Skip to content

TechDirectArchive

Hands-on IT, Cloud, Security, Veeam & DevOps

  • Home
  • About
  • Advertise With US
  • Reviews
  • Tech News
  • Contact
  • Toggle search form

File Audit: How to install and configure PA File Sight Ultra and PA Endpoints

Posted on 18/11/202030/08/2026 IT Expert By IT Expert No Comments on File Audit: How to install and configure PA File Sight Ultra and PA Endpoints
  1. Home
  2. Reviews
  3. File Audit: How to install and configure PA File Sight Ultra and PA Endpoints
File Sight Ultra installation

PA File Sight Ultra can help monitor log files and alerts you on “read” and “write” changes to files. It also lets you detect log tampering etc. In this guide, I will be discussing how to install, configuring, and using PA File Sight Ultra. For a complete review of this tool, see this guide “File Audit and Monitoring: PA File Sight Ultra review and product details“.

The figure (architectural) below is a typical installation. As you can see from the diagram, Every installation has a monitoring service installed on a Windows Server or Workstation and this service helps in monitoring the drives in the server it is installed on.

Diagram illustrating the PA File Sight monitoring process, showing a user accessing files on a server, which in turn monitors activities by sending alerts, logging access to a database, and generating reports in the Ultra version.

PA File Sight Ultra Satellite Installation

Note: After completing the installation of the PA File Sight Ultra Monitoring Service in part 1, I will proceed to install the File Sight Ultra Satellite on each device (PA EndPoint) in part 2 that I would love to monitor.

Part 1: PA File Sight Ultra Management Server Setup

The PA File Sight Ultra can be downloaded from the following link. Kindly follow through with the steps below as we download and install the file auditing and monitoring software. Furthermore, These steps are really fast and they should not take so long to complete.

Click on the button to download the PA File sight Ultra application. However, it comes with a fully functional 30-day trial period.

PA Endpoints configuration

Moreover, On the security warning window that is promoted, click on “Run” as shown below

PA File Sight Ultra setup

In addition, You will be required to accept the User Account Control as shown below

File auditing software installation

Nonetheless, you will be required to select your desired language. I will be selecting English language.

File Sight Ultra installation

Next, the PA file sight Ultra setup window will be prompted, click on Next as shown below

Consequently, Accept the software license agreement below and Click “Next”. Otherwise, you cannot proceed.

File Sight Ultra installation

Similarly, Browse to your desired location (folder) where you would want the PA File Sight installed. I will choose the default location and then click on Next.

PA Endpoints configuration

I will be installing the following two components, ” The Central Monitoring Service” and “the Console User Interface”.

Remote Server Monitoring Without VPN

Note: The Satellite Monitoring Service option help in monitoring of remote servers even across the Internet without needing a VPN. This is accomplished by installing a Satellite Monitoring Service on additional servers or workstations.

The Satellite will monitor itself (the server it is installed on). Alerts and monitoring data will be sent back to the Central Monitoring Service via SSL-encrypted HTTP.

PA File Sight Ultra setup

By default, all three tasks are selected. The following actions that are checked will be installed. Click on Next to continue.

Installation setup for PA File Sight with options to add a Windows Firewall rule, install the ODBC driver for SQL Server, and create a desktop shortcut.

Nevertheless, Review the settings and if there is anything you do not like, click on “Back” to make the changes. When you are done,
– Click on “Install”.

File auditing software installation

This will continue with the installation of the PA File sight as shown below

PA File Sight Ultra setup
PA Endpoints configuration
File Sight Ultra installation

Therefore, You will be prompted to start your Trail when the installation is complete. Additionally, Select the PA File Sight edition you would love to test (install) and click “Install Trial License.”

File auditing software installation
File Sight Ultra installation

Furthermore, In the next window, you must specify whether you want to start the PA File Sight monitoring service or launch the PA File Sight Console. However, Click on “Finish” to complete the setup.

