We have had a few clients request that we use SSH Key based authentication against their devices and I didn't see an already existing Feature Request for this so here it is.
The library shipped with solarwinds wodSSH help - Getting Started in ASP completely supports ssh key authentication. Its a trivial schema change to enable this.
PLEASE PLEASE PELASE PLEASE. WE have turned off all password auth - which means no NCM functionality. do it. Do THIS! Be smart. Be trendy. Show everyone you're future driven! Passwords are sooo 2005.
go on. im listening.
The request has been out there for years it seems. This is a necessity in any secure environment, especially the government space. Please bump this up the list. We have not been able to use NCM for years now because it's not supported and passwords are a no no.It already exists in SAM, so we know it can be done .
SOOO true
BUMP
"Status change to open for voting? "
Listen. Seriously. All y'all. If your current idea is to continue to use password you are beggin' and I mean beggin' for something evil to com forth.
Key and cert based auth are 2015. Passwords are 1995. and here it is 2020. And solarwinds is still 1995 and asking you, the very smart people of the IT world, to vote on if you think your tech should be run 1995 style or not.
Everytime I hear telnet, snmp v1,2, password, here or in any place, I cringe. You know not how easy the right placed comprimise is.... be afraid.
We're moving to keys and the first thing I found was an post from 5 years ago (almost 1 month to the day), surely Solarwinds would have implemented this by now... and here I am.
This isnt even brain surgery. It is called good IT. Passwords Bad.
We upgrade fortigate to a higher version , This means it does not support the SSH-ED25519 key,
recently updated a fortigate device This means it does not support the SSH-ED25519 key
With the requirements of FIPS compliant protocols/algorithms and 802.1X, NCM is no longer an applicable option to be used to manage any government agencies network, due to NCM only utilizing username and password. We need to be able to authenticate with an SSH key or GPG Key to securely operate with NCM. I am surprised that this has been a request for over 7 years, and nothing has come of it.