No Topology Data
Enter an IP range and click Scan Network to discover your network.
Enter an IP range and click Scan Network to discover your network.
| Device | Severity | Duration | Impact |
|---|---|---|---|
| No active incidents | |||
| Device | IP | Type | Score | Status |
|---|---|---|---|---|
| Run a scan to analyse health | ||||
| Device | Site | Inbound | Outbound |
|---|---|---|---|
| No traffic data | |||
| Status | Device | IP | Type | CPU | Memory | Latency | Health |
|---|---|---|---|---|---|---|---|
| No devices yet — run a scan | |||||||
| # | Site | Availability | Health | Alerts |
|---|---|---|---|---|
| No sites configured | ||||
| Device | Health | Alerts |
|---|---|---|
| No critical devices | ||
| Device | Issue | Value |
|---|---|---|
| Nothing flagged | ||
| Device | Count | Severity |
|---|---|---|
| No alert sources | ||
No alerts — all systems normal
| Rank | Host | IP | Bytes In | Bytes Out | Total | Usage |
|---|---|---|---|---|---|---|
| No traffic data yet | ||||||
| Interface | Device | Utilization |
|---|---|---|
| Loading… | ||
| Site | Total Bandwidth | Active Devices |
|---|---|---|
| Loading… | ||
| Source | Destination | Bandwidth | Site |
|---|---|---|---|
| Loading… | |||
| Source Site | Destination Site | Traffic Volume |
|---|---|---|
| Loading… | ||
| Link | Site | Utilization | Latency | Jitter | Packet Loss | Throughput | Quality Score | Status |
|---|---|---|---|---|---|---|---|---|
| Loading… | ||||||||
| Service | Bytes | Share |
|---|---|---|
| Loading… | ||
| Time | Bytes | Baseline |
|---|---|---|
| No spikes detected | ||
| Time | Bytes | Previous |
|---|---|---|
| No drops detected | ||
| Device | Utilization |
|---|---|
| No saturated links | |
| Device | Bytes |
|---|---|
| No devices exceeding thresholds | |
| Source IP | Bytes | Z-Score | Severity |
|---|---|---|---|
| No outliers detected | |||
| Device | Site | Type | Vendor | Inbound | Outbound | Total | Utilization | Latency | Health | Status |
|---|
| No devices — run a scan first |
| Report | Frequency | Format | Recipients | Last Run | Delivery | |
|---|---|---|---|---|---|---|
| No scheduled reports | ||||||
| Report | Format | Sites | Requested By | Generated On | Size | Status | |
|---|---|---|---|---|---|---|---|
| No reports generated yet | |||||||
| Site | Availability | SLA | Devices | Risk Score |
|---|---|---|---|---|
| No site data | ||||
| Source | Count |
|---|---|
| No data | |
| Message | Count |
|---|---|
| No data | |
| Device | IP | Status | Avg Latency | SLA Met |
|---|---|---|---|---|
| Load report to see SLA data | ||||
| Device | IP | Port | Service | Risk Level |
|---|---|---|---|---|
| Run a scan to analyse port security | ||||
| Status | Device | IP | Type | Uptime | Last Seen | Latency |
|---|---|---|---|---|---|---|
| No data — run a scan | ||||||
| Site | Devices | Health Score | Availability | Critical | Risk | Trend |
|---|---|---|---|---|---|---|
| Run a scan to see site health | ||||||
| Device | Site | Status | Risk Score |
|---|---|---|---|
| No risk data yet | |||
| Health | Score | Device | Site | IP | Vendor | Type | CPU | Memory | Latency | Pkt Loss | Uptime | Risk | Root Cause | Trend |
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| Run a scan to see health data | ||||||||||||||
| Device | IP | Vendor / Logo | Type | Sub-Type | Confidence | MAC OUI | OS |
|---|---|---|---|---|---|---|---|
| Run a scan to see device profiles | |||||||
| Risk | Device | IP | MAC | Vendor | First Seen | Actions |
|---|---|---|---|---|---|---|
| Loading… | ||||||
| Loading discovery history… |
| Job Name | Type | Site | Status | Duration | Devices Found | Progress |
|---|---|---|---|---|---|---|
| Loading… | ||||||
Unified control for every IPsec, WireGuard & OpenVPN connection — Sri Ranga Sentinel Hub
swanctl, wg show dump, and Linux net tools (ping, dig, ip).swanctl --list-sas. Cisco/Fortinet/Palo Alto via SNMP MIBs when reachable.wg show <iface> dump on this VM. Per-peer: handshake age, bytes TX/RX. Maps to UP<120s / STALE / DOWN.| Type | Name | Local | Remote | State | TX | RX | HS / DPD | Vendor |
|---|---|---|---|---|---|---|---|---|
| Loading tunnels… | ||||||||
Answer one question — Sentinel recommends the right protocol and pre-fills sensible defaults. Every advanced field is still available in Expert Mode below.
Choose how much of a connected client's traffic crosses the tunnel. This is per-provider and can be changed any time without reconnecting existing tunnels.
Measures VPN tunnel quality by running tests FROM this Ubuntu VM TO the remote VPN gateway/peers: ping (latency + packet loss), DNS resolution, MTU discovery, jitter, and TCP reachability. Tests run through the VPN tunnel — results reflect actual tunnel performance, not just internet connectivity. Auto-detects targets from connected IPsec sites and WireGuard peers.
