NMIS opModule, Configuration Management & Compliance Automation
opConfig product icon

opConfig

Stop Configuration Drift Before It Causes Outages, Automated Compliance Across Every Device

opConfig gives network, security, and compliance teams a versioned backup of every device configuration, field-level change detection, and continuous validation against compliance policies. New in 4.8: graphical File Integrity Monitoring and NTC template support for precision change detection, no scripting required.

Architecture

opConfig Architecture

Configuration collection, versioning, and compliance enforcement, from network devices through to reporting.

opConfig Architecture Diagram

Capabilities

Full Configuration Lifecycle: Backup, Change Detection, Compliance Enforcement, and Automated Remediation

From backup to compliance, opConfig manages the full configuration lifecycle across multi-vendor networks. Three core areas: configuration management and change detection, compliance, and Virtual Operator.

Automated Configuration Backup & Full Version History, Instant Rollback Reference

Back up device configurations on a schedule. Every version is stored, searchable, and tied to the device record, giving you a complete history of every change.

Field-Level Change Detection

NTC template processing parses device output into structured fields. Detect change on the values that matter, ignoring dynamic output like timestamps that used to fire false positives.

Compliance Policy Enforcement

Define what good looks like and validate every device against it on a schedule. Catch drift, missing security settings, and non-compliant configurations before they become audit findings.

File Integrity Monitoring

Configure FIM command sets through a graphical interface in opConfig. New in 4.8, the FIM GUI removes the need for manual scripting and shortens the path to a deployed FIM policy.

Virtual Operator

Automate the execution of commands and command sets across devices, on a schedule or on demand. Run troubleshooting workflows, log collection, and service ticket actions without giving staff direct device access.

Side-by-Side Diff Comparison

Compare any two configuration versions with a visual diff. See what changed between backups, deployments, or arbitrary dates, with one click to revert reference state.

Multi-Vendor Device Support

Manage configurations from Cisco, Juniper, Arista, Fortinet, Palo Alto, and hundreds of other vendors through a single interface with extensible command sets and custom SCP flag support.

Consolidated Change Events

Multiple report-change events on the same node are combined into one. Less alert noise, clearer signal for the operations team, easier triage at scale.

What's new

opConfig 4.8 release highlights

Available from 1 May 2026. Three changes worth knowing about.

File Integrity Monitoring, made accessible

A new graphical interface for configuring FIM command sets, in opConfig under System, Manage Command Sets. Set up File Integrity Monitoring without manual scripting.

Field-level change detection

NTC template processing parses command output into structured fields. Detect change on the values that matter for compliance, and stop chasing false positives from dynamic output like timestamps.

Cleaner operational signal

Multiple report-change events on a single node are now consolidated. Custom SCP flag support, including auto-ignore of -O on unsupported systems, broadens connectivity across diverse device fleets.

NMIS Ecosystem

How opConfig integrates with NMIS

NMIS Device Context

opConfig inherits device inventory, grouping, and health status from NMIS. Any device NMIS knows about is available for configuration management, with no duplicate inventory.

Configuration Change Correlation, Was That Outage Caused by a Config Change? Know in Seconds.

When opConfig detects a change, opEvents can correlate it with network faults on the same timeline. Was that outage caused by a config change? You can answer in seconds.

Virtual Operator

Run command sets across devices on a schedule or on demand, from inside the opConfig UI. Output flows back into the same dashboard your operations team already uses.

Built For Your Team

Who uses opConfig

Network Engineers

Configuration confidence at scale

A versioned, searchable archive of every device configuration, with field-level diff and instant rollback reference. Useful whether you manage hundreds of devices or thousands.

  • Field-level change detection
  • Searchable configuration archive
  • Multi-vendor command sets
Security & Compliance

Compliance Evidence for Every Device, Captured Continuously. Prove It the Moment You're Asked.

Define configuration policy and validate every device against it continuously. Get audit-ready evidence that your environment meets internal and regulatory requirements.

  • Policy-based compliance checks
  • File Integrity Monitoring
  • Audit-ready change history
NOC Automation

Execute Configuration Changes Across Thousands of Devices Without Manual Scripting

Virtual Operator lets the NOC execute approved troubleshooting and log-collection workflows across the fleet, on a schedule or on demand, without direct device credentials.

  • Scheduled and on-demand jobs
  • Service ticket automation
  • Centralised dashboard view
Managed Service Providers

Compliance evidence per customer

Manage configuration, change detection, and compliance across many customer estates from one console. Consolidated change events keep alert volume sane at scale.

  • Multi-tenant configuration management
  • Per-customer compliance reporting
  • Reduced alert noise at scale

Automate Configuration Compliance and Stop Drift From Day One, Free Download

opConfig is included in the FirstWave VM alongside NMIS and other commercial opModules. Free download, full feature set on small networks.

opConfig is a commercial module for NMIS.