NP4thInternet check from the NP4th cloud — same targets and traceroute as agents. For path/MITM from your network use Run on my PC.
| Target | IP | DNS ms | Avg ms | Loss % | TCP | TLS | Hops | OK |
|---|
Select a target to view hops.
Click a run to open its detail drawer; pick targets there to plot paths. Filter by destination to compare agents on the map. Run on my PC uses your Windows agent; Run cloud test probes from the NP4th cloud (not your home path / MITM view — use the Windows agent for that).
Physical locations are suggested from shared public egress (/24). Rename a suggestion to activate it. Use sites to compare test health when one office fails and another does not.
| Name | Status | Agents | Cluster | ISP | Last seen | |
|---|---|---|---|---|---|---|
| Loading… | ||||||
Each Windows machine is a billable agent (stable MachineGuid -- reinstall keeps the same id). Online = heartbeat or run upload in the last 15 minutes. Billable = scanned (seen or uploaded) in the last 30 days. Soft-delete hides a machine from this list; it remains billable for up to 30 days (use Show deleted to restore).
| Status | Machine | Source | Tray / Service | First seen | Last seen | Last run | Runs | Billable | Device id | ||
|---|---|---|---|---|---|---|---|---|---|---|---|
| Loading... | |||||||||||
The first user in a tenant is Owner. SSO users are JIT-provisioned; Admin/User follow Entra groups. Owner roles stay locked for break-glass. At least one active Owner is required.
| Name | Role | SSO | Status | ||
|---|---|---|---|---|---|
| Loading... | |||||
What your agents probe on each scheduled run. Click a test to edit; traceroute runs on every probe.
Inline editing for power users. Same data as the catalog above — changes sync both ways.
| Id | Display name | Host | Ping | TCP | TLS | UDP | Trace | TCP | UDP port | Interval | Groups | Dest site |
|---|
Create a group, select it in the list, then assign agents and tests. New groups start with all tests selected — trim or use Select all / Clear as needed. Agents in multiple groups get the combined tests from every group they belong to, plus any ungrouped tests. Tests with no group run on everyone.
These settings apply to every agent that syncs this org's config. Interval controls how often the Windows service runs background tests.
Check the tests you want. Uncheck to drop them from your list, then Save. Country chips bulk-select a region. Agents pick up the saved list on the next cycle.
Agent licenses are $1 per agent per month, billed as a Stripe subscription. Minimum 10 seats. Billing starts on the day you subscribe and renews monthly. Cancel anytime in the Stripe portal — access continues until the end of the paid period.
-
-
-
-
-
| Machine | Status | Last activity | Billable until | Device id |
|---|---|---|---|---|
| Loading… | ||||
Use Download agent, extract the ZIP, then run Install-NP4th.cmd from that folder
(not from inside the ZIP window).
Devices that enroll with a key are added to that key’s default group on first contact (if set).
Tenant data is encrypted with a per-tenant key. Optionally wrap it with your own customer master key (BYOK). Losing the CMK makes ciphertext unreadable.
Status: - - fingerprint -
-
Optional Entra / SAML 2.0 IdP. Users sign in with email; match accounts by Entra object ID
(user.objectid).
Map Entra groups to Admin or User (object IDs and/or names, one per line). Highest match wins.
$1 unless the pattern has a capture group - a broken regex empties the claim.
Break-glass (Owner password only): /dashboard/local.html
| Claim type | Value |
|---|
Forward selected audit events from this organization to your SIEM or log collector. Choose an HTTPS webhook (JSON POST) or syslog, then pick which categories and syslog level to send.
UDP cannot confirm delivery. TCP connects and sends each JSON event followed by a newline. Most collectors expect BSD/RFC 3164.
Checks DNS and whether the NP4th cloud can reach this host:port. Uses the values above — save is not required.
Choose which audited events to export. Probe runs are never exported.
Level is written on the syslog PRI and in the JSON body. With raise-for-failures, “Send at or above” can drop successful informational events (e.g. Warning sends failures only).
Test uses the saved destination (save first). Sends a synthetic siem.test event even if export is disabled. Enable export for live events.
Get email and/or webhook notifications when probe alerts open or resolve (including UniFi attachment changes). Quiet hours suppress delivery during the selected local window.
Test uses the saved settings (save first). Sends a synthetic high-severity alert sample.
Schedule one or more daily emails comparing the last 7 days of probe loss and latency to the prior 7 days.
Each digest can have its own recipients, send time, and scope (whole org or selected agent groups).
Requires platform SMTP (ContactMail) to be configured.
Pull UniFi APs, switches, and gateways so traceroute hops get names. When clients are available, runs also get an AP/SSID/switch card, Wi‑Fi blame hints, and attachment-change alerts.
UniFi is configured per physical site — open Sites, select a site, and use the UniFi integration section there. Topology applies to agents assigned to that site.
Loading…