Skip to content

Frequently asked questions

Frequently asked questions about FirstSI

The questions IT managers and CISOs ask most often before installing FirstSI, grouped by topic. For a specific need (directory, network, databases…), the page dedicated to it has its own questions, and each answer here points to it when it goes further.

Installation and requirements

Where do I install the FirstSI console?

On a server in your own infrastructure, or with the hosting provider of your choice. Your teams open it in a browser: nothing to install on their computers.

Which database do I need?

The platform stores its data in SQL Server or PostgreSQL, on a server you control. The volume depends on the modules you switch on and the retention period you choose, from 1 to 365 days.

Which machines can I install the agent on?

On 64-bit Windows computers and servers. A native version for ARM64 processors is also provided.

How do I deploy the agent across my whole estate?

A single MSI installer covers all twelve modules and is distributed like any other MSI. After that, configuration and updates are handled remotely, from the console. See Unified IT monitoring.

Agents and impact on machines

Will the agent install a driver on my machines?

No. It runs as a Windows service and relies on what Windows already produces, starting with its audit log.

What happens if my FirstSI server cannot be reached?

The agent keeps collecting and holds up to 256 MB per module locally. Synchronisation resumes by itself when the network comes back, with nothing lost during ordinary outages.

How do I update the agent?

From the console, remotely. Every update is signed, and the agent checks the signature before installing it: an unsigned or tampered update is refused.

Is traffic between my agents and the server encrypted?

Yes, over TLS, with the server certificate checked. On a network with no direct Internet access, the agent goes out through your company proxy or through a relay on the site. See Multi-site network monitoring.

How do I remove the agent from a machine?

Uninstall it like any other Windows program, then remove the machine from the agent list in the console. In that order: as long as it is installed, the agent keeps contacting the server.

Hosting, sovereignty and security

How is access to the console protected?

Multi-factor authentication and security keys (WebAuthn), short sessions renewed automatically, and sign-out after a period of inactivity that you set. Every sign-in and every administrative action goes into the audit log. See Security & GDPR.

Can I sign in with my company accounts?

Yes, the console supports single sign-on (SSO). The permissions of each account are still set in FirstSI.

Will everyone see everything in the console?

No. Each account is given a role: reader (view only), operator (handles alerts and incidents) or administrator. You can also limit the visible modules account by account.

Can several of my entities share the same platform?

Yes, it is multi-tenant. Each entity, or each client of a managed service provider, has its own sealed space, its own rules and its own retention period.

How are my connector passwords and API keys protected?

They are encrypted at rest in the database. API keys have limited scopes, and every call is logged.

GDPR and personal data

Will FirstSI process personal data in my organisation?

Yes: account names, computers, IP addresses and file access, depending on the modules you switch on. You choose the modules, and therefore what is collected, and nothing is gathered beyond the scope you configure.

How do I answer an access or erasure request?

A person's data can be exported in one click, in a structured format. On request, it is erased, including from the event logs.

Do I need to inform my employees?

Monitoring access and sign-ins concerns your employees. Most organisations mention it in their IT policy and in their record of processing activities. Your DPO is best placed to confirm.

Features and integrations

Which modules does FirstSI include?

Twelve: files, network flows, firewalls, service availability, network infrastructure, SIEM, DNS, software inventory, service mapping, databases, authentication and computer diagnostics. They share the same console and the same agent. See Unified IT monitoring.

Does FirstSI have an API I can use?

Yes, a public API and an MCP server for AI assistants. You decide what each tool can read, with keys of limited scope, and every call is logged.

Where will my alerts arrive?

In the console, by email or by webhook to the tool of your choice. Maintenance windows hold alerts back during planned work. See SIEM and incident detection.

Does FirstSI work with GLPI?

Yes. Ticket pre-diagnostics add their internal note to GLPI tickets, and connectors let you consult other applications in read-only mode. See AI assistant and ticket pre-diagnostics.

What about my servers that do not run Windows?

The agent is a Windows agent. Your other servers stay visible through availability probes (HTTP, TCP, ping) and, where they allow it, through SNMP. See Multi-site network monitoring.

Demo, onboarding, support and languages

Is the demo data real?

No, it is entirely fictional: an imaginary company with 138 machines, its sites, its incidents and its tickets.

How do I get a guided demonstration?

Click “Request a demo” at the top of every page on this site. List your topics (directory, network, tickets): the demonstration will start from your questions.

Which languages can I use FirstSI in?

The console comes in five languages: French, English, German, Spanish and Italian. The website and the documentation are in French, English and Italian.

Where do I find the documentation, and who do I write to?

User, administration and API documentation is on docs.firstsi.com. For any other question, write to contact@firstsi.com.

Your question is not on the list?

Ask it during a guided demonstration, or open the online demo and find the answer yourself.