Skip to main content

High-level deployment roadmap

  1. Inventory privileged accounts and classify targets (servers, network devices, service accounts, laptops). Use auto-discovery to inventory systems and accounts at scale rather than manually cataloging them.

  2. Install Bravura Privilege servers (three or more nodes recommended across multiple sites).

  3. Configure databases (Microsoft SQL Server) and replication between nodes.

  4. Deploy connectors for the initial target systems and verify push-mode operations.

  5. Enable vaulting and immediate password randomization on a small set of non-critical accounts.

  6. Deploy connector proxies or LWS agents where needed for network segmentation or offline endpoints.

  7. Test retrieval, request authorization workflows, and scripted operations; expand scope incrementally.

  8. Enable session monitoring for high-value systems. Configure recording scope, tamper resistance, and session playback access controls.

  9. Configure audit reports, SIEM integration, and operational alerts.

  10. Train administrators and privileged users; update runbooks and incident procedures.

Note

Start with a small pilot (critical but non-production targets) to validate connector behavior and rotation policies before full-scale rollout. The auto-discovery process is massively multi-threaded and can process over 10,000 systems per hour, so scaling from pilot to production is straightforward.