Products

EyalSec comes as two products: es-python, which watches Python programs, and es-chromium, which watches web pages. This page describes them, explains how a product is enabled on your account, and shows where each product's events appear.

The two products

Each product watches one kind of program and reports what it finds to the same dashboard. They share the same ideas (sources, sinks, events, rules) and the same Events, Filters and Machines pages; what differs is what they watch and how you install them.

Product What it watches
es-python Python programs, run with the EyalSec Python runtime.
es-chromium Web pages, in the EyalSec browser: flows from page input to the place that uses it (DOM-based cross-site scripting).

es-python is the product most of this guide is written around. es-chromium has its own page, with how to install and run it and what its configuration can and cannot do.

How products are enabled

Which products you can use is set per account, as part of your plan. es-python is enabled on every account by default; es-chromium is enabled when your plan includes it.

To add es-chromium to your account, email sales@eyalsec.com. Once it is enabled, it shows up straight away on the dashboard: its events list appears, and you can add its machines yourself from the Machines page. Nothing has to be reinstalled on your existing machines.

A product that is not enabled is not missing, it is simply not on your plan. The dashboard never shows lists, filters or install panels for products your account does not have. See Plans and limits for how products relate to your limits.

One events list per product

The Events page keeps a separate list for each product you have, so es-python findings and browser findings never mix. The sidebar shows one link per list, each with a count of the events in it.

  • With one product, the sidebar link is simply called Events.
  • With both products, there is one link per product: es-python and es-chromium.

Each list has its own event quota and its own filters. The page itself is described on Events.

Machines and products

Every machine belongs to exactly one product. When you add a machine, you choose its product first, and the rest of the form and the install instructions follow from that choice.

The machine limit counts each product separately, so running out of es-python slots never stops you adding an es-chromium machine. See Add a machine.

When a product is switched off

If a product is removed from your account, its events list disappears from the dashboard and its agents are no longer accepted. Nothing is deleted: the stored events come back if the product is enabled again.

Machines of a product you no longer have stay on the Machines page, dimmed and marked (disabled) in the machine count, so you can still find and uninstall them. Agents can keep sending for up to a minute after the change before they are refused.

Something unclear or missing on this page? Email support@eyalsec.com.

EyalSec Pricing Docs Security Contact Login Book a live demo