Getting Started with Spectra Detect — First Login, SDM Setup, and File Analysis
Log in to Spectra Detect Manager, connect to Spectra Intelligence, configure your first scan input, and submit a file to view analysis results in the dashboard.
Log in to Spectra Detect Manager, connect to Spectra Intelligence, configure your first scan input, and submit a file to view analysis results in the dashboard.
Learn how Spectra Detect scales static file analysis from 100K to 100M files/day across Workers, Hubs, and SDM in OVA/AMI and Kubernetes deployments.
Configure Spectra Detect appliances, scan inputs, egress integrations, YARA sync, notifications, redundancy, and certificate management via SDM.
Navigate the Spectra Detect Manager dashboard: monitor quota usage, view appliance status, access detections overview, and manage notifications from the global header.
Submit files to Spectra Detect Worker API for Spectra Core analysis, retrieve reports via callback or polling, and customize output with field selection.
Build advanced inclusive or exclusive egress filters in Spectra Detect using file type, classification, YARA match, MITRE technique, and behavior conditions.
Manage Spectra Detect notifications for cloud classification changes: filter by period, read status, and classification, and deliver alerts via email, Splunk, or Syslog.
Configure Spectra Detect Manager redundancy with active-passive clustering, automatic failover, and load balancer integration for high availability deployments.
Diagnose and fix Spectra Detect issues: Worker nodes not appearing in SDM, growing analysis queues, YARA sync failures, TLS certificate errors, and update problems.
Use Spectra Detect to analyze files, view detection dashboards, manage YARA rulesets, and monitor analysis results across Workers and Hubs.
Create and deploy custom YARA rulesets on Spectra Detect Workers with supported modules (PE, ELF, Math, Hash), naming rules, and sync via Spectra Detect Manager.
Track and trigger YARA ruleset sync across Spectra Detect Workers and Spectra Analyze appliances, with sync statuses: InSync, OutOfSync, PendingNew, and Error.
Administer Spectra Detect Manager: configure authentication, manage users and roles, set up email alerts, apply updates, and monitor licensing.
Configure Spectra Detect Connectors to automatically ingest files from IMAP/Exchange, S3 buckets, and other sources, with pause, disable, and retention options.
Access Spectra Detect REST APIs for Manager administration, Service operations, Metrics monitoring, and Usage reporting across Workers, Hubs, and SDM.
Find Spectra Detect supplementary reference materials, including open source RPM and NPM package licenses for Worker, Hub, and Manager appliances.
Use Spectra Detect Central Configuration to remotely manage appliance settings, create Hub groups, configure egress integrations, and apply changes across multiple appliances.
Configure Spectra Detect Manager authentication: set session duration, enable LDAP, OAuth 2.0/OpenID Connect, or SAML SSO for secure user access.
Reference all Spectra Detect EKS Secrets and ConfigMap keys for Worker pods: S3, Azure ADL, Splunk, Spectra Intelligence, authentication, and archive configuration.
Deploy Spectra Detect on AWS EKS using Helm charts with KEDA autoscaling, Prometheus monitoring, RabbitMQ broker options, and ConfigMap-based Worker configuration.
Deploy Central Spectra Detect Manager (CSDM) to aggregate dashboards and sync YARA policies across federated OVA and Kubernetes SDM instances via M2M token auth.
Add, trust, and distrust Root CA certificates in SpectraDetect's trust store to control TLS validation for Manager, Hub, Worker, and Spectra Analyze appliances.
Deploy Spectra Detect as OVA, AMI, or Kubernetes container images on AWS EKS, with guides covering multi-region, Central SDM, and Helm-based microservices deployments.
Configure Spectra Detect email alerts for Spectra Intelligence quota warnings: enable alerting, manage recipients, and set threshold levels.
Use the Spectra Detect Manager API to obtain auth tokens via POST /api/v1/auth/token/, back up and restore, connect appliances, configure connectors, and enable central logging.
Configure Spectra Detect Manager global settings: network configuration, SSL certificates, system preferences, licensing, and installation-specific options.
Deploy Spectra Detect across geographic regions using global load balancers, active/standby SDM and Hub pairs, and per-region Worker clusters for HA and data residency.
View all open source RPM and NPM package licenses used in Spectra Detect Worker, Hub, and Manager appliances, including third-party software attributions.
Scrape Spectra Detect appliance health and performance metrics via GET /metrics with Prometheus, using honor_labels: true to preserve job labels and avoid collisions.
Submit files to Spectra Detect Worker via POST /srv/tiscale/v1/task, check task status with GET /srv/tiscale/v1/task, and retrieve analysis reports.
Check Spectra Detect Worker system status and retrieve processing statistics using the Service API at GET /srv/tiscale/v1/sysinfo with token-based authorization.
Update Spectra Detect Manager and Worker appliances by uploading .bin files manually or downloading from Spectra Intelligence, including air-gapped and sequential upgrade steps.