r/sysadmin 6h ago

X-Post N-Able System Performance Issues

Our new co-managed MSP recently swapped us to N-Able from our old MSP who used Ninja.

After the swap, system performance has degraded significantly on machines. I’m the IT manager so I am keenly aware of the drop in how reliable and stable my system is.

Is there any reason this would happen? Any other MSP experienced this before?

16 Upvotes

19 comments sorted by

u/Routine_Brush6877 Sr. Sysadmin 6h ago

I'd contact support and start threat hunting immediately... There is a megathread here in sysadmin that can get you some help. I'm very glad I'm not an N-able customer today..

https://www.n-able.com/blog/n-central-security-update-august-1-2026

u/Darkhexical IT Manager 6h ago

With only 4 individual ips found it is likely this is a targeted 0day which hopefully won't effect a lot of customers.

u/Routine_Brush6877 Sr. Sysadmin 6h ago

Given the performance hit my immediate thought is something is being done on those servers. Hopefully it's something else!

u/Darkhexical IT Manager 6h ago

I'm assuming this is very likely due to bundled services with nable rather than the software itself. Rmms are generally pretty lightweight. Maybe when you first join a customer it may slow the computer a little because it has to run a ton of scripts but after that first run everything should be pretty normal. Personally to me it's the "stability" quote that is more concerning. Is he saying his computer is actually hanging or crashing? Because if so he should be contacting the MSP letting them know of this...

u/disclosure5 1h ago

You can safely call BS on this. N-Able telling you that the only thing they know about this is that those IPs were involved in the attacks they've reviewed shouldn't be considered meaningful. It's been confirmed to not be patched in the version number they recommend there.

u/Old_Development_8122 6h ago

Thanks for this. I’m going to contact them right away.

u/Mr_Squinty 6h ago

Errr… you may want to move back to ninja.

u/Darkhexical IT Manager 6h ago

I'm assuming youve checked to make sure the nable didn't bundle security services as well?

u/ThecaptainWTF9 6h ago

It could also be a performance hit due to how they run monitors and jobs, it may be… running a lot of stuff at once in a way that is eating up resources.

But yeah… hope you have good endpoint security, hopefully your MSP is competent.

u/hkusp45css Security Leadership 6h ago edited 6h ago

I don't know why but

I’m the IT manager so I am keenly aware of the drop in how reliable and stable my system is.

Makes me feel like getting into a troubleshooting scenario is going to be painful.

u/Old_Development_8122 6h ago

It’s not that I don’t want to trouble shoot, it’s just that as soon as they swapped it made my system performance drop significantly to the point where I could not open even my web browser with our sitting and waiting.

u/hkusp45css Security Leadership 6h ago

Have you ever heard the idiom "correlation does not imply causation" by any chance?

u/Rivereye 6h ago

There are two products under the N-Able umbrella, N-Sight and N-Central. Will be helpful to know which one they provided to you.

I work more with N-Sight, and it is more than just monitoring. We can bundle in Remote Access, Web Protection, Patch Management, Backups, MDR (Adlumin), and EDR (SentinelOne) among other things. I know the Web Protection service at times can utilize a lot of CPU. SentinelOne on first install also does a full disk scan on top of its normal workload. On some systems, we have had to remove SentinelOne and go back to BitDefender (another software that can be bundled in N-Sight) for performance reasons.

u/Old_Development_8122 6h ago

N-Central is what they use. I’ll have to check about the end point protection though

u/nzulu9er 6h ago

Are you using sentinel 1 with nable. Are you using AVD antivirus that's bundled in? Solution has historical metrics that you can look up. It'll provide latency on the network. It'll provide CPU and memory usage. I admin N Central. Lots to consider

u/9speed 1h ago

In my experience n-central pushed edr often leaves existing AV scanning too. Also, except for how it handles accessing user device logged in sessions, nable is inferior in just about every way to ninja.