The PA File Sight will start all services and launch the PA File Sight console because we have selected this option. Moreover, Since I have the PA File Sight monitoring service installed on this server. In addition, I will select the “Local host” option and click on OK

Login interface for PA File Sight Console, version 8.2.1.1, displaying options to connect to a Local or Remote host, with fields for host name, user name, password, and language selection.

You will be prompted with the startup wizard as well. The start Wizard will help you achieve the following and help you setup your first File Sight Monitor very fast.

A computer interface showing a Startup Wizard welcome screen with options for setting a service account, email actions, log file actions, creating a first monitor, and finishing the setup. There are 'Yes' and 'No' buttons for proceeding with the wizard.

Proceed and create a service account in Active Directory. Nonetheless, This will be needed to run PA File Sight Ultra as a service.

Screenshot of the Active Directory Users and Computers interface, showing the Techdirectarchive.local domain with a focus on Managed Service Accounts and highlighting 'PA File Sight' and 'PAsver Monitor'.

Enter the following information as shown below.

A software interface for setting up a service account, including fields for username, password, and domain, with notes and buttons for account considerations and settings.

Therefore, If you have an SMTP Server in your organization, you can enter the value in the field provided. Consequently, Since I currently do not have an SMTP server running in my environment, I will be using the following options.

Similarly, I will check the box close to “send message directly without using the SMTP Server”
– Nevertheless, Click on Test and
– Click on “Ok” to complete the email action setup.

Screenshot of email notification configuration settings with fields for email address, sender address, and SMTP server options.

Configure the log file settings: I will leave all settings as default and click on “OK” to proceed.

Configuration window for a log file, showing options for directory, file name, and settings for file writing frequency and size.

Additionally, you will be asked to enter a path to your local Directory that you wish to watch. Furthermore, Enter the path and click on OK.

Dialog box prompting the user to enter a local directory path with options to confirm or cancel.

How to install the PA File Sight Ultra License

However, To have your server licensed, you will have to click on the “License” menu. Moreover, This will open up the License Management window. Click on the “Add License” button.

Screenshot of the PA File Sight Ultra Console License Management interface, displaying license details, including server and endpoint licenses with trial expiration information. The 'Add License' button is highlighted.

Browse to the location and select the license as shown below. When you are down, click on OK.

File browser window for selecting a license file, with highlighted file 'FileSight_Trial_Key_FAFD7658-F6C6-4E' in the Downloads folder and an 'OK' button at the bottom.

Activation Permission Confirmation

When this step is complete, you will be asked to permit the activation, click on Yes for the activation to take place.

Ensure you have the right license installed and not the PA EndPoint license at this step!

Screenshot of PA File Sight Ultra Console showing the license management window with a message indicating successful license activation.

Part 2: File Sight Ultra Satellite Setup

Now that the management server setup is completed, I will proceed to install the File Sight Ultra Satellite on each device (PA EndPoint) that I would love to monitor. These steps are similar the Central Monitoring Service setup in part 1 above. Only the “Satellite Monitoring Service component” will be installed in this step.

The PA File Sight Ultra can be downloaded from the following link and run the executable. Follow the steps as discussed above.

Installation setup screen for PA File Sight, showing available components with 'Satellite Monitoring Service' selected and highlighted. Includes options for 'Central Monitoring Service' and 'Console User Interface', along with 'Next' button at the bottom.

Next, Install all the additional tasks (components) and click on Next. Finally click on install to install the satellite monitoring service to the EndPoint.

PA File Sight service setup

In the next window, you must specify whether you want to start the PA File Sight monitoring service and configure the PA File Sight Satellite Service. Click on “Finish”

This opens the Configure Satellite Monitoring Service window as shown below. Add the IP address or domain name of the central monitoring server and port number in the Central monitoring service address box. Test the connection to verify connectivity.

User interface for configuring a satellite monitoring service, displaying connection status, server settings, and options to apply settings or exit.

Note: You may need to open firewall ports to allow communication between the servers.

You may need to check on the services to see if it is running. If the satellite service is not running, please start it. Click on Apply Settings, restart the Satellite Service, and click Exit to finish.

Also, when you check on the PA File Sight Ultra Management Server, you will see the connection status.

