Enigma Sensor Installation Guide for Windows
This guide provides instructions for installing the Enigma traffic analysis sensor on Windows 11 systems. Enigma enables comprehensive network traffic analysis to help identify and mitigate security threats.
System Requirements
- Supported Operating Systems:
- Windows 11 Professional or Enterprise Edition (required for Docker Desktop)
- Minimum Hardware:
- Intel i5 (or compatible) CPU, minimum 4 cores
- 12 GB RAM (16 GB recommended)
- 10 GB available disk space
- 2 NICs (one for SPAN, one for management; one must support promiscuous mode)
- Other:
- Sleep settings disabled
- Firewall disabled on Enigma machine
- Antivirus/EDR/DLP configured to allow packet capture, file creation, and Docker operations
Prerequisites
Before installation, ensure you have:
- Local administrator rights (to create/modify Windows Services, network settings, and files)
- Ability to run PowerShell as Administrator
- API key from Enigma User Profile
- No VPN client running on the Enigma machine
- Corporate firewall, proxy, and DNS allow outbound TCP 443 to https://enigmaai.net/
- Network switch supports SPAN (or use a network TAP)
Installation
- Download
enigma-sensor-installer.exefrom the latest GitHub release - Right-click
enigma-sensor-installer.exeand select Run as administrator - When prompted, enter your API key from Enigma User Profile
- Follow the installation wizard to complete setup
- After installation, verify the service is posting data:
- Navigate to
C:\Users\<user>\Enigma-Docker\and openps-script-logs.txt - Look for a successful data upload message (search for
Status Code: 200) - If not present after a few minutes, verify:
- Enigma Windows service is running
- If issues persist, contact Enigma support
- Navigate to
How It Works
Once installed, the Enigma sensor will:
- Capture network traffic samples at regular intervals
- Process captured data through the Enigma analysis engine
- Send encrypted analysis results to the Enigma cloud platform
- Store data in
C:\Users\<user>\Enigma-Docker\and log activity inps-script-logs.txt
Troubleshooting
Common Issues
- Service Not Posting Data: Check Enigma Windows service status. Review
ps-script-logs.txtfor errors. - API Key Issues: Ensure the correct API key is entered. Contact Enigma if the key is lost.
- Network Issues: Confirm outbound TCP 443 to https://enigmaai.net/ is allowed. Check proxy/firewall settings.
- Insufficient Resources: Verify RAM, disk space, and NIC configuration meet requirements.
- Security Software Blocking: Ensure EDR, DLP, antivirus, and host firewalls are configured to allow:
- Packet capture
- File creation in target directories
Uninstallation
To uninstall the Enigma sensor:
- Open Settings > Apps > Apps & features (or Control Panel > Programs and Features)
- Find “Enigma Sensor” in the list of installed programs
- Click Uninstall and follow the prompts
Security Considerations
The Enigma sensor requires:
- Read access to network interfaces for packet capture
- Regular outbound connections to Enigma services
- Security software (EDR, DLP, antivirus, VPN, proxy, DNS agents) must not block sensor operation
For further assistance, contact Enigma Support.