Netmon 7 Product Guidev7.0.20
Uptime, performance, logs, traffic, alerts, and reports from one browser-managed appliance. This guide is the map to all of it.
Netmon is a network monitoring appliance: a single device that discovers what is on your network, watches it continuously, tells you when something needs attention, and keeps the history you need to answer questions afterward. It is managed entirely through a web browser, and it is designed so that one administrator can bring a complete monitoring practice — availability checks, performance graphs, log collection, traffic analysis, alerting, and reporting — to a network in an afternoon.
This guide covers the installation, operation, and maintenance of Netmon version 7.0.20.
What Netmon does
Netmon combines, in one appliance, capabilities that are usually spread across several products:
| Capability | What it gives you |
|---|---|
| Device discovery | Finds hosts on your network automatically and queues them for review, so the inventory builds itself. |
| Availability monitoring | Continuous ping (ICMP) checks with latency history for every device. |
| SNMP monitoring | Interface throughput, CPU, memory, storage, temperature, and any other SNMP-readable value, graphed over time. |
| Windows monitoring | A lightweight agent for Windows hosts: services, processes, disks, installed software, and event logs — no SNMP required. |
| Service & web checks | TCP port monitoring and URL trackers that watch the websites and services your users depend on. |
| Traffic analysis | Continuous deep packet inspection: every conversation and protocol mix on the appliance’s monitored interfaces, recorded in real time — plus NetFlow/sFlow collection to extend the record to segments it cannot see directly. |
| Log collection | A syslog server, Windows event log collection, and intrusion-detection (IDS) event ingestion, searchable in one place. |
| Packet capture | The always-on inspection engine doubles as a capture engine: filtered captures, cut live from the monitored stream and downloadable as standard .pcapng files — straight into Wireshark if you wish. |
| Alerting | A routing system that turns any of the above into notifications by email, webhook, Slack, Microsoft Teams, or Discord. |
| Reporting | On-demand reports for management, capacity planning, and audits, from definitions you keep and re-run. |
A quick tour
Everything in Netmon is reached from the navigation sidebar in the web interface. The major areas, in the order this guide treats them:
- Dashboard — your home page: boards of widgets you compose yourself from any graph, gauge, or list in the system.
- Device Import — where devices enter: discovery results, agent enrollments, and the Add Device wizard.
- Device Dashboard — the inventory. Each device has its own dashboard of graphs and trackers, plus the settings that control how it is monitored.
- Overwatch — the whole fleet on one screen, built for the wall-mounted display in the operations room.
- Visual Network Explorer — a live topology map of your network.
- Logs and Events — syslog, Windows event logs, IDS events, and the flow record, with full-text search and time filtering.
- Alerting — where you define what is alert-worthy, who gets told, and how; also the record of every alert that has fired.
- Reports — report definitions and the documents they produce.
- URL Trackers — website monitoring.
- Network Tools — ping, traceroute, MTR, SNMP walk, and other diagnostics, run from the appliance’s vantage point; packet captures live here too.
- System — users and permissions, appliance settings, data retention, backups, and software updates.
Getting started
Daily operation
.pcapng.
Agents & integrations
Administration & reference
Getting help
Your first stop for product support is support@netmon.com, or toll-free 1-800-944-4511. When writing, include the software version (shown on the sign-in page, and under System → System Settings) and, if the question concerns a specific device or alert, its name — it shortens the round trip considerably.