by Daniela Buxo | Apr 14, 2023 | News, Success cases
SP ZOZ Specialist Hospital of the Ministry of Interior and Administration in Głuchołazy st. Jana Pawła II
Interview with Slawomir Szmulik, IT department manager, enthusiast of open source technology and GLPI user for many years.
About the hospital.
Slawomir Szmulik: “It is a modern, specialized and well-equipped medical center with diagnostic and rehabilitation facilities. Provides services under contract with the National Health Fund. The current position of the Hospital in the medical services market is the result of several decades of experience in carrying out activities in the field of treatment, rehabilitation and prevention of respiratory diseases as well as rehabilitation and prevention of cardiovascular diseases. At the beginning of its existence, just after World War II, the facility was a sanatorium that joined the fight against the tuberculosis epidemic.”
1. How did you hear about GLPI?
Slawomir Szmulik: “For me, it was love at first click. When I first discovered the tool, I had one major requirement for software: it must automatically search for all online assets and attempt to add them to the database. The paid software I was using at the time required manual input for each asset, including hardware, hard disks, and CPUs. I had to enter about 30 computers by hand for a small company!
With GLPI and an inventory plugin, I was able to complete the process in just two days instead of several months, which was a significant win. Furthermore, GLPI has low system requirements, allowing installation on almost any device and remote access from any computer.
In every company I have worked for, my first task is to search for an IT inventory. In 99% of cases, the answer is “no.” So, I grab a spare computer and install GLPI. Within a month or two, I can see the real inventory of all the assets I need to control.”
2. How was the switch to GLPI?
Slawomir Szmulik: “Switching from a familiar software is never easy, but making the choice is necessary. The paid software I used had limitations, such as a licence model that allowed only two concurrent users.
GLPI doesn’t have such limitations. There are no user or asset restrictions, but we faced another challenge: managing documents like invoices, contracts, and other IT and non-IT assets.
In my opinion, one of GLPI’s greatest strengths is its versatility, making it useful not only for IT departments.”
3. How is your current GLPI Infrastructure?
Slawomir Szmulik: “We currently use version 9.5 and are preparing to upgrade to version 10. Our inventory includes about 200 active computers, 100 computers awaiting disposal, 20 printers, 160 suppliers, over 500 documents (half of which are contracts), and more than 100 network devices, such as switches and PDAs.
Our hospital is relatively small, but GLPI’s scalability is impressive. We run it on a small virtual server without affecting functionality or speed, and scaling up presents no issues.”
4. What is your personal favourite feature of GLPI?
Slawomir Szmulik: “Managing documents: Thanks to GLPI plugins, we can manage our documents in the e-space, even if they must be in paper form according to Polish regulations.
Inventory of hospital equipment: Polish rules require a “passport” for each inventory unit, including contracts and regular service maintenance. GLPI helps us manage this information, even for equipment without network connections.
One of GLPI’s best features is its accessibility to all staff members. I can create profiles for administrative staff to manage contracts, or set rules to allow certain users to view but not manage specific assets.
GLPI makes it easy to manage not only network security, but also contracts, suppliers, and other related data.”.
5. What are the best things about GLPI?
Slawomir Szmulik: “GLPI is 100% free open source software, with professional support options and GLPI Network Cloud platform available. Its versatility makes it suitable not only for IT departments but also for various roles in companies and public institutions. With GLPI, everything is connected, from suppliers and contracts to assets and contacts.
My message to future users is to give GLPI a try. Explore its capabilities and see how it can benefit your organization. It is a flexible and powerful solution that can make IT management more efficient and accessible.” .
How can you try GLPI?
If you have not tried GLPI yet, you can start a free 45 day trial on GLPI Network Cloud (no credit card needed!): https://glpi-network.cloud/
If you want to download GLPI on-premise and need assistance, our partners-integrators can support you (you will need to have a valid GLPI Network Subscription).
Do you use GLPI and want to share your experience?
We are proud to state that our solution is used by millions of people worldwide. If you are one of them and you want to contribute the promotion, we invite you to leave your contact details.
We will be delighted to hear your story!
by Daniela Buxo | Apr 13, 2023 | News
We are happy to announce our new Silver partner in Tunisia – ADACTIM.
ADACTIM is a Managed Services Operator specialized in Cloud, Application Integration and Outsourcing, ERP and BI, operating internationally via a presence in Europe, Maghreb and Africa.
