1579 [FIELD_ID] => 787 [QUESTION_ID] => 787 [TIMESTAMP_X] => 11.10.2022 14:52:57 [MESSAGE] => [VALUE] => [FIELD_TYPE] => text [FIELD_WIDTH] => 0 [FIELD_HEIGHT] => 0 [FIELD_PARAM] => [C_SORT] => 100 [ACTIVE] => Y ) ) [clientidga] => Array ( [0] => Array ( [ID] => 1580 [FIELD_ID] => 788 [QUESTION_ID] => 788 [TIMESTAMP_X] => 11.10.2022 14:52:57 [MESSAGE] => [VALUE] => [FIELD_TYPE] => text [FIELD_WIDTH] => 0 [FIELD_HEIGHT] => 0 [FIELD_PARAM] => [C_SORT] => 100 [ACTIVE] => Y ) ) [clientidym] => Array ( [0] => Array ( [ID] => 1581 [FIELD_ID] => 789 [QUESTION_ID] => 789 [TIMESTAMP_X] => 11.10.2022 14:52:57 [MESSAGE] => [VALUE] => [FIELD_TYPE] => text [FIELD_WIDTH] => 0 [FIELD_HEIGHT] => 0 [FIELD_PARAM] => [C_SORT] => 100 [ACTIVE] => Y ) ) [gacounterid] => Array ( [0] => Array ( [ID] => 1582 [FIELD_ID] => 790 [QUESTION_ID] => 790 [TIMESTAMP_X] => 11.10.2022 14:52:57 [MESSAGE] => [VALUE] => [FIELD_TYPE] => text [FIELD_WIDTH] => 0 [FIELD_HEIGHT] => 0 [FIELD_PARAM] => [C_SORT] => 100 [ACTIVE] => Y ) ) [ymcounterid] => Array ( [0] => Array ( [ID] => 1583 [FIELD_ID] => 791 [QUESTION_ID] => 791 [TIMESTAMP_X] => 11.10.2022 14:52:57 [MESSAGE] => [VALUE] => [FIELD_TYPE] => text [FIELD_WIDTH] => 0 [FIELD_HEIGHT] => 0 [FIELD_PARAM] => [C_SORT] => 100 [ACTIVE] => Y ) ) [marketing] => Array ( [0] => Array ( [ID] => 1676 [FIELD_ID] => 884 [QUESTION_ID] => 884 [TIMESTAMP_X] => 11.01.2023 18:38:57 [MESSAGE] => Согласие на получение последних новостей компании, сообщений рекламного и информационного характера [VALUE] => [FIELD_TYPE] => checkbox [FIELD_WIDTH] => 0 [FIELD_HEIGHT] => 0 [FIELD_PARAM] => [C_SORT] => 100 [ACTIVE] => Y ) ) [policy] => Array ( [0] => Array ( [ID] => 2241 [FIELD_ID] => 1434 [QUESTION_ID] => 1434 [TIMESTAMP_X] => 05.06.2024 13:55:59 [MESSAGE] => Да [VALUE] => Y [FIELD_TYPE] => checkbox [FIELD_WIDTH] => 0 [FIELD_HEIGHT] => 0 [FIELD_PARAM] => [C_SORT] => 100 [ACTIVE] => Y ) ) ) [arDropDown] => Array ( ) [arMultiSelect] => Array ( ) [WEB_FORM_NAME] => form_safeInspect [F_RIGHT] => 10 [FORM_NOTE] => [isFormNote] => N [arrVALUES] => Array ( ) [isFormErrors] => N [isAccessFormParams] => N [isStatisticIncluded] => Y [FORM_HEADER] =>[QUESTIONS] => Array ( [fio] => Array ( [CAPTION] => ФИО [IS_HTML_CAPTION] => N [REQUIRED] => Y [IS_INPUT_CAPTION_IMAGE] => N [HTML_CODE] => [STRUCTURE] => Array ( [0] => Array ( [ID] => 1568 [FIELD_ID] => 776 [QUESTION_ID] => 776 [TIMESTAMP_X] => 15.04.2024 16:47:24 [MESSAGE] => [VALUE] => [FIELD_TYPE] => text [FIELD_WIDTH] => 0 [FIELD_HEIGHT] => 0 [FIELD_PARAM] => NOT_FULL [C_SORT] => 0 [ACTIVE] => Y ) ) [VALUE] => ) [phone] => Array ( [CAPTION] => Телефон [IS_HTML_CAPTION] => N [REQUIRED] => Y [IS_INPUT_CAPTION_IMAGE] => N [HTML_CODE] => [STRUCTURE] => Array ( [0] => Array ( [ID] => 1569 [FIELD_ID] => 777 [QUESTION_ID] => 777 [TIMESTAMP_X] => 11.10.2022 15:36:26 [MESSAGE] => [VALUE] => [FIELD_TYPE] => text [FIELD_WIDTH] => 