Documentation
Everything you need to get up and running with nPro.
01 Installation
nPro follows the KISS principle. Our installer handles everything from system detection to database configuration with a single command.
curl -sL https://download.npro.ai/download/install.sh | sudo bash
Deployment Output Example
[-] System Detected (Ubuntu 24.04)......................... [DONE]
[-] Prerequisites & Repositories........................... [DONE]
[-] Wazuh Manager Installation/Update...................... [DONE]
[-] Starting Wazuh Manager Service......................... [DONE]
[-] Verifying API Health................................... [DONE]
[-] ClickHouse Installation................................ [DONE]
[-] Verifying Database Connection (User: admin)............ [DONE]
[-] Npro Backend Installation/Update....................... [DONE]
[-] Starting Backend Service............................... [DONE]
[-] Verifying Backend Health............................... [DONE]
[-] Network Configuration (Ports: 1515, 1514, 21560)....... [DONE]
===========================================================
INSTALLATION/UPDATE COMPLETE
===========================================================
Access: http://192.168.1.1:21560
Credentials: admin / admin
02 System Requirements
Network Configuration
Ensure the following ports are open for proper communication:
- 1515/tcp: Agent
- 1514/tcp: Events
- 21560/tcp: UI
Logs & Debugging
You can find critical logs at the following locations:
- /var/log/wazuh_manager_install.log
- /var/log/clickhouse_install.log
- /var/log/npro_backend_install.log
03 Tech Stack
04 SIEM Features
Unified XDR and SIEM Protection
Combines extended detection and response with security information and event management for comprehensive threat detection, incident response, and compliance.
File Integrity Monitoring (FIM)
Monitors file systems for changes in content, permissions, ownership, and attributes, identifying who made changes and when.
Vulnerability Detection
Collects software inventory and correlates it with CVE databases to identify and alert on vulnerable software for timely remediation.
Active & Incident Response
Automatically triggers countermeasures like blocking connections, stopping processes, or deleting files upon threat detection.
05 NRTG Monitoring
Maps & Dashboards
Visualize your network with real-time data for insights into IT infrastructure health.
Distributed Monitoring
Monitor an unlimited number of remote locations in a single pane of glass.
Alerts & Notifications
Set custom thresholds and receive alerts via email, push, or HTTP requests.
Flexible Probes
Secure communication between all components using TLS encryption.
06 Advanced Integrations
- VirusTotal Integration: Paste a free API key for enhanced malware scanning.
- Cloud Security: AWS, Azure, and GCP monitoring for infrastructure changes.
- AI Analysis: Special AI button to analyze security logs and recommend solutions.