Feature request for Agent authentication on Remote Collector
Hello Device42,
we would like to have an feature, so we can enforce Device42 Agents to authenticate to Remote Collectors first, before being able to send inventory to them. (e.g. by providing a proper certificate or password, etc. to the Remote Collector, which gets validated first)
Right now, it is possible for ANY Device running a Device42 Agent, to send inventory Data to ANY remote collector, as long it can reach it in the network. This might allow an attacker to inject inventory data to the MA, if he somehow can connect to a RC.
We need an option to limit this only to trusted/approved devices for IT security reasons.
Solving this by network segmentation would be to complex.
Thank you
Best Regards
Jean
1
Please sign in to leave a comment.
Comments
0 comments