On-Premise DLP Deployment — No Cloud, No Vendor Access

Anexet is deployed entirely on-premise: every server component, every database, and every byte of intercepted data lives inside your own infrastructure. There is no cloud relay, no SaaS account, and no telemetry sent outside your network. This is the deployment model for every plan, starting with Standard. Anexet is deployed on-premise; the vendor has no access to your data.

Schedule a Demo
Anexet Administrator Console showing server components and agent management

Your Infrastructure. Your Data. No Exceptions.

Most security tools ask you to trust a third party with your most sensitive data — Anexet does the opposite, keeping everything inside your network from the first install.

Most security tools were built for the cloud era and ask you to trust a third party with your most sensitive data. Anexet takes the opposite approach: install once inside your network, keep everything in-house, and the vendor is simply not in the picture. This matters most in regulated industries — finance, healthcare, government, and defense — where sending intercepted employee communications or confidential documents to an external server is not an acceptable risk.

The on-premise architecture is not a premium option or a custom build. It is the only deployment model Anexet ships in. When you purchase any plan, you receive server software that runs on your own hardware under your own IT team's control. Scinero — the vendor — never sees a single file, message, or policy trigger.

Because the entire system runs inside your infrastructure, it also fits naturally into existing security controls. Your firewall, your SIEM, your access policies, and your backup procedures all apply to Anexet the same way they apply to any internal workload. There are no external dependencies for day-to-day operation once the system is installed.

Why it matters

  • No vendor data access

    Scinero never sees a file, message, or policy trigger from your deployment — the vendor is simply not in the picture after installation.

  • Fits your existing controls

    Your firewall, SIEM, access policies, and backup procedures cover Anexet the same way they cover any internal workload.

  • Included in every plan

    On-premise is not a premium upgrade — it is the only deployment model, available from the Standard plan.

Server Components — All Running on Your Hardware

All server components are installed on your hardware inside your network. None communicate with Scinero servers after installation.

Core infrastructure (Standard+)

  • Central Server

    Standard

    Coordinates all subsystems and serves as the system core.

  • Data Processing Server (Index Server)

    Standard

    Indexes and processes intercepted data for search and analysis.

  • Agents Control Server

    Standard

    Manages endpoint agents and distributes configuration updates.

  • Agents Proxy Server

    Standard

    Relays agent traffic in complex or segmented network topologies.

  • Notification Server

    Standard

    Delivers policy-triggered alerts inside the organization.

  • Reporting Server

    Standard

    Generates and serves reports via the Client Console.

  • Users and Privileges Server

    Standard

    Manages analyst roles and access rights.

Advanced & policy enforcement (Advanced+)

  • Security Policies Server

    Advanced

    Evaluates intercepted data against configured blocking and alert rules.

Extended intelligence (Premium)

  • Investigation Server

    Premium

    Organises incident documents for security team workflows.

  • Image Recognition Server

    Premium

    Runs OCR and seal/stamp detection on intercepted images.

  • Speech Recognition Server

    Premium

    Transcribes intercepted voice traffic to text.

  • Inventory Server

    Premium

    Collects hardware and software inventory from endpoints.

  • Mail Processing Server

    Premium

    Processes SMTP/MAPI traffic at the mail gateway (optional component).

  • ICAP Server

    Premium

    Integrates with your proxy server for web traffic inspection (optional component).

No component calls home. Once deployed, Anexet operates air-gapped from the vendor. Exact component set for your environment is confirmed during the demo.

On-Premise From the Endpoint to the Console

Agents run on Windows, Linux, and macOS workstations and servers, capturing activity locally and sending data to your on-premise servers over the internal network. Remote and home-office endpoints connect via the Agents Proxy Server — all data returns to your infrastructure, not to any Scinero server.

Because every component — agents, servers, database, and consoles — is installed on your own hardware, there is no cloud dependency, no vendor access point, and no per-event or per-GB cloud metering. The entire system is as air-gapped from the vendor as you choose to make it.

Anexet Client Console showing intercepted data search
Anexet Administrator Console showing agent deployment and server status

How On-Premise Deployment Works

Four steps from a clean server to a fully operational, vendor-independent monitoring system.

Server components are installed on your hardware inside your network — Central Server, Index Server, Agents Control Server, and optional components — with no internet connection to Scinero required after installation.

