AI Firewall Customer Portal

Customer Security Dashboard

Customer-scoped protection view for your protected asset.

Loading
Signed in as Customer
Customer Protection Overview

Your AI Firewall workspace is ready

Review your setup progress, protected assets, and security status.

Current status Checking setup…
Setup & Protection

Checking protection setup…

AI Firewall is checking your protected asset, agent connection, telemetry, and enabled protection lanes.

Customer portal active Session-only access Visibility only
Connected asset Loading...
Customer Loading...
Protection mode Admin-approved enforcement
Portal access Read-only security visibility
Awaiting protection lane data

Customer users can review telemetry and security summaries. Enforcement actions remain controlled by AI Firewall admin approval.

Protection Setup

Continue setup

Your customer portal is active. Complete agent installation and connection before security telemetry is considered active.

Next steps
Company
Protected Assets
Active Lanes
Scope Customer Only
Security Connection

AI Firewall Protection Connection

Customer-safe live connection and protection-policy status for your authorized protected asset.

Loading
Protected Domain
Protection Mode
Ordinary Enforcement
Security Agent Autonomy
Admin Approval
Active Policies
Pending Policies
Removed Policies
Failed Policies
Last Log Sent
Last Policy Pull
Last Feedback
Agent Authentication

Universal Agent Connection

Safe identity and connection status for the customer-installed AI Firewall Universal Agent.

Authentication Official Agent Credential
Credential Status
Install Type Universal Customer-Installed Agent
Connection Outbound HTTPS Only
Backend Access No SSH / No SCP

AI Firewall does not need SSH, SCP, backend credentials, or direct server access. The customer-installed Universal Agent communicates outward through its authenticated AI Firewall connection.

Read-only status. Refresh does not trigger a policy pull, activate protection lanes, or enable enforcement.

Protected Assets

Only assets assigned to this customer are shown.

Loading customer protected assets…

Enabled Protection Lanes

Loading lanes…
Security Health

Security at a glance

A customer-safe summary of the security signals protecting your connected asset.

Live telemetry
ID Loading
Login & Identity Authentication telemetry
NET Loading
Network Activity Network telemetry
WEB Loading
Web Protection Web protection telemetry
USR Loading
Insider Risk Behavioral telemetry

Credential / Login Logs

Customer-scoped authentication events for your protected asset.

Loading
Total Events
Failed Logins
Admin Route Events
Max Severity

Event Types

Loading event types…

Top IPs

Loading top IPs…

Latest Events

Loading credential/login events…

Network Identity

Customer-scoped IP and network behavior signals for your protected asset.

Loading
Unique IPs
Auth Events
Failed Events
Admin Route
MFA Events
Max Risk

Observed Network Identities

This customer view summarizes source IP behavior only. Blocking and enforcement controls remain in the AI Firewall admin dashboard.

Loading network identity signals…

Web / Nginx Protection

Customer-scoped web protection events for your protected asset.

Loading
Total Events
High Suspicion
Error Status Events
Unique IPs
Trusted Source Events
Max Severity

Top Event Types

Loading web event types…

Top IPs

Loading top IPs…

Customer Protection Summary

Detailed investigation, blocking, and mitigation controls are handled in the AI Firewall admin dashboard. This customer view shows a clean protection summary.

Loading web protection events…

Insider Threat

Customer-scoped behavioral risk signals for your protected asset.

Connected
Behavior Events
Privileged Actions
Sensitive Actions
High Risk
Unique Users
Max Risk

Observed Behavioral Signals

Loading Insider Threat behavior signals…
🕵️

Insider Threat

Company-install ready · Monitor-only by default. Monitors unusual admin activity, repeated sensitive actions, privilege-sensitive behavior, suspicious admin-route usage, abnormal login/logout patterns, and high-risk protected-asset user activity.

Insider Threat Behavior Risk Admin Activity Sensitive Actions User Anomalies Monitor-only
Customer-safe view: This module is visibility-only from the customer portal. Blocking, denylist rules, mitigation approvals, account actions, and enforcement controls remain inside the AI Firewall admin dashboard.

Organization Isolation

Your customer portal only displays security information assigned to your organization and its authorized protected assets.

Installation & Setup

Connect your protected server

Follow these steps on the Linux/Nginx server authorized by your organization.

Setup required
Protected asset

Loading protected asset…

This is the customer-scoped protected asset that the AI Firewall agent will connect to.

Step 1

Download the official installer

Run this command on your authorized Linux/Nginx server:

Installation instructions locked until installer access is released.
Step 2

Install the AI Firewall agent

The command below uses the protected domain assigned to your organization.

Installation instructions locked until installer access is released.
Step 3

Enroll this server

Enrollment uses a fresh one-time enrollment code issued only for your authorized protected asset.

Enrollment instructions locked until installer access is released.
Available after installer access is released.

The one-time enrollment code is entered locally on your server. It is not automatically exposed before installer access is released.

Step 4

Confirm connection

Return to this portal after enrollment. AI Firewall will use protected-asset connection and telemetry state to show deployment progress.

Setup progress Checking…
Checking protected-asset setup…
Step 5

Check agent status on your server

After enrollment, you can view the AI Firewall Universal Agent's current connection, telemetry, protection mode, and policy-sync status directly on your protected Linux/Nginx server.

Human-readable status

sudo aifw-agent-status

Machine-readable JSON

sudo aifw-agent-status --json
Safe local status

These commands display approved operational status only. Credentials, enrollment codes, tokens, and secrets are never displayed.

Step 6

Keep your AI Firewall Agent current

Use AI Firewall's signed in-place upgrade process to check for and install approved Universal Agent updates on this server.

Check the signed upgrade before making changes

sudo aifw-agent-upgrade --dry-run

Install the verified signed upgrade

sudo aifw-agent-upgrade --apply
Signed in-place maintenance

Normal Universal Agent upgrades preserve the protected-asset enrollment, agent credential, local runtime state, and AI Firewall Nginx policy configuration. Re-enrollment is not required for a normal signed upgrade.

These commands are run locally by your administrator. The customer portal does not remotely execute upgrades on your protected server.

Agent removal

Remove AI Firewall Agent

If you need to remove AI Firewall from this protected server, run the official uninstall command locally on that server.

AI Firewall does not remotely access your server and this portal cannot remotely uninstall software.

Uninstall instructions locked until installer access is released.

Available after installer access is released.

Important
  • Run this only on the server where the AI Firewall agent is installed.
  • The uninstall is performed by your administrator on your own server.
  • Historical AI Firewall security and audit records are not deleted by local uninstall.
  • Server-side agent identity can be revoked separately by an authorized AI Firewall administrator.
Security & privacy

Your organization remains in control

AI Firewall does not require SSH access, database credentials, source-code access, cloud-account credentials, or DNS-provider access as part of normal customer onboarding.

Your administrator installs the AI Firewall agent on the authorized server. The agent communicates outward to AI Firewall using HTTPS.

Protection mode

Monitor first

New customer protected assets begin in monitor-only mode. Enforcement remains subject to approved security policy and administrative approval.

📱 SentinelCore Mobile

Securely enroll and install SentinelCore on your authorized phone.

Install SentinelCore Mobile