0 [FIELD_HEIGHT] => 0 [FIELD_PARAM] => [C_SORT] => 0 [ACTIVE] => Y ) ) [VALUE] => ) [email] => Array ( [CAPTION] => E-mail [IS_HTML_CAPTION] => N [REQUIRED] => Y [IS_INPUT_CAPTION_IMAGE] => N [HTML_CODE] => [STRUCTURE] => Array ( [0] => Array ( [ID] => 1570 [FIELD_ID] => 778 [QUESTION_ID] => 778 [TIMESTAMP_X] => 11.10.2022 15:36:37 [MESSAGE] => [VALUE] => [FIELD_TYPE] => email [FIELD_WIDTH] => 0 [FIELD_HEIGHT] => 0 [FIELD_PARAM] => [C_SORT] => 0 [ACTIVE] => Y ) ) [VALUE] => ) [company] => Array ( [CAPTION] => Компания [IS_HTML_CAPTION] => N [REQUIRED] => N [IS_INPUT_CAPTION_IMAGE] => N [HTML_CODE] => [STRUCTURE] => Array ( [0] => Array ( [ID] => 1571 [FIELD_ID] => 779 [QUESTION_ID] => 779 [TIMESTAMP_X] => 11.10.2022 15:36:51 [MESSAGE] => [VALUE] => [FIELD_TYPE] => text [FIELD_WIDTH] => 0 [FIELD_HEIGHT] => 0 [FIELD_PARAM] => [C_SORT] => 0 [ACTIVE] => Y ) ) [VALUE] => ) [comment] => Array ( [CAPTION] => Комментарий [IS_HTML_CAPTION] => N [REQUIRED] => N [IS_INPUT_CAPTION_IMAGE] => N [HTML_CODE] => [STRUCTURE] => Array ( [0] => Array ( [ID] => 1572 [FIELD_ID] => 780 [QUESTION_ID] => 780 [TIMESTAMP_X] => 11.10.2022 15:37:02 [MESSAGE] => [VALUE] => [FIELD_TYPE] => textarea [FIELD_WIDTH] => 0 [FIELD_HEIGHT] => 0 [FIELD_PARAM] => [C_SORT] => 0 [ACTIVE] => Y ) ) [VALUE] => ) [product] => Array ( [CAPTION] => Продукт [IS_HTML_CAPTION] => N [REQUIRED] => N [IS_INPUT_CAPTION_IMAGE] => N [HTML_CODE] => [STRUCTURE] => Array ( [0] => Array ( [ID] => 1573 [FIELD_ID] => 781 [QUESTION_ID] => 781 [TIMESTAMP_X] => 11.10.2022 15:37:18 [MESSAGE] => [VALUE] => [FIELD_TYPE] => text [FIELD_WIDTH] => 0 [FIELD_HEIGHT] => 0 [FIELD_PARAM] => [C_SORT] => 0 [ACTIVE] => Y ) ) [VALUE] => ) [utm_source] => Array ( [CAPTION] => utm_source [IS_HTML_CAPTION] => N [REQUIRED] => N [IS_INPUT_CAPTION_IMAGE] => N [HTML_CODE] => [STRUCTURE] => Array ( [0] => Array ( [ID] => 1574 [FIELD_ID] => 782 [QUESTION_ID] => 782 [TIMESTAMP_X] => 11.10.2022 15:37:39 [MESSAGE] => [VALUE] => [FIELD_TYPE] => text [FIELD_WIDTH] => 0 [FIELD_HEIGHT] => 0 [FIELD_PARAM] => [C_SORT] => 0 [ACTIVE] => Y ) ) [VALUE] => ) [utm_medium] => Array ( [CAPTION] => utm_medium [IS_HTML_CAPTION] => N [REQUIRED] => N [IS_INPUT_CAPTION_IMAGE] => N [HTML_CODE] => [STRUCTURE] => Array ( [0] => Array ( [ID] => 1575 [FIELD_ID] => 783 [QUESTION_ID] => 783 [TIMESTAMP_X] => 11.10.2022 15:39:55 [MESSAGE] => [VALUE] => [FIELD_TYPE] => text [FIELD_WIDTH] => 0 [FIELD_HEIGHT] => 0 [FIELD_PARAM] => [C_SORT] => 0 [ACTIVE] => Y ) ) [VALUE] => ) [utm_campaign] => Array ( [CAPTION] => utm_campaign [IS_HTML_CAPTION] => N [REQUIRED] => N [IS_INPUT_CAPTION_IMAGE] => N [HTML_CODE] => [STRUCTURE] => Array ( [0] => Array ( [ID] => 1576 [FIELD_ID] => 784 [QUESTION_ID] => 784 [TIMESTAMP_X] => 11.10.2022 15:40:13 [MESSAGE] => [VALUE] => [FIELD_TYPE] => text [FIELD_WIDTH] => 0 [FIELD_HEIGHT] => 0 [FIELD_PARAM] => [C_SORT] => 0 [ACTIVE] => Y ) ) [VALUE] => ) [utm_term] => Array ( [CAPTION] => utm_term [IS_HTML_CAPTION] => N [REQUIRED] => N [IS_INPUT_CAPTION_IMAGE] => N [HTML_CODE] => [STRUCTURE] => Array ( [0] => Array ( [ID] => 1577 [FIELD_ID] => 785 [QUESTION_ID] => 785 [TIMESTAMP_X] => 11.10.2022 15:40:24 [MESSAGE] => [VALUE] => [FIELD_TYPE] => text [FIELD_WIDTH] => 0 [FIELD_HEIGHT] => 0 [FIELD_PARAM] => [C_SORT] => 0 [ACTIVE] => Y ) ) [VALUE] => ) [reff] => Array ( [CAPTION] => Первый заход [IS_HTML_CAPTION] => N [REQUIRED] => N [IS_INPUT_CAPTION_IMAGE] => N [HTML_CODE] => [STRUCTURE] => Array ( [0] => Array ( [ID] => 1578 [FIELD_ID] => 786 [QUESTION_ID] => 786 [TIMESTAMP_X] => 11.10.2022 15:46:34 [MESSAGE] => [VALUE] => [FIELD_TYPE] => text [FIELD_WIDTH] => 0 [FIELD_HEIGHT] => 0 [FIELD_PARAM] => [C_SORT] => 0 [ACTIVE] => Y ) ) [VALUE] => ) [url] => Array ( [CAPTION] => url [IS_HTML_CAPTION] => N [REQUIRED] => N [IS_INPUT_CAPTION_IMAGE] => N [HTML_CODE] => [STRUCTURE] => Array ( [0] => Array ( [ID] => 1579 [FIELD_ID] => 787 [QUESTION_ID] => 787 [TIMESTAMP_X] => 11.10.2022 14:52:57 [MESSAGE] => [VALUE] => [FIELD_TYPE] => text [FIELD_WIDTH] => 0 [FIELD_HEIGHT] => 0 [FIELD_PARAM] => [C_SORT] => 100 [ACTIVE] => Y ) ) [VALUE] => ) [clientidga] => Array ( [CAPTION] => client-id-ga [IS_HTML_CAPTION] => N [REQUIRED] => N [IS_INPUT_CAPTION_IMAGE] => N [HTML_CODE] => [STRUCTURE] => Array ( [0] => Array ( [ID] => 1580 [FIELD_ID] => 788 [QUESTION_ID] => 788 [TIMESTAMP_X] => 11.10.2022 14:52:57 [MESSAGE] => [VALUE] => [FIELD_TYPE] => text [FIELD_WIDTH] => 0 [FIELD_HEIGHT] => 0 [FIELD_PARAM] => [C_SORT] => 100 [ACTIVE] => Y ) ) [VALUE] => ) [clientidym] => Array ( [CAPTION] => client-id-ym [IS_HTML_CAPTION] => N [REQUIRED] => N [IS_INPUT_CAPTION_IMAGE] => N [HTML_CODE] => [STRUCTURE] => Array ( [0] => Array ( [ID] => 1581 [FIELD_ID] => 789 [QUESTION_ID] => 789 [TIMESTAMP_X] => 11.10.2022 14:52:57 [MESSAGE] => [VALUE] => [FIELD_TYPE] => text [FIELD_WIDTH] => 0 [FIELD_HEIGHT] => 0 [FIELD_PARAM] => [C_SORT] => 100 [ACTIVE] => Y ) ) [VALUE] => ) [gacounterid] => Array ( [CAPTION] => ga-counter-id [IS_HTML_CAPTION] => N [REQUIRED] => N [IS_INPUT_CAPTION_IMAGE] => N [HTML_CODE] => [STRUCTURE] => Array ( [0] => Array ( [ID] => 1582 [FIELD_ID] => 790 [QUESTION_ID] => 790 [TIMESTAMP_X] => 11.10.2022 14:52:57 [MESSAGE] => [VALUE] => [FIELD_TYPE] => text [FIELD_WIDTH] => 0 [FIELD_HEIGHT] => 0 [FIELD_PARAM] => [C_SORT] => 100 [ACTIVE] => Y ) ) [VALUE] => ) [ymcounterid] => Array ( [CAPTION] => ym-counter-id [IS_HTML_CAPTION] => N [REQUIRED] => N [IS_INPUT_CAPTION_IMAGE] => N [HTML_CODE] => [STRUCTURE] => Array ( [0] => Array ( [ID] => 1583 [FIELD_ID] => 791 [QUESTION_ID] => 791 [TIMESTAMP_X] => 11.10.2022 14:52:57 [MESSAGE] => [VALUE] => [FIELD_TYPE] => text [FIELD_WIDTH] => 0 [FIELD_HEIGHT] => 0 [FIELD_PARAM] => [C_SORT] => 100 [ACTIVE] => Y ) ) [VALUE] => ) [marketing] => Array ( [CAPTION] => Согласие на