System and method for supporting dynamic offloading of video processing for user account management in a computing environment
First Claim
1. A method for supporting privileged account management in a computing environment comprising a privileged account manager server and a target system wherein a plurality of users share access to a privileged account on the target system, the method comprising:
- providing a privileged account manager operating on the privileged account manager server;
providing a recording agent operating on the target system;
receiving at the privileged account manager a request to access said privileged account on the target system from a particular user of the plurality of users;
providing said particular user with one-time access to a privileged account session for said privileged account on the target system in response to said request wherein said one-time access is terminated when said privileged account session is ended;
detecting establishment of said privileged account session for said privileged account on the target system with the recording agent;
in response to said detecting, capturing with the recording agent, a plurality of user session screens associated with said privileged account session;
initiating, via the recording agent on the target system, a video processing task, wherein the video processing task encodes the plurality of user session screens captured by the recording agent into a video;
determining with said recording agent whether a resource usage for performing the video processing task on the target system exceeds a threshold;
dynamically offloading the video processing task to the privileged account manager server, if the resource usage for performing the video processing task on the target system exceeds the threshold; and
storing said video on said privileged account manager server.
1 Assignment
0 Petitions
Accused Products
Abstract
A system and method can support user account management in a computing environment. A managing server, such as a privileged account manager server, can use an agent to manage a target system in the computing environment. The agent on the target system can initiate a video processing task based on a plurality of user session screens recorded on the target system, wherein the video processing task encodes the plurality of user session screens into a video. Furthermore, the agent can determine whether a resource usage for performing the video processing task on the target system exceeds a threshold. Then, the agent can dynamically offload the video processing task to a managing server that operates to manage the target system, if the resource usage for performing the video processing task on the target system exceeds the threshold.
35 Citations
30 Claims
-
1. A method for supporting privileged account management in a computing environment comprising a privileged account manager server and a target system wherein a plurality of users share access to a privileged account on the target system, the method comprising:
-
providing a privileged account manager operating on the privileged account manager server; providing a recording agent operating on the target system; receiving at the privileged account manager a request to access said privileged account on the target system from a particular user of the plurality of users; providing said particular user with one-time access to a privileged account session for said privileged account on the target system in response to said request wherein said one-time access is terminated when said privileged account session is ended; detecting establishment of said privileged account session for said privileged account on the target system with the recording agent; in response to said detecting, capturing with the recording agent, a plurality of user session screens associated with said privileged account session; initiating, via the recording agent on the target system, a video processing task, wherein the video processing task encodes the plurality of user session screens captured by the recording agent into a video; determining with said recording agent whether a resource usage for performing the video processing task on the target system exceeds a threshold; dynamically offloading the video processing task to the privileged account manager server, if the resource usage for performing the video processing task on the target system exceeds the threshold; and storing said video on said privileged account manager server. - View Dependent Claims (2, 3, 4, 5, 6, 7, 8, 9, 10, 11, 12, 13, 14)
-
-
15. A system for supporting privileged account management in a computing environment, the system comprising:
-
a privileged account manager server comprising one or more microprocessors; a target system comprising one or more microprocessors and memory; a privileged account on the target system wherein the privileged account is shared by a plurality of users; a privileged account manager, running on said privileged account manager server, wherein said privileged account manager is configured to receive a request to access said privileged account on the target system from a particular user of the plurality of users which share access to a privileged account on the target system, and provide said particular user with one-time access to a privileged account session for said privileged account on the target system in response to said request wherein said one-time access is terminated when said privileged account session is ended; and an agent on said target system wherein said agent is configured to detect establishment of said privileged account session for said privileged account on the target system; in response to said detecting, capture a plurality of user session screens associated with said privileged account session; initiate a video processing task, wherein the video processing task encodes the plurality of user session screens into a video; determine whether a resource usage for performing the video processing task on the target system exceeds a threshold; and dynamically offload the video processing task to the privileged account manager server, if the resource usage for performing the video processing task on the target system exceeds the threshold; and store said video on said privileged account manager server. - View Dependent Claims (16, 17, 18, 19, 20, 21, 22, 23, 24, 25, 26, 27, 28)
-
-
29. A non-transitory machine readable storage medium having instructions stored thereon for supporting privileged account management in a computing environment comprising a privileged account manager server and a target system wherein a plurality of users share access to a privileged account on the target system, which instructions, when executed cause the computing environment to perform steps comprising:
-
providing a privileged account manager operating on the privileged account manager server; providing a recording agent operating on the target system; receiving at the privileged account manager a request to access said privileged account on the target system from a particular user of the plurality of users; providing said particular user with one-time access to a privileged account session for said privileged account on the target system in response to said request wherein said one-time access is terminated when said privileged account session is ended; detecting establishment of said privileged account session for said privileged account on the target system with the recording agent; in response to said detecting, capturing with the recording agent, a plurality of user session screens associated with said privileged account session; initiating, via the recording agent on the target system, a video processing task, wherein the video processing task encodes the plurality of user session screens captured by the recording agent into a video; determining with said recording agent whether a resource usage for performing the video processing task on the target system exceeds a threshold; dynamically offloading the video processing task to the privileged account manager server, if the resource usage for performing the video processing task on the target system exceeds the threshold; and storing said video on said privileged account manager server.
-
-
30. A method for supporting privileged account management in a computing environment comprising a privileged account manager server and a target system wherein a plurality of users share access to a privileged account on the target system, the method comprising:
-
providing a privileged account manager operating on the privileged account manager server; deploying, via the privileged account manager server, a recording agent on the target system; receiving at the privileged account manager a request to access said privileged account on the target system from a particular user of the plurality of users; providing said particular user with one-time access to a privileged account session for said privileged account on the target system in response to said request wherein said one-time access is terminated when said privileged account session is ended; detecting establishment of said privileged account session for said privileged account on the target system with the recording agent; in response to said detecting, monitoring, via said recording agent, said privileged account session on the target system, wherein the recording agent operates to record user activities in the privileged account session in a plurality of user session screens; initiating, via said recording agent, a video processing task on the target system, wherein the video processing task encodes the plurality of user session screens into a video; augmenting the video with a searchable metadata suitable for searching for particular patterns in said video; determining whether a resource usage for performing the video processing task on the target system exceeds a threshold; dynamically offloading the video processing task to the privileged account manager server if the resource usage for performing the video processing task on the target system exceeds the threshold; storing said video on said privileged account manager server; and replaying said stored video to an administrator using the privileged account manager.
-
Specification