Description: Flexera One UI - NA - Slow Load Times and Service Disruption
Timeframe: September 4th, 2024, 1:38 PM to September 4th, 2024, 1:45 PM PDT
Incident Summary
On Wednesday, September 4th, 2024, at 1:38 PM PDT, we experienced a brief service disruption affecting the Flexera One platform in the NAM region. During this time, customers may have encountered intermittent errors and delays while accessing the platform.
The disruption was triggered by a security update that followed an internal issue with a sensitive security component. The update was applied after a comprehensive review, with no anticipated downtime. However, an unexpected system behavior prevented the new security configuration from being properly applied, resulting in temporary unavailability of the platform. Our technical team acted swiftly to revert the update, and normal operations were fully restored by 1:45 PM PDT.
Upon further investigation, it was confirmed that the sensitive components involved in the update were handled within a controlled environment, ensuring no external exposure. Our security team conducted a thorough review and verified there was no external exposure and risk to sensitive data. The issue was contained within internal systems, reducing the potential for a broader impact.
To prevent future disruptions, the update will undergo extensive testing in a staging environment to ensure smooth integration. Once validated, the update will be re-applied during a scheduled maintenance window to avoid further service interruptions.
Following the resolution, extended monitoring and internal health checks confirmed that the platform was functioning normally, after which the incident was officially declared resolved.
Root Cause
The disruption was caused by an issue during a security update that was triggered to replace a sensitive internal component. Specifically, the update was intended to rotate a security token that had been mistakenly pushed to an internal repository.
During the update process, the system encountered a synchronization error, which prevented the new security configuration from applying correctly. This led to temporary unavailability of the platform.
No external exposure occurred, and the problem was isolated within internal systems.
Remediation Actions
Future Preventative Measures