получение последних новостей компании, сообщений рекламного и информационного характера [IS_HTML_CAPTION] => N [REQUIRED] => N [IS_INPUT_CAPTION_IMAGE] => N [HTML_CODE] => [STRUCTURE] => Array ( [0] => Array ( [ID] => 1676 [FIELD_ID] => 884 [QUESTION_ID] => 884 [TIMESTAMP_X] => 11.01.2023 18:38:57 [MESSAGE] => Согласие на получение последних новостей компании, сообщений рекламного и информационного характера [VALUE] => [FIELD_TYPE] => checkbox [FIELD_WIDTH] => 0 [FIELD_HEIGHT] => 0 [FIELD_PARAM] => [C_SORT] => 100 [ACTIVE] => Y ) ) [VALUE] => ) [policy] => Array ( [CAPTION] => Cогласие на обработку своих данных согласно политике обработки персональных данных. [IS_HTML_CAPTION] => N [REQUIRED] => Y [IS_INPUT_CAPTION_IMAGE] => N [HTML_CODE] => [STRUCTURE] => Array ( [0] => Array ( [ID] => 2241 [FIELD_ID] => 1434 [QUESTION_ID] => 1434 [TIMESTAMP_X] => 05.06.2024 13:55:59 [MESSAGE] => Да [VALUE] => Y [FIELD_TYPE] => checkbox [FIELD_WIDTH] => 0 [FIELD_HEIGHT] => 0 [FIELD_PARAM] => [C_SORT] => 100 [ACTIVE] => Y ) ) [VALUE] => ) ) [SUBMIT_BUTTON] => [APPLY_BUTTON] => [RESET_BUTTON] => [REQUIRED_STAR] => * [CAPTCHA_IMAGE] =>
Сейчас во многих компаниях есть удаленные сотрудники, которым необходим дистанционный доступ к объектам ИТ-инфраструктуры. Работу можно организовать с помощью таких протоколов, как SSH и RDP. В статье коротко рассказываем об их особенностях, сильных сторонах и областях применения. Также затрагиваем вопрос контроля удаленных сессий с помощью системы Solar SafeInspect, относящейся к классу решений Privileged Access Management (PAM).
SSH-протокол: что это, зачем нужен
Secure Shell — протокол сетевого уровня, обеспечивающий безопасный удаленный доступ к серверам и компьютерам. Он применяется для выполнения команд на устройствах, дистанционного управления объектами ИТ-инфраструктуры, защищенной передачи данных, туннелирования трафика.
Протокол работает по клиент-серверной модели. Клиент инициирует соединение SSH с открытым ключом, сервер проверяет ключ, отправляя в ответ случайный текст. Клиент шифрует переданную информацию с помощью закрытого ключа и отправляет обратно, сервер расшифровывает открытым ключом. Если расшифрованный текст совпадает с отправленным, аутентификация проходит успешно, после чего разрешается передача данных.
Ключевые преимущества протокола:
Также SSH-протокол обладает рядом других необходимых свойств, таких, как гибкость, безопасность, поддержка автоматизации через скрипты.
Понятие RDP-протокола, выполняемые задачи и функции
Remote Desktop Protocol от Microsoft — проприетарный протокол прикладного уровня, используемый для безопасного подключения к удаленным устройствам. Как и SSH, RDP широко применяется организациями для обеспечения дистанционной работы сотрудников. Например, он позволяет специалистам, которые трудятся из дома, подключаться к корпоративным ПК, ИТ-службам, удаленно обслуживать оборудование/ПО и др.
