SlideShare ist ein Scribd-Unternehmen logo
1 von 3
SugarCRM On Demand
                      Privacy, Security, Backup and
                           Infrastructure Statement




SugarCRM, Inc.
10050 N. Wolfe Road
SW2-130
Cupertino, CA 95014
T: 408.454.6900
F: 408.873.2872
Privacy, Security, Backup and Infrastructure Statement




Privacy
SugarCRM On Demand does not gather customer private information for the purpose of
dissemination or transfer to third parties. SugarCRM On Demand collects information that
pertains to customer licensing, system and service performance, and monitoring only. Standard
SugarCRM On Demand maintenance practices may require access to the customer’s instance
to address support cases, perform functional checks, and to validate upgrades. SugarCRM On
Demand allows the customer to opt-out of standard SugarCRM On Demand maintenance
practices unless required to address a customer support case or customer-raised issues.
SugarCRM On Demand follows industry best practices to secure any customer data under its
control.

The customer has full ownership and access to data that its users submit to the SugarCRM On
Demand service and is responsible for the integrity, legality, quality and intellectual property of
that data. The customer is responsible for all activities conducted under its accounts and is
responsible to abide by local, national, and international laws with regards to these activities.

Security
SugarCRM uses multiple levels of protection and security. SugarCRM applications are hosted at
different Tier 1 data center facilities in around the world. They are protected by some of the
most powerful physical security available, including 24/7 secured access with motion sensors,
video surveillance and security breach alarms. Production areas are secured by biometric
geometry readers and configured with overhead cable distribution systems, dual AC and DC
power distribution raceways and anonymous individually locked cabinets. SugarCRM security
and infrastructure components include:

   •   Firewall - SugarCRM firewalls provide proactive threat defense that stops attacks
       before they spread through the network, controls network activity and application traffic,
       and delivers flexible VPN connectivity. High-performance intrusion prevention and worm
       mitigation capabilities further enhance SugarCRM’s firewall security.

   •   Web Application Security Analyzer - SugarCRM application is further tested by a Web
       Application Security Scanner to continuously analyze, isolate and resolve such
       vulnerabilities as Cross Site Scripting (XSS), Cross Site Request Forging (CSRF), Code
       Inclusion, Remote Code Execution, PHP vulnerabilities, Session injection, etc

   •   Application Security -- SugarCRM employs a Multiversion & Separate Database
       Instance SaaS deployment model to provide maximal logical and physical protection and
       segregation of the On Demand customers’ data. Every customer’s access to the
       application is protected with an individual username and password. Customers can
       access their data using any Internet browser from a PC, Mac, Linux or Unix computer.
       All communications between the browser and the SugarCRM On Demand infrastructure
       are SSL encrypted using the HTTPS protocol.

   •   Physical Security - SugarCRM provides around-the clock critical-incident NOC support
       for the production environment through its Operations and Support teams. Additionally,
       at the data center qualified technicians are on-site 24 hours a day, 365 days a year to
       perform routine maintenance and emergency installation procedures.


                  Copyright © 2009 SugarCRM, Inc. All rights reserved.                                 1
Privacy, Security, Backup and Infrastructure Statement




Backup and Redundancy
   •   Database Backup - SugarCRM database backups are encrypted and stored in a
       datacenter on a different continent for further risk mitigation in conjunction with any
       Force Majeure event. SugarCRM automated database backup procedures store live
       and off-line copies of customer data, database, and application files on a daily basis.
       SugarCRM will also store encrypted backups at a secure off-site location until the
       expiration of the customer’s contract.

   •   Customer Access – Customers can request a weekly backup of their SugarCRM data
       in relational database format for storage on their own servers. Upon request,
       SugarCRM will provide customers with an FTP account to download their database
       backup. All object relationships between accounts, contacts and opportunities as well
       as all other fields, remain intact in this database backup.

   •   Redundancy - The entire SugarCRM On Demand facilities’ electrical system has built-in
       redundancy to guarantee contiguous operation. The overall system is N+1 redundant,
       including each component with a parallel electrical system. AC power is delivered via
       distributed redundant UPS systems backed by batteries and generators. Every
       production server utilizes redundant dual-cord power supply fed by diverse sources.


