Platform

Solutions

Products

Resources

Partners

Company

Just-in-Time Dynamic Provision

Just-in-Time Dynamic Provision

Just-in-Time Dynamic Provision

Ephermeral Account Provision to reduce the surface attack

"In traditional PAM, privileged accounts sit idle on target servers waiting to be compromised. RankEZ eliminates this risk with Just-in-Time (JIT) Account Provisioning, ensuring zero standing privileges.

Here is how it works:

  1. Dynamic Creation: The privileged account does not need to exist on the target device beforehand. When a user requests access, RankEZ dynamically executes a 'Create Statement' to generate a temporary, short-term credential (e.g., creating a unique root_james account).

  2. Instant Elevation: RankEZ instantly runs a 'Grant Statement' to assign exact, necessary permissions for that specific session, granting privileges only when needed.

  3. Seamless Access & Audit: The user connects seamlessly. Because the account is uniquely tied to the user (like root_james instead of a shared root), it dramatically enhances SIEM auditability by tracing every action back to the exact human.

  4. Automated Deprovisioning: Once the session's Time-To-Live (TTL) expires, RankEZ automatically executes a 'Delete Statement' to completely wipe and clean up the account from the target device.

The Result: A drastically reduced attack surface with highly secure, one-time-use accounts that leave no trace behind."

(Note: RankEZ supports this JIT workflow natively across Windows, Linux, Oracle, MySQL, PostgreSQL, and SQLServer.)

Access the Full Resource

Just-in-Time Dynamic Provision

Ephermeral Account Provision to reduce the surface attack

"In traditional PAM, privileged accounts sit idle on target servers waiting to be compromised. RankEZ eliminates this risk with Just-in-Time (JIT) Account Provisioning, ensuring zero standing privileges.

Here is how it works:

  1. Dynamic Creation: The privileged account does not need to exist on the target device beforehand. When a user requests access, RankEZ dynamically executes a 'Create Statement' to generate a temporary, short-term credential (e.g., creating a unique root_james account).

  2. Instant Elevation: RankEZ instantly runs a 'Grant Statement' to assign exact, necessary permissions for that specific session, granting privileges only when needed.

  3. Seamless Access & Audit: The user connects seamlessly. Because the account is uniquely tied to the user (like root_james instead of a shared root), it dramatically enhances SIEM auditability by tracing every action back to the exact human.

  4. Automated Deprovisioning: Once the session's Time-To-Live (TTL) expires, RankEZ automatically executes a 'Delete Statement' to completely wipe and clean up the account from the target device.

The Result: A drastically reduced attack surface with highly secure, one-time-use accounts that leave no trace behind."

(Note: RankEZ supports this JIT workflow natively across Windows, Linux, Oracle, MySQL, PostgreSQL, and SQLServer.)

Access the Full Resource