Catapult Security Recommendations
Below outlines some security considerations. Please keep these considerations in mind as we look towards the upcoming season.
- Secure User Accounts
- Anti-Virus
- Keeping Windows Updates Up to Date
- Keeping System Drivers Up to Date
- Upgrading to Thunder 23 to Utilize the Latest OS's and SQL Server 2019
Secure User Accounts
-
- Ensure Windows users are not using a shared username/password combination.
- Follow your team’s IT password complex password policies.
- Implementation of a secure account to replace the local XOSAdmin admin user.
- Utilize this account for Cross Authentication
- Additional Information on the Cross Authentication Setup
- This user should exist on all Thunder systems and servers
- This should be coordinated with Catapult Support to ensure the coaches do not experience disruptions in Thunder usage
- If operating on a domain environment, utilize a domain account for cross authentication
- Password changes of the Cross Authentication User should be planned, as the Cloud Settings Manager will need to be updated
- Utilize a non-admin user for the coaches to login with.
- The Restricted Users Setup Tool should be run when switching to this user.
- Need to ensure the Exchange Agent Replication settings are entered.
- Ensure the Video Coordinators have an admin account with rights to install software and modify PC settings and drivers
- Ensure Windows users are not using a shared username/password combination.
Anti-Virus
-
- Regardless of AV Software used, ensure Exclusions and Guidelines are set properly.
- Routinely update Virus Definitions and schedule AV scans off hours
Windows Updates
-
- Windows Updates are managed by the team’s video staff or IT staff.
- Recommended to install all of the latest Windows Cumulative and Security patches
- Avoid Intel HD Graphics Driver Updates
- You can modify Windows Update settings to exclude drivers
- Group Policy Editor
- Computer Configuration > Administrative Templates
- Select Windows Components, Windows Updates
- Locate Do not include drivers with Windows Updates
- Set to Enabled and hit OK
- Group Policy Editor
- You can modify Windows Update settings to exclude drivers
Running Dell Command Updates to keep the operating system up to date
-
- Recommend updating system drivers, BIOS versions routinely.
- Only item to avoid is updating the Intel Graphics Driver
- Further Details on Running the Dell Command Update
Thunder 2023 Release - OS Compatibility and SQL Server
-
- Support of Windows Server 2019
- Servers purchased in the near future will be shipped with Server 2019.
- Windows Server 2016 systems can be upgraded, full instructions outlined HERE. Server 2019 licenses are needed before upgrading and are the responsibility of the individual teams.
- Windows 11 Support is coming June of 2023 with the Thunder 23.2.x builds.
- Microsoft SQL Server 2019 upgrade from Microsoft SQL Server 2012
- Implemented with the Thunder 2022
- Ability to modify the Microsoft SQL Server SA username / password
- Catapult now has support to change the default SA password. This is supported with Thunder 2022 and beyond
- If you are interested in taking advantage of this, Review additional Details Here.
- Support of Windows Server 2019
Comments
0 comments
Please sign in to leave a comment.