SugarCRM is a committed open-source enterprise and as such is fully self-reliant on open-
source components in its production environment. Any dependencies on third-party providers of
software are minimal or negligible and SugarCRM staff and operators can fully support all
operational tasks.


Infrastructure
   •   Architecture & Network: SugarCRM software architecture takes advantage of the latest
       Internet technologies to deliver high- performance, productivity and interaction
       experience. Application architecture utilizes technologies to intelligently cache and
       compress data as well as to dynamically load application components, therefore
       minimizing the network traffic between the client and server.

   •   Health checks: SugarCRM On Demand performs proactive monitoring and automated
       self-notification of the Company’s application as a means to verify that (a) an https
       request can be completed; (b) sessions can effectively be established and (c) server
       response time for the non-customized login page falls at or under 30 seconds.

   •   Testing: The acceptance criteria for the SugarCRM performance stress tests dictates
       that 80% of all server requests on an unmodified instance are completed by the server in
       less than 1 second under sustained load for at least 4 hours at peak level.




                 Copyright © 2009 SugarCRM, Inc. All rights reserved.                                  2

Weitere ähnliche Inhalte

Andere mochten auch

Webinaras apie el. komercijos platformos parengimą darbui
Webinaras apie el. komercijos platformos parengimą darbuiWebinaras apie el. komercijos platformos parengimą darbui
Webinaras apie el. komercijos platformos parengimą darbuiVladas Sapranavicius
 
Aug 3-2012 - Teamlead - О мероприятии
Aug 3-2012 - Teamlead - О мероприятииAug 3-2012 - Teamlead - О мероприятии
Aug 3-2012 - Teamlead - О мероприятииTeamlead
 
Teamlead Atlassian Day 4-2013 | Agile Technologes | Визуализация в Agile
Teamlead Atlassian Day 4-2013 | Agile Technologes | Визуализация в AgileTeamlead Atlassian Day 4-2013 | Agile Technologes | Визуализация в Agile
Teamlead Atlassian Day 4-2013 | Agile Technologes | Визуализация в AgileTeamlead
 
Distintos tipos de calzado deportivo
Distintos tipos de calzado deportivoDistintos tipos de calzado deportivo
Distintos tipos de calzado deportivochristiangilvega
 
Ольга Кобилянська "Земля"
Ольга Кобилянська "Земля"Ольга Кобилянська "Земля"
Ольга Кобилянська "Земля"OksanaTroshuna
 
Rasa Urbonaitė: SEMINARAS „SEO e-komercijoje - mada ar būtinybė?“
Rasa Urbonaitė: SEMINARAS „SEO e-komercijoje - mada ar būtinybė?“Rasa Urbonaitė: SEMINARAS „SEO e-komercijoje - mada ar būtinybė?“
Rasa Urbonaitė: SEMINARAS „SEO e-komercijoje - mada ar būtinybė?“Vladas Sapranavicius
 
Crecimiento y desarrollo en menor de 1 año 2016
Crecimiento y desarrollo en menor de 1 año 2016Crecimiento y desarrollo en menor de 1 año 2016
Crecimiento y desarrollo en menor de 1 año 2016MAHINOJOSA45
 
Diarrea y deshidratacion2016 resumen v2.0
Diarrea y deshidratacion2016 resumen v2.0Diarrea y deshidratacion2016 resumen v2.0
Diarrea y deshidratacion2016 resumen v2.0MAHINOJOSA45
 
Що читати сьогодні!? Популяризація сучасної літератури серед молодіжної ауди...
 Що читати сьогодні!? Популяризація сучасної літератури серед молодіжної ауди... Що читати сьогодні!? Популяризація сучасної літератури серед молодіжної ауди...
Що читати сьогодні!? Популяризація сучасної літератури серед молодіжної ауди...РОМЦ БКР
 
Юнеско в Україні
Юнеско в УкраїніЮнеско в Україні
Юнеско в УкраїніРОМЦ БКР
 
Attribution modeliai: apžvalga, parinkimas, nustatymai
Attribution modeliai: apžvalga, parinkimas, nustatymaiAttribution modeliai: apžvalga, parinkimas, nustatymai
Attribution modeliai: apžvalga, parinkimas, nustatymaiVladas Sapranavicius
 

Andere mochten auch (19)

