Networking NVIDIA UFM XDR/Cyber-AI Appliance Software User Manual

Cyber-AI System Plugin

Introduction

NVIDIA UFM Cyber‑AI is delivered as a system plugin that is already included with the UFM 4.5 appliance image. The plugin is part of the UFM OS itself; there is no separate installation step required from the user.

Cyber‑AI is license‑driven: when a valid “UFM Cyber AI” license is present, UFM automatically activates the plugin and exposes its views in the UFM web UI within up to 10 minutes. If the license is missing, invalid, or expired, the plugin remains installed but is automatically disabled in the background, also within this 10‑minute synchronization window.

Because Cyber‑AI is a system plugin, its lifecycle is fully managed by UFM. End users cannot manually enable, disable, or otherwise control the plugin via the UI or CLI. A background monitor continuously aligns the plugin state with the license status, ensuring that Cyber‑AI is enabled only when the appropriate license is valid.

When the Cyber‑AI plugin is active, the UFM appliance runs additional Docker containers for the plugin alongside the main UFM container. You can verify this from the command line with 'docker ps ':

CONTAINER ID   IMAGE                           COMMAND                  CREATED        STATUS        PORTS                                             NAMES
e4efc0399d26   mellanox/ufm-enterprise         "/bin/bash /usr/sbin…"   24 hours ago   Up 24 hours                                                     ufm
9b524bd9da46   ufm-plugin-cyberai:2.15.1-1     "/usr/bin/supervisor…"   24 hours ago   Up 24 hours                                                     ufm-plugin-cyberai
6e9fa522f33d   cyberai_web:latest              "/usr/bin/supervisor…"   24 hours ago   Up 24 hours   172.17.0.1:8080->80/tcp,0.0.0.0:8443->443/tcp    cyberai-web

The presence of the ufm-plugin-cyberai and cyberai-web containers indicates that the Cyber‑AI system plugin is active on the appliance.

Once activated, Cyber‑AI also adds new views to the UFM web UI:

  • An Anomaly Analysis page under the Dashboard section

  • A Job Analytics page under the Cyber‑AI menu




Last updated: