Outbound HTTPS only
Agents initiate their own HTTPS connection to the Ordantra API. They refuse plain HTTP URLs and do not require inbound firewall rules on endpoint devices.
Ordantra uses endpoint signals to help small IT teams find risk, explain context, and turn important findings into trackable service work. The agent is designed for outbound reporting, not remote control.
Agents initiate their own HTTPS connection to the Ordantra API. They refuse plain HTTP URLs and do not require inbound firewall rules on endpoint devices.
A workspace enrolment key bootstraps registration. Ordantra then issues a separate device credential so routine heartbeats and signed commands are isolated per endpoint.
Windows and Linux use separate release channels. Clients require HTTPS, verify the published SHA-256 digest, and report the update result; Linux also supports atomic rollback.
Agents run on a schedule: heartbeats report roughly every 15 minutes, while full software inventory syncs are less frequent to keep the signal useful without constant churn.
Endpoint posture is used to explain risk, link findings to assets, and create service work when policy thresholds are met.
The agent sends operational and posture data that helps a resolver understand the endpoint, its security state, and the work already linked to it.
Ordantra is built to connect service work with endpoint posture. It is not positioned as employee monitoring, remote desktop, or content inspection tooling.