SLiDESHARE
SLiDESHARESLiDESHARE
SLiDESHARE
 
Joost Negenman - NPO
Joost Negenman - NPOJoost Negenman - NPO
Joost Negenman - NPO
 
Webinaras apie el. komercijos platformos parengimą darbui
Webinaras apie el. komercijos platformos parengimą darbuiWebinaras apie el. komercijos platformos parengimą darbui
Webinaras apie el. komercijos platformos parengimą darbui
 
Aug 3-2012 - Teamlead - О мероприятии
Aug 3-2012 - Teamlead - О мероприятииAug 3-2012 - Teamlead - О мероприятии
Aug 3-2012 - Teamlead - О мероприятии
 
бифштексы
бифштексыбифштексы
бифштексы
 
Teamlead Atlassian Day 4-2013 | Agile Technologes | Визуализация в Agile
Teamlead Atlassian Day 4-2013 | Agile Technologes | Визуализация в AgileTeamlead Atlassian Day 4-2013 | Agile Technologes | Визуализация в Agile
Teamlead Atlassian Day 4-2013 | Agile Technologes | Визуализация в Agile
 
Distintos tipos de calzado deportivo
Distintos tipos de calzado deportivoDistintos tipos de calzado deportivo
Distintos tipos de calzado deportivo
 
Ольга Кобилянська "Земля"
Ольга Кобилянська "Земля"Ольга Кобилянська "Земля"
Ольга Кобилянська "Земля"
 
Golpeos de tenis
Golpeos de tenisGolpeos de tenis
Golpeos de tenis
 
Adenomas2012
Adenomas2012Adenomas2012
Adenomas2012
 
Rasa Urbonaitė: SEMINARAS „SEO e-komercijoje - mada ar būtinybė?“
Rasa Urbonaitė: SEMINARAS „SEO e-komercijoje - mada ar būtinybė?“Rasa Urbonaitė: SEMINARAS „SEO e-komercijoje - mada ar būtinybė?“
Rasa Urbonaitė: SEMINARAS „SEO e-komercijoje - mada ar būtinybė?“
 
Sistema locomotor ossos
Sistema locomotor   ossosSistema locomotor   ossos
Sistema locomotor ossos
 
Crecimiento y desarrollo en menor de 1 año 2016
Crecimiento y desarrollo en menor de 1 año 2016Crecimiento y desarrollo en menor de 1 año 2016
Crecimiento y desarrollo en menor de 1 año 2016
 
Diarrea y deshidratacion2016 resumen v2.0
Diarrea y deshidratacion2016 resumen v2.0Diarrea y deshidratacion2016 resumen v2.0
Diarrea y deshidratacion2016 resumen v2.0
 
Adenomas2012
Adenomas2012Adenomas2012
Adenomas2012
 
RESISTENCIA GENERAL II
RESISTENCIA GENERAL IIRESISTENCIA GENERAL II
RESISTENCIA GENERAL II
 
Що читати сьогодні!? Популяризація сучасної літератури серед молодіжної ауди...
 Що читати сьогодні!? Популяризація сучасної літератури серед молодіжної ауди... Що читати сьогодні!? Популяризація сучасної літератури серед молодіжної ауди...
Що читати сьогодні!? Популяризація сучасної літератури серед молодіжної ауди...
 
Юнеско в Україні
Юнеско в УкраїніЮнеско в Україні
Юнеско в Україні
 
Attribution modeliai: apžvalga, parinkimas, nustatymai
Attribution modeliai: apžvalga, parinkimas, nustatymaiAttribution modeliai: apžvalga, parinkimas, nustatymai
Attribution modeliai: apžvalga, parinkimas, nustatymai
 

Kürzlich hochgeladen

Human Factors of XR: Using Human Factors to Design XR Systems
Human Factors of XR: Using Human Factors to Design XR SystemsHuman Factors of XR: Using Human Factors to Design XR Systems
Human Factors of XR: Using Human Factors to Design XR SystemsMark Billinghurst
 
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)Mark Simos
 
Ensuring Technical Readiness For Copilot in Microsoft 365
Ensuring Technical Readiness For Copilot in Microsoft 365Ensuring Technical Readiness For Copilot in Microsoft 365
Ensuring Technical Readiness For Copilot in Microsoft 3652toLead Limited
 
