Centrify report services reports: not specific to classic or hierarchical zones

Report Name

Report description

Filter the results with these fields

Authorization report

This report lists each computer or user account, and which users are allowed to access each computer.

Access Level

Computer domain

Computer Name

User domain

User name

User Type

Zone

Zone domain

Computers Summary report

Lists computer account information for each computer in each zone.

Computer domain

Computer name

Platform

Zone

Zone domain

Zone type

Delegation report

Lists which users, groups, computers, group managed service accounts (gMSA), managed service accounts (MSA), and which well-known SIDs have which delegation tasks.

 

 

Delegation Task

Target

Target Domain

Target Name

Trustee

Trustee Domain

Trustee Type

Zone

Effective delegation report

Lists which Active Directory users, Active Directory groups, group managed service accounts (gMSA), and managed service accounts (MSA) have which delegation tasks.

 

Active Directory User Domain

Active Directory User Name

Delegation Task

Target

Target Domain

Target Name

Zone

Groups report

Lists group information for each group in each zone, including the Active Directory group name, the UNIX group name, the UNIX group identifier (GID), and whether the group is an orphan.

If the group is for local users, the local group status indicates whether the group is enabled or disabled for local access.

Active Directory Group name

Active Directory Group domain

Group Type

Is Orphan

Local Group Status

UNIX Group Name

Zone

Zone Domain

Zone Type

Stale Computers report

Lists the stale computers. Stale computers are those where the password hasn’t changed for 90 or more days.

 

Computer Domain

Computer Name

Zone

Zone domain

User Accounts Report

 

Lists account details for Active Directory users who are related to each zone.

The report includes the Active Directory display name, the Active Directory login name, the Active Directory domain for the account, and details about the account status, such as whether the account is configured to expire, locked out, or disabled and the date and time of the account’s last login.

Active Directory user name

Domain

Enabled

Users Report

Lists user information for each user in each zone.

If the user is a local user, the local user status indicates whether the user is enabled or disabled for local access.

 

Active Directory user

Active Directory user domain

UNIX name

Enabled

Is Orphan

Local User Status

User Type

Zone

Zone domain

Zone type

Zone Role Privileges Report

Lists the roles that are defined for each hierarchical zone and the rights granted by each of these roles.

Right name

Right type

Role name

Zone

Zone domain

Zone type

Zones Report

Lists the administrative tasks and properties for each zone and the users or groups have been delegated to perform each task.

This report indicates which users or groups have permission to perform specific tasks, such as add groups, join computers to a zone, or change zone properties.

Zone

Zone domain