When this feature is enabled, security posture of the endpoint is significant improved and prevents lateral movement of local accounts.
The BuiltIn Administrator account on Windows Systems and the root account on non-Windows systems, will have their password rotated based upon the configured settings. The feature should also be configured to manage and rotate the password of additional local accounts.
| Account | Identifier | Comments |
|---|---|---|
| BuiltIn Administrator or root Account | 500 | Managed by software |
| Backup Administrator Account | Varies | Created and managed by software |
| Local User Account | Varies | Created and managed by software |
| Guest | 501 | Managed by software |
| All non-compliant accounts | Varies | Managed by software Accounts created by customer |
Supported Operating Systems
Review the settings in the configUpdate.json file, update as appropriate and copy to C:\Program Files (x86)\Synergix\LEDR folder. Alternatively, you can use the LEDR software dashbaord and update the Central Configuration or per Device Configuration.
Local Account Password Management feature
| Account | Config Key | Comments |
|---|---|---|
| BuiltIn Administrator Account | BuiltInAdmin | Built-In and managed |
| Backup Administrator Account | BackupAdmin | Created and managed |
| Local User Account | LocalUser | Created and managed |
| Guest | GuestUser | Built-In and managed |
| All non-compliant accounts | NonCompliantUser | Managed. All non-default local accounts Excluding the Backup Administrator and Local User Accounts |