The Future of Software Development - Devin AI Innovative Approach.pdf
The Future of Software Development - Devin AI Innovative Approach.pdfThe Future of Software Development - Devin AI Innovative Approach.pdf
The Future of Software Development - Devin AI Innovative Approach.pdfSeasiaInfotech2
 
What's New in Teams Calling, Meetings and Devices March 2024
What's New in Teams Calling, Meetings and Devices March 2024What's New in Teams Calling, Meetings and Devices March 2024
What's New in Teams Calling, Meetings and Devices March 2024Stephanie Beckett
 
Training state-of-the-art general text embedding
Training state-of-the-art general text embeddingTraining state-of-the-art general text embedding
Training state-of-the-art general text embeddingZilliz
 
SAP Build Work Zone - Overview L2-L3.pptx
SAP Build Work Zone - Overview L2-L3.pptxSAP Build Work Zone - Overview L2-L3.pptx
SAP Build Work Zone - Overview L2-L3.pptxNavinnSomaal
 
My INSURER PTE LTD - Insurtech Innovation Award 2024
My INSURER PTE LTD - Insurtech Innovation Award 2024My INSURER PTE LTD - Insurtech Innovation Award 2024
My INSURER PTE LTD - Insurtech Innovation Award 2024The Digital Insurer
 
Anypoint Exchange: It’s Not Just a Repo!
Anypoint Exchange: It’s Not Just a Repo!Anypoint Exchange: It’s Not Just a Repo!
Anypoint Exchange: It’s Not Just a Repo!Manik S Magar
 
"LLMs for Python Engineers: Advanced Data Analysis and Semantic Kernel",Oleks...
"LLMs for Python Engineers: Advanced Data Analysis and Semantic Kernel",Oleks..."LLMs for Python Engineers: Advanced Data Analysis and Semantic Kernel",Oleks...
"LLMs for Python Engineers: Advanced Data Analysis and Semantic Kernel",Oleks...Fwdays
 
My Hashitalk Indonesia April 2024 Presentation
My Hashitalk Indonesia April 2024 PresentationMy Hashitalk Indonesia April 2024 Presentation
My Hashitalk Indonesia April 2024 PresentationRidwan Fadjar
 
Unraveling Multimodality with Large Language Models.pdf
Unraveling Multimodality with Large Language Models.pdfUnraveling Multimodality with Large Language Models.pdf
Unraveling Multimodality with Large Language Models.pdfAlex Barbosa Coqueiro
 
Artificial intelligence in cctv survelliance.pptx
Artificial intelligence in cctv survelliance.pptxArtificial intelligence in cctv survelliance.pptx
Artificial intelligence in cctv survelliance.pptxhariprasad279825
 
Powerpoint exploring the locations used in television show Time Clash
Powerpoint exploring the locations used in television show Time ClashPowerpoint exploring the locations used in television show Time Clash
Powerpoint exploring the locations used in television show Time Clashcharlottematthew16
 
Story boards and shot lists for my a level piece
Story boards and shot lists for my a level pieceStory boards and shot lists for my a level piece
Story boards and shot lists for my a level piececharlottematthew16
 
AI as an Interface for Commercial Buildings
AI as an Interface for Commercial BuildingsAI as an Interface for Commercial Buildings
AI as an Interface for Commercial BuildingsMemoori
 
Commit 2024 - Secret Management made easy
Commit 2024 - Secret Management made easyCommit 2024 - Secret Management made easy
Commit 2024 - Secret Management made easyAlfredo García Lavilla
 
New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024BookNet Canada
 

Kürzlich hochgeladen (20)

E-Vehicle_Hacking_by_Parul Sharma_null_owasp.pptx
E-Vehicle_Hacking_by_Parul Sharma_null_owasp.pptxE-Vehicle_Hacking_by_Parul Sharma_null_owasp.pptx
E-Vehicle_Hacking_by_Parul Sharma_null_owasp.pptx
 
Human Factors of XR: Using Human Factors to Design XR Systems
Human Factors of XR: Using Human Factors to Design XR SystemsHuman Factors of XR: Using Human Factors to Design XR Systems
Human Factors of XR: Using Human Factors to Design XR Systems
 
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)
 
