Discovery & Inventory
Outbound-only agents for Windows, Linux, and macOS — plus network device import from NetBox or Ansible inventory.
One console for discovery, CVE prioritization, patch policy, approvals, deployment, verification, and compliance reporting — deployed on your infrastructure. Ansible as the execution engine; Praytec handles install & support.
From knowing which hosts are vulnerable to audit evidence for ISO — all in one operational platform.
Outbound-only agents for Windows, Linux, and macOS — plus network device import from NetBox or Ansible inventory.
NVD feed sync — see which patches are urgent, which hosts are affected, and prioritize remediation by business risk.
Per-group rules: prod vs dev, auto vs approval required, maintenance windows, reboot rules — one model for the whole fleet.
Preview impact before execution — approvers see change summaries, comments, and a full audit trail.
Praytec-curated playbooks for apt/dnf, Windows Update, and vendor firmware — scheduled jobs, stored logs, automatic retries.
Juniper, Cisco, and multi-vendor upgrade templates via Ansible — pre-check, staged rollout, post-check for high-risk changes.
Post-patch version checks, health probes, and rollback hooks — failed hosts stay visible, not lost.
Patch SLA dashboards, CSV/PDF export for auditors — proof of who approved, who ran, and the outcome.
HQ, branches, and DMZ — operators, approvers, and viewers with role-matched access.
| Target | Method | Example use case |
|---|---|---|
| Linux (deb/rpm/apk) | Agent + Ansible | Weekly security updates on PrayERP & database servers |
| Windows Server & Client | Agent + win_updates | Critical KB patches without a separate WSUS stack |
| macOS | Agent + Munki integration | Office app patches; OS updates via MDM (later phase) |
| Router / Switch / Firewall | Ansible vendor modules | Juniper/Cisco firmware in maintenance windows |
| FreeBSD | Agent pkg | Edge & proxy servers |
7/14/30-day targets after CVE publish — dashboard shows SLA violations before auditors arrive.
Patch prod Tuesday 02:00, dev auto — no surprise midday reboots.
Failed job webhooks → monitoring alerts — correlate patch events with infrastructure logs.
Offline CVE bundles & Ansible collection sync — suited for isolated environments.
Replace WSUS + SSH scripts + spreadsheets with one operational console.
We install the control plane, harden it, ship initial playbooks, and train your team — same as PraySmart & PrayWatch.
Scaled by endpoint count & network devices. Setup & onboarding by the Praytec team.
Up to 25 endpoints · small business
Setup Rp 8 million
Up to 150 endpoints + network · multi-site
Setup Rp 15 million
150+ endpoints · enterprise / air-gap
Setup custom scope
Praytec guarantees the best subscription pricing for ERP, cloud phone, and PrayInbox. Find a lower public offer for comparable scope — send proof, and we'll adjust our price.
No upfront subscription fees. Tell us your needs — we set everything up. You test, run in production, and only start subscribing when everything meets your expectations.