Appearance
First-time setup
After init and starting the service, open the console URL (for example https://sentinel-admin.example.com). Until setup is complete, the console shows the setup wizard.
The setup wizard
| Step | What you enter | Notes |
|---|---|---|
| 1. Setup token | The token from setup-token in the data directory | Single use, valid for 24 hours. Run sentinel init again to create a new one if it expired. |
| 2. Organisation | Organisation name | Shown to employees in the Klipsu apps and on the enrollment page. |
| 3. Owner account | Your name, work email and password | At least 12 characters; common passwords and your email are rejected. |
| 4. Evidence passphrase | A passphrase of at least 16 characters, entered twice | A few random words work well. You must confirm that it is stored safely. |
| 5. Done | — | You are signed in as the first owner. |
WARNING
Store the evidence passphrase before you finish. Sentinel never stores it. Without it, sealed evidence can never be opened, and Lygon Software cannot recover it. Split custody, for example two officers each holding half, works well.
After setup
- Secure your account. Enable two-factor authentication under Account. Once your colleagues have it too, consider requiring it for everyone (Signing in and roles).
- Install your license under Settings → License. Until then Sentinel runs in evaluation mode (30 days, 25 people).
- Invite colleagues under Settings → Admins, with the least privileged role that fits each person.
- Review privacy settings and rules. Decide with your data protection officer and employee representatives which rules, masking and evidence retention to use (Rules and masking, Settings, Employee notice template).
- Enroll a pilot group with an enrollment code (Devices and enrollment).
- Connect your tools: SIEM, webhooks or Slack (Integrations).