We use it for zero-trust privileged access.
StrongDM: The Dynamic Access Management Platform
StrongDM, IncExternal reviews
External reviews are not included in the AWS star rating for the product.
Assistance with connection via sdm
Great tool to mange access to database servers
Save connections allow automatic connections.
Easy connections to difference networks and cloud without change of network connection.
Fast response from support team.
Easy to integrate, good documentation and automatically picks and provisions new resources based on tagrs
What is our primary use case?
How has it helped my organization?
Any time we have a new resource, we can have it automatically picked up and provisioned based on tags to give the right people access to the right resources.
I don't have to think about giving anyone access to anything. All of the logging is handled for us, including for auditing purposes. Looking through the audit logs is not a painful experience. Everything is in one place if we need to go back and look at what happened.
What is most valuable?
I like the easiness of integrating it with all of our existing data sources. We've also found a few other use cases where we've been able to grant access to third-party resources that require IP-level whitelisting in addition to authentication for remote workers.
What needs improvement?
We started to use it as a client-side or split tunnel VPN. We are unable to overwrite the endpoints and direct traffic that way, but that's a technical limitation, and I understand why it's there.
For how long have I used the solution?
I have been using it for about four years.
What do I think about the stability of the solution?
We've had a few issues in the past, but those have all been resolved based on interactions with StrongDM and the addition of some new features to the product. For example, the egress routing functionality solved a fair amount of our problems. So, I don't think there are any outstanding issues that we're aware of or have complained about.
I would rate the stability a nine out of ten. The only reason it's not a ten is that there's some automated patching that happens in the background. This was years ago, but we had some issues where that were causing us problems, and we had no way of scheduling it at different times.
What do I think about the scalability of the solution?
We haven't run into any issues with scalability at this point.
The only issues we've encountered are when you have a very large amount of data sources, we're talking above 2000. Then, the routing algorithm for directing traffic on the StrongDM backend takes a little bit of time to figure out where to route traffic whenever you bring up and down relays or gateways.
We do not have any issues with StrongDM's scalability at the size of our organization right now.
How are customer service and support?
That's how we got some of those feature requests in. We've only contacted support one or two times without a feature request. The support interactions have been minimal because of how good the documentation is.
How was the initial setup?
The initial setup was fairly straightforward as we run everything in Docker. From that side, there wasn't much effort required from StrongDM. However, integrating it into our environment was completely on us.
What's my experience with pricing, setup cost, and licensing?
The licensing is per user per month. It's pretty close to the same or in line with all of the other pricing for tools that do similar things.
What other advice do I have?
A first-time definitely needs to have some background experience with setting up services to run, but it's no different than onboarding any other service.
My recommendation: Do not change the gateway or relay names, and everything will be great. But that's only really a problem if you deploy within Kubernetes and use a deployment rather than a stateful set.
Overall, I would rate it a nine out of ten.
It is really very cool and important PAM software.
Great experience and most importantly - StrongDM is implementing new and very useful features fast
- support for modern resources such as various flavours of Kubernetes clusters
- automation - possibility to manage entire PAM solution with Terraform is real killer feature, making resource available to end users few seconds after it's provisioned in your cloud provider (change management is important here!)
- useful integrations such as StrongDM
- helpful team and support specifically
- having logging and audit for any access event on multiple platforms
- good user experience for remote access
StrongDM as a single proxy secure layer for all our critical workloads.
Great support
Very helpful support
A mature solution for dynamic access control.
It is easy to deploy and maintain.
End users continue using their favorite client application for remote access to databases, servers, clouds, clusters.
Credentials broker feature allows to manage service credentials without affecting end users' access.
Ease of implementing role based access and improve least privilege posture.
Extensive logging capabilities will assist with your security audits and investigations.
Their customer support is knowledgeable and responsive.
I am looking for better capabilities of extracting audit data out of the StrongDM platform.
Instant life improvement to access your infra
It moves most of the complexity to your DevOps team and for the developers is a great time saver.
There are also a lot of useful features that are coming shortly but for the moment the core features are there and working decently well with few bugs.
The price is not for everyone.
No more sloppy VPN connection to deal with. Big time saver and much smoother process to connect and switch environment.