Ensuring Technical Readiness For Copilot in Microsoft 365
Ensuring Technical Readiness For Copilot in Microsoft 365Ensuring Technical Readiness For Copilot in Microsoft 365
Ensuring Technical Readiness For Copilot in Microsoft 365
 
The Future of Software Development - Devin AI Innovative Approach.pdf
The Future of Software Development - Devin AI Innovative Approach.pdfThe Future of Software Development - Devin AI Innovative Approach.pdf
The Future of Software Development - Devin AI Innovative Approach.pdf
 
What's New in Teams Calling, Meetings and Devices March 2024
What's New in Teams Calling, Meetings and Devices March 2024What's New in Teams Calling, Meetings and Devices March 2024
What's New in Teams Calling, Meetings and Devices March 2024
 
Training state-of-the-art general text embedding
Training state-of-the-art general text embeddingTraining state-of-the-art general text embedding
Training state-of-the-art general text embedding
 
SAP Build Work Zone - Overview L2-L3.pptx
SAP Build Work Zone - Overview L2-L3.pptxSAP Build Work Zone - Overview L2-L3.pptx
SAP Build Work Zone - Overview L2-L3.pptx
 
DMCC Future of Trade Web3 - Special Edition
DMCC Future of Trade Web3 - Special EditionDMCC Future of Trade Web3 - Special Edition
DMCC Future of Trade Web3 - Special Edition
 
My INSURER PTE LTD - Insurtech Innovation Award 2024
My INSURER PTE LTD - Insurtech Innovation Award 2024My INSURER PTE LTD - Insurtech Innovation Award 2024
My INSURER PTE LTD - Insurtech Innovation Award 2024
 
Anypoint Exchange: It’s Not Just a Repo!
Anypoint Exchange: It’s Not Just a Repo!Anypoint Exchange: It’s Not Just a Repo!
Anypoint Exchange: It’s Not Just a Repo!
 
"LLMs for Python Engineers: Advanced Data Analysis and Semantic Kernel",Oleks...
"LLMs for Python Engineers: Advanced Data Analysis and Semantic Kernel",Oleks..."LLMs for Python Engineers: Advanced Data Analysis and Semantic Kernel",Oleks...
"LLMs for Python Engineers: Advanced Data Analysis and Semantic Kernel",Oleks...
 
My Hashitalk Indonesia April 2024 Presentation
My Hashitalk Indonesia April 2024 PresentationMy Hashitalk Indonesia April 2024 Presentation
My Hashitalk Indonesia April 2024 Presentation
 
Unraveling Multimodality with Large Language Models.pdf
Unraveling Multimodality with Large Language Models.pdfUnraveling Multimodality with Large Language Models.pdf
Unraveling Multimodality with Large Language Models.pdf
 
Artificial intelligence in cctv survelliance.pptx
Artificial intelligence in cctv survelliance.pptxArtificial intelligence in cctv survelliance.pptx
Artificial intelligence in cctv survelliance.pptx
 
Powerpoint exploring the locations used in television show Time Clash
Powerpoint exploring the locations used in television show Time ClashPowerpoint exploring the locations used in television show Time Clash
Powerpoint exploring the locations used in television show Time Clash
 
Story boards and shot lists for my a level piece
Story boards and shot lists for my a level pieceStory boards and shot lists for my a level piece
Story boards and shot lists for my a level piece
 
AI as an Interface for Commercial Buildings
AI as an Interface for Commercial BuildingsAI as an Interface for Commercial Buildings
AI as an Interface for Commercial Buildings
 
Commit 2024 - Secret Management made easy
Commit 2024 - Secret Management made easyCommit 2024 - Secret Management made easy
Commit 2024 - Secret Management made easy
 