Как работает протокол? Пользовательское устройство инициирует подключение, затем после подтверждения коннекта на транспортном уровне вызываемая система начинает RDP-сессию. Если процедура завершается успешно, терминальный сервер запускает отображение графического интерфейса удаленного компьютера и возможность ввода с помощью мыши или клавиатуры.
Ключевые преимущества протокола — удобство работы в графической среде, возможность удаленного управления операционными системами Windows.
В чем разница между протоколами SSH и RDP
Основное отличие SSH от RDP в том, что этот протокол зачастую использует для аутентификации пару ключей (публичный и закрытый) вместо учетных данных. Такой механизм гораздо надежнее в плане безопасности.
Второе различие — в интерфейсе. В RDP он графический, в SSH — текстовый. Третье — в области применения. SSH позволяет организовывать удаленную серверную работу, RDP — управление графическими системами.
Если рассматривать эти протоколы с точки зрения простоты эксплуатации, то SSH гораздо сложнее, поскольку для его использования потребуются определенные технические знания.
Проблемы безопасности при использовании протоколов SSH и RDP
С ростом потребности в удаленных подключениях резко увеличилось количество атак на протоколы. Примеры самых распространенных схем:
Такие атаки сопряжены с серьезными рисками для корпоративной инфраструктуры, поскольку хакеры могут завладеть конфиденциальной информацией или нарушить работу систем. В целях защиты следует использовать надежные механизмы аутентификации и контролировать работу удаленных пользователей, особенно привилегированных.
Как повысить безопасность SSH и RDP-соединений с помощью PAM-системы Solar SafeInspect
Solar SafeInspect — российское решение класса Privileged Access Management (PAM). Оно внедряется компаниями с целью повысить эффективность управления привилегированным доступом и снизить риски инцидентов ИБ, связанных с использованием привилегированных учетных данных.
Чтобы понимать, какую роль Solar SafeInspect играет в контроле SSH и RDP-соединений, рассказываем, что такое привилегированный доступ. Это расширенные полномочия, назначаемые отдельным сотрудникам (в том числе удаленным). Они позволяют получать доступ к базам данных и критически важным объектам ИТ-инфраструктуры, средствам защиты информации, чувствительным сведениям. Кто может быть привилегированным пользователем? Системный администратор, администратор сетей, аудитор, специалист IT-службы и др. Работу таких пользователей необходимо контролировать во избежание инцидентов ИБ, которые могут произойти в результате ошибок при выполнении обязанностей, злого умысла или компрометации привилегированных учетных записей.
Возможности решения для контроля сессий SSH и RDP:
Все подключения привилегированных пользователей проходят через РАМ-систему, поэтому снижаются риски, что подозрительные действия останутся незамеченными. Такой контроль позволяет минимизировать вероятность утечек чувствительных данных и усиливает механизмы безопасности, реализованные в протоколах SSH и RDP.
Выводы
Для организации удаленных подключений используются SSHvsRDP-протоколы, обеспечивающие безопасность передаваемых данных. Однако их применение не исключает необходимость контроля за действиями привилегированных пользователей, наделенных расширенными правами. Минимизировать риски, связанные с привилегированным доступом, поможет РАМ-система Solar SafeInspect. С ее помощью осуществляются мониторинг и запись рабочих сессий, прерывание сеансов в случае нарушений со стороны удаленных сотрудников с широкими полномочиями.
ДРУГИЕ СТАТЬИ ПРОДУКТА
Еще больше о наших возможностях
Использование привилегированных учетных записей при проведении атак на инфраструктуру
Узнать большеУправление доступом к критичным ресурсам компании
Узнать большеКража и взлом корпоративной учетной записи
Узнать большеКонтроль подключения поставщиков IT-услуг
Узнать большеИсследование Solar SafeInspect
Узнать большеДвухфакторная аутентификация в компании
Узнать большеПривилегированный пользователь
Узнать большеКритерии выбора PAM-системы
Узнать большеОбеспечение отказоустойчивости PAM-систем в распределенной инфраструктуре
Узнать большеУправление привилегированным доступом
Узнать большеСамые важные новости кибербезопасности у вас в почте
Выберите темы, на которые бы вам было интересно получать новости.
Спасибо, что подписались на нашу рассылку
Для получения бесплатной консультации заполните форму ниже и отправьте заявку. Наш менеджер свяжется с вами в ближайшее время.