Security Compliance

SEM root password disclaimer

This article briefly discusses the requirement for the 'root' password for the Security and Event Manager

First published date

10/10/2018 2:28 PM

Last published date

4/7/2026 5:50 PM

Overview

The options and considerations for getting the root password to the SEM Appliance are explained in this article.

Product section

Security Event Manager

Resolution

SEM Root Password Request Disclaimer:

Customers who are asking for the root password for SEM will only be provided this info over the phone.  Sending the password through email opens the customer to certain security risks.  If it is required, support will phone the customer and provide that information after account verification.

SolarWinds keeps root access from customers and requests that they use the hardened CMC shell (available through SSH or the virtual machine console) to protect the accuracy and integrity of the log records.

SEM root access allows the ability to alter, modify or delete records. 

Root access would allow users to tamper with the alert DB. SEM is used in many cases as an auditing platform to satisfy compliance, allowing customers to alter the alert DB would seriously degrade the value of the SEM.

In limited circumstances, SolarWinds can provide the root passwords to customers, but it is with the understanding that any changes made to the system with root credentials might make it impossible for us to fix/support future issues.

Important: Verify that this is an acceptable risk for your company and your auditors as this may constitute an unacceptable breach of your compliance standard.