Security Compliance
SEM root password disclaimer
This article briefly discusses the requirement for the 'root' password for the Security and Event Manager
First published date
Last published date
Overview
Product section
Resolution
SEM Root Password Request Disclaimer:
Customers who are asking for the root password for SEM will only be provided this info over the phone. Sending the password through email opens the customer to certain security risks. If it is required, support will phone the customer and provide that information after account verification.
SolarWinds keeps root access from customers and requests that they use the hardened CMC shell (available through SSH or the virtual machine console) to protect the accuracy and integrity of the log records.
SEM root access allows the ability to alter, modify or delete records.
Root access would allow users to tamper with the alert DB. SEM is used in many cases as an auditing platform to satisfy compliance, allowing customers to alter the alert DB would seriously degrade the value of the SEM.
In limited circumstances, SolarWinds can provide the root passwords to customers, but it is with the understanding that any changes made to the system with root credentials might make it impossible for us to fix/support future issues.
Important: Verify that this is an acceptable risk for your company and your auditors as this may constitute an unacceptable breach of your compliance standard.