ADACTIM supports its customers in their business and technological transformation projects. They bring performance to their customers by optimizing and streamlining their management and operation processes of their IS and IT infrastructures.
Through its Consulting offers and its expertise in Managed Services, ADACTIM brings to its customers a strong added value for the implementation of innovative solutions and the outsourcing of the operation of the IS and Cloud infrastructures as well as ERP and BI platforms.
ADACTIM has offices in France, Tunisia, Algeria, Dubai and Abidjan and a Service Center based in the technological park of El Ghazela in Tunis, a modern, secure center that meets international standards and offers comfortable working conditions to its employees.
The company counts among its customers, several European integrators and major accounts, which trust it by entrusting it with the nearshore subcontracting of integration and outsourcing activities for their own customers.
Among many solutions, ADACTIM offers:
- ERP & BI integrations;
- Advicing;
- Outsourcing;
- Infraestructure integration;
- Logistics.
Website: https://bit.ly/3ZXC7Ln
We are excited that GLPI ITSM solution is becoming more and more represented all over the world and GLPI Network (our support offer for on-premises – get your IT Infrastructure secured) subscription service will be available for more customers through our new partners.
Our large partnership network is always open for new collaborations. If you are interested in representing one of our products in your country, get in touch with us: https://glpi-project.org/contact_us/
Being a partner means:
- Having an a direct access to the Teclib´s tech expertise;
- Get special discounts;
- Access official support,
- Many other tools which will help you to gain more customers and increase reputation on the market by adding open source ITSM to your portfolio.
Discover all benefits of being a partner here: https://glpi-project.org/partners/
by Flavia Calonego | Mar 28, 2023 | News
New version GLPI 10.0.7: A new GLPI version is available.
This release fixes several security issues that have been recently discovered. Update is recommended!
You can download the GLPI 10.0.7 archive on GitHub.
We still maintain maintain the 9.5 branch for security fixes and we also release a new version for it: GLPI 9.5.13 archive
You will find below the list of security issues fixed in this bugfixes version:
- SQL injection and Stored XSS via inventory agent request (CVE-2023-28849).
- Account takeover by authenticated user (CVE-2023-28632).
- SQL injection through dynamic reports (CVE-2023-28838).
- Stored XSS through dashboard administration (CVE-2023-28852).
- Stored XSS on external links (CVE-2023-28636).
- Reflected XSS in search pages (CVE-2023-28639).
- Privilege Escalation from technician to super-admin (CVE-2023-28634).
- Blind Server-Side Request Forgery (SSRF) in RSS feeds (CVE-2023-28633).
Also, here is a short list of main changes done in this version:
- Optional GLPI router to be able to use a safer web server root directory.
- Support of SMTP OAuth authentication.
- Improved inventory file upload feature.
- Many fixes and improvements on native inventory.
- Some bugs on PHP 8.2.
- Caching issues on entities.
- Boolean FullText operator not working on knowledge base search.
- Unexpected search results when using negative condition on ticket actors.
- Issues with LDAP filters/DN.
- Unexpected results when searching on knowledge base categories.
The full changelog is available for more details.
We would like to thank all people who contributed to this new version and all those who contributes regularly to the GLPI project!
Download GLPI now: https://glpi-project.org/downloads/
Regards.
by Daniela Buxo | Mar 20, 2023 | News
Silver Partner VBEST, A VISION FOR AFRICA
Founded in 2012, on the initiative of young Ivorian entrepreneurs, VBEST TECHNOLOGIES is a company specialized in design and integration of IT solutions and technologies installed in Abidjan Ivory Coast.
The VBEST team is mainly composed of certified and experienced engineers and technicians, trained to work on all the proposed technologies, whether they are whose knowledge is regularly updated in order to provide our customers with high quality services.
Today is a reference company in the business of integration of ICT solutions in Côte d’Ivoire and in West African sub-region, VBEST TECHNOLOGIES shares with its customers, partners and collaborators , values that promote exchanges, allowing everyone to find their place and express its full potential while striving to apply them in all our relationships in order to always place people at the heart of our projects.
VBEST’s clients include many national and international companies, particularly in the banking, insurance, industry and public sectors. Its activity is organized around five (5) main areas of expertise:
For more information, visit the website: http://bit.ly/42ruYFO
- Application engineering
- The engineering of information systems,
- Networks and security,
- Training and consulting,
- Outsourcing.
