New: Centreon Log Management, sovereign, OpenTelemetry-native log monitoring Learn more →
Data collection

Nothing escapes your monitoring

SNMP, OpenTelemetry, APIs, agent or agentless: Centreon captures every signal across your entire stack, so no corner of your infrastructure stays in the dark.

Collection methods

Agent, agentless or push: pick the right method per technology, down to the protocol, version and authentication scheme.

Agentless

Zero footprint on the monitored target, over standard protocols.

  • SNMP v1, v2c & v3 (authPriv: MD5/SHA, DES/AES); GET, GETNEXT, GETBULK, WALK
  • SNMP trap receiver with MIB resolution
  • SSH command execution (key or password)
  • Windows via WMI and WS-Management (WinRM)
  • HTTP/HTTPS: status code, response time, content & TLS certificate checks
  • SQL via ODBC/JDBC: MySQL/MariaDB, PostgreSQL, Oracle, MS SQL, Sybase, DB2
  • Out-of-band hardware via IPMI & Redfish (Dell iDRAC, HPE iLO, Lenovo XCC)
  • ICMP: availability, round-trip time and packet loss

With agent

The Centreon Monitoring Agent, a lightweight native agent, gathers deep system metrics and runs local checks.

  • Native agent for Windows and Linux
  • Local checks: CPU, memory, disks, processes, services, event logs
  • Secure mTLS transport
  • Native OpenTelemetry export
  • Centralized configuration and updates

OpenTelemetry-native (OTLP)

Receive pushed telemetry over the open OpenTelemetry standard.

  • Metrics, logs and traces over OTLP
  • gRPC (port 4317) and HTTP/protobuf (port 4318)
  • Compatible with the OpenTelemetry Collector and SDKs
  • No proprietary agent, no technology lock-in

Cloud & REST APIs

Pull metrics straight from cloud providers and any HTTP service.

  • AWS via CloudWatch (EC2, RDS, S3, Lambda, ELB, billing…)
  • Microsoft Azure Monitor and Microsoft 365
  • Google Cloud Monitoring
  • Kubernetes API and any REST/JSON endpoint
  • Auth: API key, OAuth2, IAM role, service principal

Prometheus & PromQL

First-class cloud-native collection alongside everything else.

  • Scrape Prometheus exporters and /metrics endpoints
  • Native PromQL queries
  • Kubernetes & container metrics (cAdvisor, kube-state-metrics)
  • Correlate cloud-native and legacy in a single view

Logs, traps & events

Event-driven inputs, normalized before correlation.

  • Syslog (RFC 3164 & 5424), SNMP traps, event streams
  • Normalization, deduplication and enrichment at ingestion
  • Severity mapping and correlation rules

Custom & legacy plugins

Anything you can script, Centreon can collect.

  • 700+ ready-to-use Monitoring Connectors (Plugin Packs)
  • Nagios-compatible plugins (exit codes 0/1/2/3, perfdata)
  • NRPE (port 5666) and NSClient++ (port 12489)
  • Custom plugins in Perl, Python or shell
  • Open plugin SDK

Discovery & automation

Map what you run automatically, then keep monitoring in sync with your infrastructure as code.

Auto-Discovery

Find hosts and services automatically, then keep the scope current.

  • Network scan over IP ranges and SNMP sweep
  • Cloud asset inventory (AWS, Azure, GCP)
  • VMware vCenter and hypervisor inventory
  • Scheduled or on-demand, with change detection and rules

Infrastructure as code

Provision monitoring alongside your workloads.

  • Ansible collection
  • Terraform provider
  • Full REST API (OpenAPI)
  • CLI automation (clapi)

Templates & inheritance

Keep thousands of objects consistent and maintainable.

  • Host and service templates
  • Macros and multi-level inheritance
  • Bulk provisioning and mass change

Smart collection

Collect what matters, at the right frequency, and turn raw data into actionable signals.

Flexible polling

Tune collection frequency to each metric and use case.

  • Polling intervals from 1 minute upward
  • Active and passive checks
  • Per-metric, per-host and per-template tuning
  • Maintenance windows and scheduling

Timezone-aware scheduling

Run monitoring on each site's local clock, the way multinational operations actually work.

  • Per-host and per-resource timezone
  • Time periods for checks, notifications and maintenance follow local time
  • Maintenance windows aligned to each site's working hours
  • One platform coordinating schedules across countries

Calculated & virtual metrics

Build new indicators from the data you already collect.

  • Derived metrics and arithmetic on counters
  • Aggregation across hosts and groups
  • Business Activity Monitoring (BAM) KPIs

AI-powered baselines

Cut noise and surface what is abnormal.

  • Machine-learning baselines and anomaly detection
  • Smart metric selection
  • Dynamic thresholds

From signal to action

Collection is only the start. Centreon turns every signal into automated remediation, the right notification and a feed for the rest of your stack.

Auto-remediation

Fix the problem the moment it is detected, before anyone is even paged.

