Now in early access

Network observability
without the lock-in.

GridNMS monitors your physical devices, cloud infrastructure, and containers from a single pane of glass — with predictable pricing, zero per-port licensing, and no agents required for base monitoring.

1Unified view
0Per-port fees
3Deployment modes

Legacy NMS tools were built for a world that no longer exists.

SolarWinds, PRTG, and their peers were designed for static, on-prem environments. They charge per port, require privileged agents, and ship as monolithic installers that take days to deploy. When your infrastructure spans on-prem switches, cloud VPCs, and Kubernetes clusters, they crack under the weight of their own architecture.

The supply chain attack that compromised 18,000 SolarWinds customers wasn't a fluke — it was the predictable outcome of a platform that prioritized feature count over security-by-design.

Per-port / per-element licensing
Privileged agents on every host
No native cloud or container visibility
Monolithic installers, weeks to deploy
Supply chain risk (SUNBURST)
Alert fatigue from static thresholds

Everything your network team needs.
Nothing you don't.

Single Pane of Glass

Multi-site, multi-tenant dashboard aggregates every device, alarm, and log across all your locations. Filter down to a single site or zoom out to the enterprise view — role-based access enforced at every level.

  • Multi-site per tenant with site-scoped RBAC
  • Cross-site topology and alarm correlation
  • Configurable dashboard portlets with auto-refresh

Agentless Device Monitoring

Monitor uptime, interfaces, CPU, memory, and custom SNMP OIDs without deploying privileged agents. Read-only SNMPv3, SSH with ForceCommand jails, WMI least-privilege accounts.

Automated Topology Mapping

Network crawler uses LLDP, CDP, and ICMP sweep to automatically discover and map your topology. No manual templates. Auto-assigns monitoring profiles based on device OS and hardware detection.

Syslog Management

High-performance syslog ingestion with a pluggable parser pipeline. Platform detection, field extraction, transformation rules, and subscription routing — all configurable per collector for data governance.

Intelligent Alerting

Holt-Winters dynamic thresholds learn your network's seasonal patterns and eliminate alert fatigue. No more paging on the nightly backup CPU spike. Escalation chains, maintenance windows, and alert correlation built in.

Cloud Native Integration

Ingest VPC Flow Logs, CloudWatch, Azure Network Watcher, and GCP VPC metrics. Correlate cloud network events directly against your physical infrastructure on a unified timeline.

Container & K8s Visibility

eBPF-powered east-west traffic monitoring inside Kubernetes — no application instrumentation required. Pod-level network metrics, latency, and packet drops without overhead.

Coming soon

Security by Design

Cryptographic artifact signing, SBOM generation on every build, and least-privilege collection at every layer. IA-2 / AC-6 principal identity on every database transaction. Multi-tenant cryptographic separation per site.

Monitoring Packs

Class-driven collector bundles attach to device types and automatically configure the right OIDs, SSH commands, intervals, and thresholds. Dynamic device detail tabs render the data your team actually cares about.

Runs where your data needs to be.

The collector engine runs autonomously on your infrastructure. The control plane can be our SaaS or yours. Data never leaves your network unless you explicitly allow it.

On-Premises

Single Docker Compose stack on any Linux host. PostgreSQL, collector, and UI in one command. Fully air-gappable with a JWT license file.

docker compose up

Cloud VM

Deploy the collector on EC2, GCE, or Azure VM to monitor cloud-native resources directly. Unlocks native VPC Flow Log ingestion and cloud topology mapping.

docker compose up # same image
Collector operates fully offline. No polling data transits the control plane unless you enable cloud logging. Syslog storage routing is configurable per-collector for data governance and egress cost control.

Pay for what you monitor.
Not for every port.

Metered by active device, not by physical port count. Add cloud visibility and log management when you need them. No per-module licensing traps.

Base
Network Monitoring
Per active device/month
  • ICMP uptime monitoring
  • SNMP polling (v1/v2c/v3)
  • SSH collection
  • Interface metrics & counters
  • Automated topology mapping
  • Alerting & thresholds
  • Syslog ingestion & parsing
  • SNMP trap receiver
  • Monitoring packs
  • Local SQLite log storage
Add-on
Log Management
Per GB/day ingested
  • ClickHouse log storage
  • S3/GCS Parquet export
  • Cloud-managed log storage
  • Full-text log search from console
  • Long-retention queries
  • Per-collector routing rules
  • PII field redaction
  • Burst cap — no surprise billing
Add-on
Cloud Visibility
Per cloud account
  • AWS VPC Flow Logs
  • AWS CloudWatch metrics
  • Azure Network Watcher
  • GCP VPC Flow Logs
  • Cross-cloud topology map
  • Entity correlation (cloud ↔ physical)
  • Unified event timeline
Add-on
Container & K8s
Per node in cluster
Coming soon
  • eBPF east-west traffic
  • Pod-level network visibility
  • K8s topology mapping
  • No application instrumentation
7-day free trial — up to 10 devices, base tier, no credit card required.

Need full air-gap deployment?

GridNMS supports fully offline self-hosted deployments with a JWT-based license file. No phone-home required. For government, finance, and compliance-sensitive environments.

Talk to us