New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
 

Privacy, Security, Backup and Infrastructure Statement

  • 1. SugarCRM On Demand Privacy, Security, Backup and Infrastructure Statement SugarCRM, Inc. 10050 N. Wolfe Road SW2-130 Cupertino, CA 95014 T: 408.454.6900 F: 408.873.2872
  • 2. Privacy, Security, Backup and Infrastructure Statement Privacy SugarCRM On Demand does not gather customer private information for the purpose of dissemination or transfer to third parties. SugarCRM On Demand collects information that pertains to customer licensing, system and service performance, and monitoring only. Standard SugarCRM On Demand maintenance practices may require access to the customer’s instance to address support cases, perform functional checks, and to validate upgrades. SugarCRM On Demand allows the customer to opt-out of standard SugarCRM On Demand maintenance practices unless required to address a customer support case or customer-raised issues. SugarCRM On Demand follows industry best practices to secure any customer data under its control. The customer has full ownership and access to data that its users submit to the SugarCRM On Demand service and is responsible for the integrity, legality, quality and intellectual property of that data. The customer is responsible for all activities conducted under its accounts and is responsible to abide by local, national, and international laws with regards to these activities. Security SugarCRM uses multiple levels of protection and security. SugarCRM applications are hosted at different Tier 1 data center facilities in around the world. They are protected by some of the most powerful physical security available, including 24/7 secured access with motion sensors, video surveillance and security breach alarms. Production areas are secured by biometric geometry readers and configured with overhead cable distribution systems, dual AC and DC power distribution raceways and anonymous individually locked cabinets. SugarCRM security and infrastructure components include: • Firewall - SugarCRM firewalls provide proactive threat defense that stops attacks before they spread through the network, controls network activity and application traffic, and delivers flexible VPN connectivity. High-performance intrusion prevention and worm mitigation capabilities further enhance SugarCRM’s firewall security. • Web Application Security Analyzer - SugarCRM application is further tested by a Web Application Security Scanner to continuously analyze, isolate and resolve such vulnerabilities as Cross Site Scripting (XSS), Cross Site Request Forging (CSRF), Code Inclusion, Remote Code Execution, PHP vulnerabilities, Session injection, etc • Application Security -- SugarCRM employs a Multiversion & Separate Database Instance SaaS deployment model to provide maximal logical and physical protection and segregation of the On Demand customers’ data. Every customer’s access to the application is protected with an individual username and password. Customers can access their data using any Internet browser from a PC, Mac, Linux or Unix computer. All communications between the browser and the SugarCRM On Demand infrastructure are SSL encrypted using the HTTPS protocol. • Physical Security - SugarCRM provides around-the clock critical-incident NOC support for the production environment through its Operations and Support teams. Additionally, at the data center qualified technicians are on-site 24 hours a day, 365 days a year to perform routine maintenance and emergency installation procedures. Copyright © 2009 SugarCRM, Inc. All rights reserved. 1
  • 3. Privacy, Security, Backup and Infrastructure Statement Backup and Redundancy • Database Backup - SugarCRM database backups are encrypted and stored in a datacenter on a different continent for further risk mitigation in conjunction with any Force Majeure event. SugarCRM automated database backup procedures store live and off-line copies of customer data, database, and application files on a daily basis. SugarCRM will also store encrypted backups at a secure off-site location until the expiration of the customer’s contract. • Customer Access – Customers can request a weekly backup of their SugarCRM data in relational database format for storage on their own servers. Upon request, SugarCRM will provide customers with an FTP account to download their database backup. All object relationships between accounts, contacts and opportunities as well as all other fields, remain intact in this database backup. • Redundancy - The entire SugarCRM On Demand facilities’ electrical system has built-in redundancy to guarantee contiguous operation. The overall system is N+1 redundant, including each component with a parallel electrical system. AC power is delivered via distributed redundant UPS systems backed by batteries and generators. Every production server utilizes redundant dual-cord power supply fed by diverse sources. SugarCRM is a committed open-source enterprise and as such is fully self-reliant on open- source components in its production environment. Any dependencies on third-party providers of software are minimal or negligible and SugarCRM staff and operators can fully support all operational tasks. Infrastructure • Architecture & Network: SugarCRM software architecture takes advantage of the latest Internet technologies to deliver high- performance, productivity and interaction experience. Application architecture utilizes technologies to intelligently cache and compress data as well as to dynamically load application components, therefore minimizing the network traffic between the client and server. • Health checks: SugarCRM On Demand performs proactive monitoring and automated self-notification of the Company’s application as a means to verify that (a) an https request can be completed; (b) sessions can effectively be established and (c) server response time for the non-customized login page falls at or under 30 seconds. • Testing: The acceptance criteria for the SugarCRM performance stress tests dictates that 80% of all server requests on an unmodified instance are completed by the server in less than 1 second under sustained load for at least 4 hours at peak level. Copyright © 2009 SugarCRM, Inc. All rights reserved. 2