1

Endpoint agents are deployed to workstations and servers (Windows, Linux, macOS) from the Administrator Console via remote push, GPO, or deployment tools; stealth mode and update schedules are configured per agent profile.

2

Intercepted data flows from endpoints to your on-premise servers over the internal network (or via the Agents Proxy Server for remote workers), indexed on your hardware and stored in your PostgreSQL or MS SQL Server database.

3

Security analysts work inside the Client Console — searching intercepted data, running reports, reviewing policy triggers, and managing investigations — entirely within your network.

4

Server components are installed on your hardware inside your network — Central Server, Index Server, Agents Control Server, and optional components — with no internet connection to Scinero required after installation.

1

Endpoint agents are deployed to workstations and servers (Windows, Linux, macOS) from the Administrator Console via remote push, GPO, or deployment tools; stealth mode and update schedules are configured per agent profile.

2

Intercepted data flows from endpoints to your on-premise servers over the internal network (or via the Agents Proxy Server for remote workers), indexed on your hardware and stored in your PostgreSQL or MS SQL Server database.

3

Security analysts work inside the Client Console — searching intercepted data, running reports, reviewing policy triggers, and managing investigations — entirely within your network.

4

Arrow

On-Premise Deployment by Plan

StandardCore employee activity monitoring.
Network traffic interception
USB control
Printers monitoring
Messengers interception
Browsers interception
and 4 more
Includes:
Anexet Activity
Most popular
AdvancedAdds DLP and deeper visibility.
Standard plan included
DLP features
Network shares monitoring
Keylogger
Webcam pictures
and 4 more
Includes:
Anexet DLP
Anexet Activity
All-in-one
PremiumAll-in-one solution.
Standard + Advanced plans included
Advanced search (digital fingerprints, hash search)
File systems monitoring
User relations analysis
Risk analysis
and 6 more
Includes:
Anexet DLP
Anexet Inventory
Anexet Activity
Anexet Ultimate

Frequently Asked Questions

Common questions about on-premise deployment, vendor access, and system requirements.

What does 'on-premise' mean for Anexet?

It means every server component — the Central Server, Index Server, database, and all optional servers — is installed on hardware inside your organization. There is no cloud relay, no SaaS dashboard hosted by the vendor, and no data that leaves your infrastructure during normal operation. You own the hardware, you control the data.

No. Anexet is deployed on-premise; the vendor has no access to your data. Scinero does not operate any server that receives, stores, or processes data from your deployment. The only external contact after installation is optional: license validation and update downloads, both of which can be managed in air-gapped environments on request.

Windows (XP through 11, Server 2003–2022), Linux (Ubuntu 20.04, Debian 11, Fedora 33, Rosa R12, Astra 1.7, ALT Linux 9.1+, RedOS 7.3+, AlmaLinux 9+), and macOS 11 and above on both x86-64 and ARM64 (Apple Silicon). There are no mobile agents — coverage is limited to desktop and server operating systems.

No. Anexet does not provide mobile agents. Coverage is Windows, Linux, and macOS workstations and servers only.

A 25-user trial configuration requires a server with a 2.2 GHz+ CPU (4 physical / 8 logical cores), 8 GB of RAM, a 1 Gbit network adapter, and RAID storage. Larger deployments scale linearly — 100 users need 6 physical cores and 16 GB of RAM; 500 users need two CPUs (8 physical cores each) and 48 GB of RAM. Storage is calculated as 1.5 GB per user per month for a standard deployment.

On-premise is the deployment model for all plans — Standard, Advanced, and Premium — not a separate tier or add-on. Every Anexet license, starting with Standard, installs entirely on your hardware.

Yes. The endpoint agent communicates with your on-premise servers over the Internet via the Agents Proxy Server. Remote and home-office workstations are covered by the same interception, policies, and reporting as in-office machines. All data returns to your infrastructure, not to any Scinero server.

Three professionals collaborating and looking at a tablet in a meeting

Deploy Securely Inside Your Own Infrastructure

Tell us about your environment — number of endpoints, operating systems, and compliance requirements — and we'll map the right plan and walk you through the deployment.

I accept that my personal data can be processed in accordance with the Privacy Policy