Monitor, patch, back up and secure every device.
| Device | OS | Status |
|---|---|---|
| hq-dc-01 | Windows Server | Healthy |
| app-node-04 | Ubuntu 24.04 | 7 updates |
| edge-fw1 | VyOS 1.4 | Offline |
One lightweight agent and one console, instead of a stack of point tools.
Inventory, 40+ health checks and automated remediation, from one agent.
A customer-hosted probe for switches, firewalls and routers. No inbound ports.
Cluster-aware update plans for Proxmox, vSphere, Hyper-V and OpenStack. Evacuate, update, return, rebalance.
Image, file and Microsoft 365 backups, written to immutable Object Lock storage.
The agent only runs typed jobs behind a local allowlist, and risky actions need passkey signatures verified on the device.
Tickets, changes, purchase orders and SLAs, fed by the alerts your systems raise.
Every action is signed, scoped to one tenant and verified on the device. Control of the server never means control of your machines.
Each agent carries its own certificate and pins Nebula's CA, so nothing can impersonate the server.
A fixed set of typed actions behind a local allowlist. No arbitrary commands, ever.
Risky actions need a passkey signature, verified on the device itself.
Every request is re-checked against the signed-in tenant. Cross-tenant access returns "not found".
Backups land in Object Lock storage that can't be deleted before its retention date.
Run it on your own infrastructure and hold your own keys. Nothing phones home.
One inventory, one console, one bill for everything you run.
Laptops, servers, switches, firewalls and hypervisors, side by side. No tool-hopping.
mTLS, typed jobs and passkey-signed approvals mean a breach of the server can't be turned on your machines.
A per-device core with monitoring, patching, network and virtualization built in. Backup and remote access are yours to add.
Run Nebula on your own infrastructure and hold your own keys, or let us host it for you. SSO and SCIM either way.
A per-device platform. Add backup and remote access only if you need them.
Everything you need to monitor and run your IT.
Priced by what it protects, with pooled storage included.
Remote access, licensed per technician.
Volume pricing on request. Network devices and hypervisors are licensed per managed node. Self-host or managed.
No. Agents and the probe dial outbound over mutual TLS, so nothing is exposed inbound at a managed site.
The per-device platform covers monitoring, patching, automation, network, virtualization, the service desk and reporting. Backup and remote access are separate products, so you only pay for what you turn on.
One agent covers Windows, Linux and macOS. Beyond endpoints, Nebula also manages network gear and hypervisor clusters, and backs up Microsoft 365.
Yes. Run the server and the remote-access relay on your own infrastructure, so you hold your own keys and data. A managed option is available too.
The security model. The agent only runs typed jobs behind a local allowlist, risky actions need passkey-signed approvals verified on the device, and every tenant boundary is re-checked server-side, so control of the server never means control of your endpoints.
Book a live walkthrough on real Windows, Linux, network and hypervisor devices.
Prefer email? hello@nebularmm.com