# SAMURAI Platform · Network Monitoring

> Six primitives (devices, endpoints, paths, policies, changes, and snapshots) built on one data model and queryable through one API.

Every capability is built around the same data model, so discovery, analysis, and monitoring share one source of truth.

## Capabilities
- **Endpoint discovery & correlation**: MAC tables, ARP, DHCP snooping, CDP/LLDP neighbors, 802.1X sessions, and APIC fabric hosts stitched into one table, with vendor identification from a 39,000-entry offline IEEE OUI database.
- **Hop-by-hop traffic simulation**: path tracing and effective access across IOS, NX-OS, PAN-OS, FortiOS, and ACI, with reverse-path support.
- **Policy Analyzer**: effective-access / effective-permitted-space computation (objects + NAT resolved), rule hygiene (shadowed / redundant / overly-broad detection), and per-rule risk scoring.
- **Real-time change monitoring**: configuration drift with admin attribution and volatile-field filtering.
- **Routed alerts**: every change can be routed to Slack, Telegram, Discord, Microsoft Teams, email, syslog/SIEM, webhooks, TheHive, Jira, and more.
- **Interactive topology**: a live network map of the fabric.
- **Automated compliance auditing**: 140+ CIS checks with scoring, waivers, and remediation tracking.
- **In-browser device terminal**, **forensic evidence collection**, **custom detection rules**, **RBAC with LDAP**, **high-availability clustering**, **built-in TLS management**, **outbound proxy support**, and **multi-format export**.

SAMURAI analyzes configuration and state; it does not recertify firewall rules or run change-approval workflows.

---

Canonical page: https://nometa.az/en/platform/
Part of SAMURAI, a self-hosted, multi-vendor network monitoring & security platform. Overview: https://nometa.az/llms.txt
Contact: info@nometa.az · Docker Hub: https://hub.docker.com/r/beyrak44/samurai
