Volver a la wiki

The Local Agent

What it is

The Local Agent (CreaRackAgent.exe) is a small Windows program that runs on a PC inside your network. It acts as the bridge between CreaRack and your devices.

CreaRack is a cloud SaaS. Its servers live on the internet and cannot reach private IPs like 192.168.x.x or 10.x.x.x. The Agent solves this: it runs inside your network, where those IPs are reachable, and relays SSH sessions, SFTP transfers, device discovery, and monitoring on CreaRack’s behalf.

Internet                         Your local network
CreaRack SaaS  <-- WebSocket --> Local Agent (PC, 127.0.0.1:5050) <-- SSH/SNMP --> Devices

The Agent listens only on 127.0.0.1:5050 (IPv4 loopback). No other machine on your network can talk to it. Its local API requires a Bearer token that CreaRack hands to your browser session automatically — you never manage it. SSH credentials are never sent by your browser either: the Agent fetches them server-side, by device ID, over its own authenticated channel. This is also why the Agent’s network tools (ping, port check, discovery…) are used from inside CreaRack, not from the Agent’s own local page: CreaRack is the one that injects the credential.

Where to install it

Because your browser only talks to the Agent on the same computer it is running on, where you install it depends on what you need:

A healthy setup: one Agent on an always-on machine for monitoring, plus an Agent on each admin’s PC for discovery and terminal work.

CreaRack shows you this guidance in the app too: clicking Download Agent (in the Terminal sidebar, in the CONFIGURATION → Local Agent menu, or via the Install Guide button in the Agent Fleet Manager) opens a short Where to Install It panel with the download button inside — so the choice of machine is made before the installer lands.

When you enable 24/7 Sentinel monitoring, CreaRack checks the Agent that will run it and warns you in the confirmation dialog if the machine looks unsuitable — so you can move monitoring to an always-on machine first:

How to install and activate it

  1. Open Terminal and click Download Agent in the Terminal Tools section of the sidebar.
  2. Run CreaRackAgent-Setup.exe. It is a standard Windows installer: a short wizard confirms and installs to %APPDATA%\CreaRackAgent for your user only (no administrator rights needed), adds a Start Menu shortcut, registers the crearack:// protocol, sets the Agent to start automatically with Windows, and launches it.
  3. The first time you open a session against a private IP without a running Agent, CreaRack shows the CreaRack Local Bridge modal. Click Activate Bridge: CreaRack tries to wake an installed Agent, and downloads the installer if none responds. Open the downloaded file and the modal confirms with Bridge Established!.

The Agent then links to your CreaRack account and keeps itself authenticated. Tokens renew automatically — no maintenance needed, even after weekends or vacations.

Your browser will ask for permission. Modern browsers (Chrome, Edge) protect access from websites to programs running on your device. The first time CreaRack talks to your Agent, the browser shows a prompt asking to “access other apps and services on this device” — that is CreaRack reaching the Agent you just installed, and it is safe. Click Allow. A blue notice from CreaRack explains the prompt right before it appears.

How to check its status

Go to Observatory and find the Agent Fleet widget. It shows every Agent in your organization with its hostname, role, version, local IP address, Sentinel state, and last-seen time.

Each Agent also reports its own footprint: the CPU and RAM the Agent process itself is using, the size of its local metrics database, and whether any metrics are still waiting to sync to CreaRack. You can see it in three places — the Footprint column of the Fleet Manager, the Agent card in Observatory, and a small status line at the bottom of the CreaRack home page (for example: Local Agent · OFFICE-PC: 0.3% CPU · 48 MB RAM · synced). Besides showing how light the Agent really is, this doubles as an early warning: metrics piling up unsynced usually mean the Agent is having trouble reaching CreaRack. Agents on older versions simply don’t show these figures — nothing breaks.

You can also open http://127.0.0.1:5050 in your browser. The Agent’s local dashboard has a Status tab (version, uptime, sessions, SNMP traps) and a Debug tab (live logs), plus footer links to the Metrics UI maintenance page and the bundled licenses. Network tools (ping, port check, discovery…) are used from inside CreaRack — see What it is above.

How Primary failover works

If you install Agents at several sites, CreaRack manages them as a fleet:

The first Agent to connect becomes Primary. If the Primary goes offline, a Secondary is promoted automatically and monitoring continues. If there are no Secondaries left, monitoring stops until an Agent comes back — which is why the Primary belongs on a machine that stays on. You can also force a change: in the Agent Fleet widget, click Promote on a Secondary or Demote on the Primary. Offline Agents show a Delete button to remove them from the fleet.

Deleting an Agent revokes it. From v1.95.0, removing an Agent from the fleet also invalidates its credentials immediately: that machine can no longer read your device passwords or send data, even if the program is still installed on it. This is the action to take if a machine is lost, stolen, or decommissioned — you do not need to change anything else. (Adding an Agent works the other way round: issuing new Agent credentials requires fleet administrator rights, so a read-only account cannot register one.)

Revoking without deleting. From v1.98.0 there is a middle ground: the Revoke button next to each Agent invalidates all its credentials on the spot but keeps the Agent in the fleet — configuration, role and history intact, just frozen. Its automatic re-pairing is blocked too, so a stolen credential cannot be used to sneak back in. When you want that machine back, click Re-authorize on the same row: the Agent’s own re-pairing works again and it reconnects with fresh credentials on its own. Use Revoke when a machine is temporarily out of your control (a repair shop, a machine you are not sure about); use Delete when it is gone for good.

How to uninstall it

Two ways, both complete:

Either way removes the program, the Start Menu shortcut, the startup task, and the stored tokens from that PC.

Troubleshooting

More cases in [[crearack—terminal—troubleshooting-terminal]].

Véase también

Subir