Get Started
Learn more about Field Effect and get our solution setup
Administer the MDR Portal
Administer your my.fieldeffect.net portal settings
-
Field Effect Endpoint Agent: Operating System Requirements
-
Endpoint Agents: Overview
-
Appliance-Hosted Endpoint Agent Installers: Overview
-
The Downloads Page
-
Installing the Endpoint Agent - Windows
-
Active Response: Overview
-
Response Policies: Overview
-
Response Actions: Overview
-
Configuring Active Response
-
Active Response: Example Scenarios And Common Response Events
-
The User Management page
-
Inviting Users
-
Editing User Permissions
-
Searching and Filtering for users
-
Managing users
Use the MDR Portal
Use the my.fieldeffect.net portal to monitor your threat surface
-
The Profile Page
-
Adding a Mobile Number to Your Profile
-
Changing Your Language in the MDR Portal
-
Viewing & Managing Notifications
-
Multi-Factor Authentication (MFA): Overview
-
Getting to Know AROs
-
The Anatomy of an ARO
-
Working with AROs
-
ARO Comments & the Activity Feed
-
The AROs Page
Install an Appliance
Integrate an appliance into your infrastructure
-
Virtual Appliances: Overview
-
Accessing a Network Appliance Remotely
-
Installing a Virtual Appliance in AWS
-
Installing a Virtual Appliance in Azure
-
Installing a Virtual Appliance on a VMware ESX Cluster
Use the Appliance Dashboard
Look beyond the portal and explore the data held on your Appliance
Use the Mobile app
Setup and use our Mobile app
Connect
Connect your PSA tool or use the Field Effect API
Partner Resources
Manage licenses, clients and customize the portal
Troubleshooting
Answers to some commonly asked support questions
-
Is Field Effect a SIEM?
-
What events are collected by Field Effect?
-
Audit Policy Requirements for Field Effect MDR
-
Can Field Effect ingest application logs?
-
Does Field Effect protect against log tampering by the originator?
-
Why was an ARO notification late?
-
What is an "Impossible Travel" scenario?
-
ARO: Suspected Typosquat Domain Detected
-
What's the difference between Resolving and Dismissing an ARO?
-
ARO: Removable Drive Detected
-
Will users be able to login if a computer is isolated?
-
Can Field Effect MDR send an automated email to our ticketing systems when a computer is isolated?
-
What is the process to remove isolation and restore network connectivity to affected system in case of false positive? Can I do it myself?
-
How long would Field Effect take to notice an end point was infected with RansomWare?
-
What if my organization has another EDR service or solution with blocking capabilities?
-
Does Field Effect do any type of Windows Event Log archiving or collection?
-
Where are the logs stored?
-
What’s the price to store logs for longer than 90 days?
-
How will I be charged?
-
Which data types can be retained?
-
Why cant I log into the physical appliance?
-
Troubleshooting Physical Appliances
-
Can I have confidence that my data is safe on an appliance?
-
We need to move the Appliance, what do I need to consider?
-
How does Network Monitoring Work?
-
PSAs - How can I quickly Navigate to the MDR Portal from my Integration?
-
Autotask - The integration card is missing on the Integrations page?
-
Autotask - What happens if I delete an ARO task in Autotask?
-
Autotask - Why was I was notified that my thread threshold is exceeded?
-
ConnectWise - My companies aren’t available for mapping in the MDR Portal?
-
Troubleshooting the Endpoint Agent
-
What Endpoint agents are currently available?
-
Troubleshooting manual endpoint installation issues for Windows
-
Troubleshooting manual endpoint installation issues for QNAP
-
Why am I getting the error "Missing License File"
-
Why am I seeing TOR Project exit nodes in my report?
-
Can I breakdown the Security Events summary in the Weekly Report?
-
Why am I seeing logins from unexpected countries on my Monthly Report?
-
Can I find out more about the Most Resolved Domains listed in the Monthly Report?
-
Can I find out more about the My Network Summary graph?
Video Library
A collection of Field Effect videos