Following the Sunburst security incident, SolarWinds remains committed to the safety and security of our products and technology. Throughout 2021, we will prioritize security enhancements ahead of feature development to maximize customer safety and ensure confidence in SolarWinds and our products.
Items currently being considered include, but are not limited to:
- Vulnerability fixes identified by third-party scanning tools or recent product penetration tests (pentesting)
- Documentation of least privileges for Orion Platform operation and monitoring including Orion agents
- Validation of CIS IIS and SQL Server best practices
- Secure settings by default with user control
- Removal of any code unsupported by Microsoft
Top Comments
Heartily agree - the user permissions appear to be an all or nothing in some circumstances and desperately need to be improved as part of the security re-think/approach.
All this security is great and thank you for the your efforts.
But when will we see feature requests and product "updates"? Update = Issue Fixes
There are SO MANY issues with the Great and Powerful…
I recently had my manager request for password-less access for certain monitoring personnel and I'm using the built in Guest account for the first time. After examining how it's set up, it appears…