ASTRAOS
ASTRAOS runs two purpose-built layers in lockstep: one managing your registry, identity, and fleet, the other tearing through network events faster than any threat can land.
Always-Verified Model Registry
Version, promote, and distribute NDR model artifacts from a central registry. Each model carries a checksum, scan status, target profile, and deployment history. Nodes always run verified detectors.
Total Fleet Control, Zero Guesswork
Register appliances, track heartbeats, rotate API keys, and inspect per-node deployment state from the admin portal. Offline bundle support covers air-gapped and isolated environments.
Detection at Machine Speed
Our highly scalable distributed processing pipeline handles network traffic at scale, enabling real-time traffic analysis and attack reporting.
Airtight Access, Immutable Audit Trail
State-of-the-art security features ensure that access to sensitive resources is only granted to permitted users. Unveil every move in the application via forensic audit logging.
Architecture Overview
Every component is purpose-built, hardened, and replaceable without touching the rest.
Architecture · Component 01
Secure API Core
Handles authentication, model distribution, fleet registration, and all administrative operations with async performance.
Built to meet the demands of modern security environments with robust authentication, intelligent request protection, and comprehensive immutable audit trails.
Architecture · Component 02
Sub-Second Analytics Store
The analytical persistence layer for network events, detections, and alerting results. Powers the dashboards and reporting interfaces with sub-second query response.
Purpose-built for massive telemetry workloads, delivering lightning-fast analytics on billions of security events.
Architecture · Component 03
Error-Resistant Design
The application catches errors before they become a problem. Isolation of components ensures seamless operation even if errors occur.
Fault domains are strictly separated, so a failure in one component cannot cascade into the rest of the platform.
Architecture · Component 04
Self-Healing Components
Components facing errors automatically try to mitigate the problem, restoring healthy operation without manual intervention.
Health checks, automatic restarts, and graceful degradation keep the platform running while issues are resolved in the background.