Best practices to secure SolarWinds products
This article provides best practices for securing SolarWinds products.
First published date
Last published date
Overview
SolarWinds strongly recommends that you install your products on a server that is neither public, nor internet-facing. For products that require public access, such as Serv-U or Web Help Desk, make sure that they are secured behind a firewall and that you have security controls in place to prevent unauthorized access to the software.
Resolution
Best practices to secure your SolarWinds Product
- Do not expose your product on the public internet. If you must enable outbound internet access from SolarWinds servers, create a strict allow list and block all other traffic. See SolarWinds Platform Product Features Affected by Internet Access.
- Disable unnecessary ports, protocols, and services on your host operating system and on applications, such as SQL Server. For more details, see SolarWinds Port Requirements and Best practices for configuring Windows Defender Firewall.
- Apply proper segmentation controls on the network where you have deployed the products and associated databases.