/vpn/tunnels.POST /vpn/ipsec/poll.wg show <iface> dump tab-separated output. All WireGuard interfaces on the VM are polled automatically. Handshake age drives UP/STALE/DOWN state.| Tunnel | Provider | Authentication | Encryption | Certificate Status | Expiry |
|---|---|---|---|---|---|
| Loading… | |||||
Role-based access control governs who can view, connect, disconnect, edit policy, administer HA, rotate credentials, and back up/restore Connectivity Manager configuration. Roles: super_admin, operator, readonly.
| Asset | Status | Alerts | Vulns | Risk |
|---|---|---|---|---|
| Loading… | ||||
| Time | Asset | Severity | Rule | Description | Source | Action |
|---|---|---|---|---|---|---|
| Loading… | ||||||
| CVE | Severity | CVSS | Package | Version | Asset | Detected |
|---|---|---|---|---|---|---|
| Loading… | ||||||
| Asset | Policy | Score | Pass | Fail | N/A | |
|---|---|---|---|---|---|---|
| Loading… | ||||||
| ID | Name | IP | Status | OS | Agent | Risk | Last Seen | NMP Device | Manage |
|---|---|---|---|---|---|---|---|---|---|
| Loading… | |||||||||
| Asset | Description | Severity | Status | Opened | |
|---|---|---|---|---|---|
| No incidents yet — promote an alert from the Security Operations Feed | |||||
Real-time throughput, latency & quality telemetry across all links
| Time | Target | Type | Metric | Threshold |
|---|---|---|---|---|
| No violations recorded. | ||||
| Target | Samples | Avg | P95 | Peak | Growth/day |
|---|---|---|---|---|---|
| No samples in this window. | |||||
| Time | Target | Site | Proto | Mbps | Latency | Jitter | Loss | Health | MOS | SLA |
|---|---|---|---|---|---|---|---|---|---|---|
| No samples in this window. | ||||||||||
| Hop | IP | Avg Latency | Best | Worst | Loss % | Δ vs Prev | Profile |
|---|---|---|---|---|---|---|---|
| Run a traceroute to populate hop analysis. | |||||||
| When | Target | Executed on | Method | Hops | End-to-End | Route |
|---|---|---|---|---|---|---|
| No previous runs recorded. | ||||||
| Rank | Site | Health | Avg Mbps | Avg Latency | Loss % | Failure % | Tests |
|---|---|---|---|---|---|---|---|
| No multi-site data for this window. | |||||||
| Status | Hostname | IP | Vendor | Last Backup | Config Size | Changes | Actions | |
|---|---|---|---|---|---|---|---|---|
| No devices — run a scan first | ||||||||
| Device | Vendor | Port | Security | |
|---|---|---|---|---|
| No credentials stored yet | ||||
| Time | Severity | Site | Source IP | Host | Facility | Program | Category | Message | Risk | Correlation |
|---|
| Category | Count | Highest Severity |
|---|---|---|
| No data yet | ||
| Device | Count |
|---|---|
| Loading… | |
| Program | Count |
|---|---|
| Loading… | |
| Facility | Count |
|---|---|
| Loading… | |
| Site | Count |
|---|---|
| Loading… | |
| Device | Risk |
|---|---|
| No data yet | |
| Site | Risk |
|---|---|
| No data yet | |
| Source IP | Risk |
|---|---|
| No data yet | |
| Site | Health | Devices | Collectors | Alerts | Status | SLA (24h) |
|---|---|---|---|---|---|---|
| Loading site health… | ||||||
| Site | Severity | Message | Time |
|---|---|---|---|
| No active incidents | |||
| Site | Source | Latency | Jitter | Packet Loss | Status |
|---|---|---|---|---|---|
| Loading WAN link data… | |||||
| Status | Hostname | IP Address | Site | Version | Last Heartbeat | Devices | Capabilities | Actions |
|---|---|---|---|---|---|---|---|---|
| Loading collectors… | ||||||||
| Name | ID | Subnet | Location | Description | Actions |
|---|---|---|---|---|---|
| Loading sites… | |||||
collector.env file from the API key dialog
collector/agent.py on the remote site VM
sudo apt update sudo apt install -y python3 python3-pip python3-venv nmap arp-scan git sudo mkdir -p /opt/srn-collector sudo useradd -r -s /bin/false srnagent sudo chown srnagent:srnagent /opt/srn-collector
# Copy from central server or clone your repo scp -r srn_multisite/collector/ srnagent@REMOTE_VM:/opt/srn-collector/ scp -r srn_multisite/shared/ srnagent@REMOTE_VM:/opt/srn-collector/ # Create Python virtual environment cd /opt/srn-collector python3 -m venv venv ./venv/bin/pip install requests pysnmp nmap
cp /opt/srn-collector/collector.env.template /opt/srn-collector/collector.env nano /opt/srn-collector/collector.env # Fill in these required values: SRN_CENTRAL_URL=https://your-srn-server.example.com SRN_COLLECTOR_KEY=<key from registration step> SRN_COLLECTOR_ID=<UUID from registration> SRN_SITE_ID=<site UUID> SRN_SCAN_RANGE=192.168.10.0/24
sudo bash -c 'cat > /etc/sudoers.d/srn-collector << EOF srnagent ALL=(ALL) NOPASSWD: /usr/bin/nmap, /usr/sbin/arp-scan, /usr/bin/arp EOF' sudo chmod 440 /etc/sudoers.d/srn-collector
sudo cp /opt/srn-collector/srn-collector.service /etc/systemd/system/ sudo systemctl daemon-reload sudo systemctl enable srn-collector sudo systemctl start srn-collector # Verify it's running sudo systemctl status srn-collector journalctl -u srn-collector -f
Collector VM → Central Server:
TCP 443 (HTTPS) or TCP 5000 (HTTP) — API uploads
Central Server → Collector VM (not required — push-only):
No inbound ports needed on collector
Devices → Collector VM:
UDP 5514 — Syslog
UDP 1620 — SNMP Traps