Security and Compliance for Domino Servers



BCC_DominoProtect allows reliable configuration management for Lotus Domino infrastructures. BCC_DominoProtect adds extensive monitoring and protection functions to Domino servers. It protects servers and database elements against uncontrolled changes and safeguard access to the server via HTTP . The new version 4.0 provides flexible configuration options for elements to be protected as well as for actions to be processed. You can control all activities on the protected servers/elements, handle changes via requests and recover changes. The monitoring feature allows to track the changes and a roll-back to any former configuration state.

The optional Internet Access module in release 4 additionally provides protection features for the use of Domino servers on the web. It protects servers against hacking attacks and offers a process oriented internet user management. Through user self service and proactive notifications this tool relieves administrators of annoying tasks of handling internet accounts of web users. Audit proof recording of entire actions enables a gap-less audit of all login operations.

Why BCC_DominoProtect?

  • Extensive protection for the server ID and Lotus Domino configuration
  • Secure configuration management
  • Enhanced operational reliability through change requests and roll-back
  • Automatic audit proof documentation of all configuration changes
  • Relieving of the administrators from time consuming tasks and enhancing security for web access to Domino servers
  • Central management of internet user accounts of all Domino web servers

BCC_DominoProtect Functions:
  • Protection for the server IDs with password(s) through configurable encryption keys and enabling of an automated server start
  • Protection of the access control lists (ACL) and any other element from a database (single documents selected or all documents based on a specific form)
  • Secure configuration management for Domino Security Objects
    • Central management of protected documents in a separate database
    • Allocation of access rights
    • Request workflows for controlled changes
    • Automated change history
    • Roll-back function
  • Optional deactivating of the Domino 6 Full Access Administrator
  • Automated audit proof documentation of all internet authentication attempts and password operations as well as if the complete internet user management
  • URL redirection and deactivation of URL commands