We are excited that GLPI ITSM solution is becoming more and more represented all over the world and GLPI Network (our support offer for on-premises – get your IT Infrastructure secured) subscription service will be available for more customers through our new partners.
Our large partnership network is always open for new collaborations. If you are interested in representing one of our products in your country, get in touch with us: https://glpi-project.org/contact/
Being a partner means:
- Having an a direct access to the Teclib´s tech expertise;
- Get special discounts;
- Access official support,
- Many other tools which will help you to gain more customers and increase reputation on the market by adding open source ITSM to your portfolio.
Discover all benefits of being a partner here: https://glpi-project.org/partners/
by Daniela Buxo | Mar 15, 2023 | Success cases
Talen Energy
Interview with Thomas Novotney, senior computer systems analyst at Susquehanna Nuclear in Berwick, Pennsylvania, which is owned by Talen Energy.
About Talen Energy.
Talen Energy is one of the largest competitive power generation and infrastructure companies in North America. Susquehanna Steam Electric Station (SSES) generates clean, reliable, safe, and affordable energy to power homes, businesses, hospitals, and schools, driving regional economies. The plant has two boiling water reactors capable of generating ~2,500 MW of power, enough to power 2M homes.
1. How did you hear about GLPI?
Thomas Novotney: “I first heard about GLPI when I was searching for an inventory database for equipment at the company I was working for at the time. They wanted to have a way to show depreciation of all their equipment. So we were using a lot of the features that allowed us to calculate the pricing and depreciation value and then submit it for insurance purposes. It was probably five, six years ago. I was searching the internet and “open source” was probably a keyword – looking to see what tools were available to get the job done.”.
2. How do you use GLPI and how it helped you with the bussiness?
Thomas Novotney: “GLPI is an essential tool if you want to find out information about a device or – as we call them “CDAs” (Critical Digital Assets) – that are in our plant. Basically, if you need to find out if a certain piece of software is on them or if you need to just know where it’s located, we have all that information in GLPI. They just go to that as their resource to pull it up and find out.
One of the biggest things we did was (specifically since it is in the program), you have the ability to see everything that is rack mounted.
However, some things are in panels, some things are in cabinets, some things are on tables. So right away we realized that we still wanted to have a graphical representation. When you click on racks not everything’s going to be a rack mounted device and we wanted to keep that workflow consistent for us.
We created a plugin which allows us to use SVGs as a valid graphical representation in place of the rack display. In cases where you upload a SVG as a document and relate it to the rack, the plugin automatically uses the SVG representation which utilizes the other features within GLPI, like being able to click, add the device and relate it to the racks. When you have a rack, you get the visual representation you normally get, but again, we don’t always have it like that.
Now we can load up an SVG and then just click on the area of the SVG that would take you to the device for further information.
You probably see the color changing in the background too. We have two nuclear reactor units here on site, they’re color-coded, to help people make sure they’re looking at the correct unit.”.
3. How do you manage cyber security using GLPI?
Thomas Novotney: “Part of the requirements for our cyber security program and the NRC is to maintain baselines so we can prove that when we go out and have to interact with a device that we can prove that it hasn’t been changed from the previous time, we’re using the XML as a way to prove that. For the most part, it was easy to get into GLPI development. Online documentation was very easy to get a hold of, and the framework is pretty straightforward.
We have over 3000 digital assets. In addition to that, our Vulnerabilities plugin downloads from NVD (National Vulnerability Database) the CVEs and we have all of that in our GLPI system. There’s over 200,000 CVEs in the system that then get associated with all of the 3000 assets nightly. We have a process that matches them up based on how we have implemented it and makes sure there’s no new ones or changes.
The biggest things are for cyber requirements. We have to maintain a master software list, which GLPI natively does right out of the box with ease, and the inventory plugin just allows us without human error to enter that information into it.
The fact that we could download GLPI on Linux distribution and get it running on premises is a big thing too, because it can have additional isolation and protection that the NRC and our regulations require. ”.
4. Which is your favourite thing about GLPI?
Thomas Novotney : “GLPI is extremely flexible. Even with the language files and everything else, it is easy to change things up and make things easier for people to understand, even something as simple as language, it helps big time!” .
How can you try GLPI?
If you have not tried GLPI yet, you can start a free 45 day trial on GLPI Network Cloud (no credit card needed!): https://glpi-network.cloud/
If you want to download GLPI on-premise and need assistance, our partners-integrators can support you (you will need to have a valid GLPI Network Subscription).
Please, fill in the form and we will contact you: