Carbon Black Cloud: Are Admin Passwords transmitted and stored in a protected and secure manner?
book
Article ID: 287539
calendar_today
Updated On:
Products
Carbon Black Cloud Endpoint Standard (formerly Cb Defense)Carbon Black Cloud Enterprise EDR (formerly Cb Threathunter)
Issue/Introduction
When signing in to the Carbon Black Cloud web console, are the admin passwords transmitted and stored in a secure and protected manner?
Environment
Carbon Black Cloud Web Console: All Versions
Resolution
Yes. When Carbon Black Cloud provided authentication is used, passwords are transmitted using a compliant TLS protocol and hashed at rest using an industry standard, non-reversible crypto algorithm.
Additional Information
Customers can also leverage SAML for enterprise SSO authentication. In this case, customers control the transmission and storage of passwords.