  • Event handlers: run scripts, commands or playbooks on state change
  • Restart a service, clear a queue, free disk space, scale a resource
  • Trigger Ansible, Rundeck, shell or REST API actions
  • Conditional on host/service state, retries and thresholds
  • Close the loop: detect, act, then verify the fix
  • Fully open: script any custom action your runbook needs

Notifications

Reach the right people, on the right channel, at the right time, without the noise.

  • Email and SMS out of the box
  • ChatOps: Slack, Microsoft Teams, Google Chat
  • ITSM & ticketing: ServiceNow, Jira, BMC, GLPI, EasyVista
  • On-call & paging: PagerDuty, Opsgenie, xMatters
  • Webhooks and custom scripts for any other tool
  • Escalation, time periods and dependencies to kill alert storms
  • Open by design: wire up any tool through webhooks or custom scripts

Stream connectors

Stream every metric and event into your wider observability and analytics stack.

  • Grafana, Elasticsearch, Splunk
  • Apache Kafka and data lakes
  • InfluxDB and time-series back-ends
  • Real-time forwarding of metrics and events
  • Open, Lua-based Stream Connector API to write your own

Architecture & scale

One product, from 50 to over 100,000 hosts. You never migrate or change tools: only the architecture adapts, from a single all-in-one server to a fully distributed, highly available deployment.

Check distribution across pollers

Spread the monitoring load over as many pollers as you need.

  • Unlimited pollers, load shared across them
  • Each poller runs its own checks close to the source
  • Collection behind firewalls and on isolated networks
  • Remote sites kept monitored even when the link drops
  • Cross secure zones and DMZs cleanly: Centreon Broker can reverse the flow direction (one-peer-retention) to fit your firewall rules

High availability

No single point of failure across the monitoring chain.

  • Redundant central servers
  • Broker and database redundancy
  • Automatic poller failover
  • Monitoring that stays up when something else goes down

One product, any scale

Grow by adding pollers, never by re-platforming.

  • Single all-in-one server for small estates (≈50 hosts)
  • Distributed multi-poller topology at 100,000+ hosts
  • Same software, same configuration model, same UI
  • No migration, no re-purchase as you grow

Remote Servers

Give a site, region or customer its own autonomous monitoring node, still piloted from the central platform.

  • Local database and web interface for regional autonomy
  • Its own attached pollers for further distribution
  • Keeps operating if the link to the central server drops
  • Ideal for distributed enterprises and MSPs

ACLs & multi-tenancy

One platform, many teams or customers, each seeing strictly its own scope.

  • Access groups by resource, host/service group, menu and action
  • Per-tenant scoping: each customer sees only its own resources
  • Combine with Remote Servers for true MSP multi-tenancy
  • Integrates with LDAP / Active Directory and SAML / SSO

Resilient buffering

No gaps in your time series, even through outages.

  • Local buffering during network outages
  • Automatic replay on reconnection

Secure by design

Monitoring sits at the heart of your infrastructure, so every flow it carries is encrypted, authenticated and auditable end to end.

Encrypted everywhere

TLS on every link, with no plaintext telemetry crossing your network.

  • TLS on every flow: agent to poller, poller to central, central to UI
  • Mutual TLS (mTLS) authentication between components
  • Web interface and REST API served over HTTPS
  • SNMP v3 with authentication and privacy (authPriv)

Authentication & access

Strong identity, least privilege, and full multi-tenant isolation.

  • Local accounts, LDAP / Active Directory, SSO (OpenID Connect, SAML)
  • Multi-factor authentication (MFA)
  • API authentication with tokens (REST API)
  • Fine-grained ACLs and per-tenant scoping
  • Credentials kept in a vault, never in plaintext config

Compliance & audit

Prove what happened, and meet the regulations that apply to you.

  • Audit trail of configuration changes and user actions
  • Engineered for NIS2, DORA and ISO 27001 requirements
  • Sovereign and on-premise deployment options

Protocols & technologies

One collection engine, every standard your stack speaks, from legacy gear to cloud-native.

  • SNMP v1/v2c/v3
  • SNMP Trap
  • OpenTelemetry / OTLP
  • gRPC
  • REST / JSON
  • SSH
  • WMI
  • WS-Management
  • JMX
  • IPMI
  • Redfish
  • SQL (ODBC/JDBC)
  • HTTP / HTTPS
  • ICMP
  • TCP/UDP
  • DNS
  • PromQL
  • Kafka
  • Syslog
  • NetFlow / sFlow / IPFIX
  • SOAP
  • LDAP
  • SFTP
  • NRPE
  • NSClient++

Open by nature, never alone

Every collector, notification channel, event handler and stream connector is open and fully customizable, scriptable down to your most advanced, most specific needs. And before you build anything: check the community. With 700+ connectors, an open-source core and The Watch, the answer is very often already out there.

Vea Centreon en acción

Reserve una demo personalizada con uno de nuestros expertos en monitorización.

Solicitar una demo →