jjohnsoncantell Posted September 11, 2014 Posted September 11, 2014 Just curious but is anyone concerned that using the solus deployment console, your entire network can be browsed with access to the c$ share on any client? Lots of schools allow outside access to their SIMS servers for the purpose of updating/troubleshooting by their local capita support. Isnt this a bit of a security risk?
Ben-BSH Posted September 11, 2014 Posted September 11, 2014 Surely if Capita wanted and were malicious enough to want to damage a school network, simply having a login to the database is bad enough. - Personally I'd say you are over thinking it. Whenever i had anyone from Capita on a server I always had visibility of what was going on anyway, as I wanted to learn how to fix it next time! Just my 2c
synaesthesia Posted September 11, 2014 Posted September 11, 2014 (edited) As they have backdoor access to *every* SIMS using school in a similar vein, can't quite see your concern! They might well be a business and quite a ruthless one but trust me when I say they have the school's best interest at heart (which can also be read as "if they do anything, they have a LOT to lose") Edited September 11, 2014 by synaesthesia
jjohnsoncantell Posted September 11, 2014 Author Posted September 11, 2014 This is true, i probably am overthinking it. I just suppose in the past i was pretty confident they could only do what we allowed them to.
matt40k Posted September 11, 2014 Posted September 11, 2014 Just curious but is anyone concerned that using the solus deployment console, your entire network can be browsed with access to the c$ share on any client? Lots of schools allow outside access to their SIMS servers for the purpose of updating/troubleshooting by their local capita support. Isnt this a bit of a security risk? No, when you browse using the solus deployment console you use YOUR current Windows authentication not some super backdoor user. As they have backdoor access to *every* SIMS using school in a similar vein, can't quite see your concern! They might well be a business and quite a ruthless one but trust me when I say they have the school's best interest at heart (which can also be read as "if they do anything, they have a LOT to lose") Capita don't have a login unless you give them one. They don't have a "backdoor". If they do, it's something you've given them.
Recommended Posts
Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
Register a new accountSign in
Already have an account? Sign in here.
Sign In Now