Screenshot of PA File Sight Ultra Console interface showing server and monitor status with details about 'TECHARCHIVEDC'.

Note: You may need to accept the remote satellite in the central PA File Sight Ultra Management Server by going to Advanced Services, Satellite Services, right-click on the satellite service, and select Accept Satellite. The server will show up under Servers once accepted as shown above.

Part 3: Additional Configuration on the PA File Sight Ultra Management Server

Below are some of the actions that can performed on a PA EndPoint.

A: Add some new monitors. This can be achieved by right-clicking on the Servers/Devices node

Screenshot of PA File Sight Ultra Console interface displaying the 'TECHD' section with options to add a new monitor, delete, and manage settings, along with monitor status counts.

This will open the Add New Monitor window as shown below
– Click on any of the option you wish to. For me I will start with the “File Sight Monitor” and
– Click OK.

User interface for adding a new monitor on computer TECHDA2016, featuring options for Actions Scheduler, Drive Sight, Inventory Collector, and File Sight Monitor, with an OK button highlighted.

Perform the following tasks. More information or guidance on these steps can be found here “File Sight – File Access Monitor“.

For the File Activities, check and uncheck only the part relevant to you.
– Enter the Directory to monitor and
– Set the Monitoring purpose as shown in one of the screenshots below.
– When you are done, navigate to the Copy Detection tab and uncheck both boxes.
– Click on OK and apply the settings.

Screen capture of the File Sight Configuration interface showing options for monitoring directories and events, with a warning message about unspecified monitor purpose.
File Sight Configuration window showing monitoring settings for file activities, including options for auditing file creation, deletion, and other actions.
File Sight Configuration interface showing options for monitoring directories, with settings for file copy detection, alerts, and action setup.

Below are some screenshoot form my environment. I cannot explain everything detail, with the attached PDF, you will be able to explore this powerful tool.

A screenshot of the PA File Sight Ultra Console displaying system information for TECHDA2016, including graphs for hourly alert rate, files accessed per minute, bytes written per minute, and bytes read per minute. The left panel shows server/device navigation.
Screenshot of the PA File Sight Ultra Console showing system activity log with various service statuses and actions, including a sync process.

Part 4: File Sight Endpoint

By itself, the File Sight monitor sees activity on a file server, which includes which users are accessing files, what actions (reading, writing, deleting, etc) they are doing, their IP address, etc. More information can be found on this link.

However, once a file arrives on the client’s computer, the server-based File Sight monitor can’t see what is happening. Is the file being copied to a thumb drive? Opened in Word? Sent via Email? The File Sight Endpoint helps answer those questions.

The File Sight Endpoint performs the following functions:
– Connects to the PA File Sight central service, or to a Satellite service
– Watches files that area accessed from the network, and notes the process that accesses them
– Notes which other files are written by that process
– If a file is read from the network, and then written to disk, it is tagged as a probable copy

A: How to install the File Sight Endpoint

If you have installed the PA File Sight monitoring service and also the PA File Sight Satellite service, you will find the executable program in the following path.

C:\Program Files\PA File Sight\Install\pafsendp.exe
File Explorer window showing the 'Install' directory on Local Disk (C:), highlighting the application file 'pafsendp.exe' with details like date modified and file size.

The File Sight Endpoint executable program (pafsendp.exe) just needs to be copied to a client computer and run with some command-line options to direct it to the server it should connect to. It does not require any additional files.

The copy and execution steps can be done using any techniques or infrastructure that you already use, such as executing a script (command prompt), using a software distribution program, or Microsoft’s Group Policy. I will be using the typical install command for this as shown below. For more information, visit this link.

pafsendp.exe -s -i -host={central server IP}:{central port}
Command Prompt window showing a command to run a program with specified parameters including an IP address and port number.

PA File Sight is Power Admin File Sight settings are so enormous (feature-packed) that I cannot show you everything. If you wish to learn more about this amazing tool, kindly take a look at this official guide. 

I hope you found this blog post helpful. If you have any questions, please let me know in the comment session.

Rate this post

Thank you for reading this post. Kindly share it with others.

  • Share on X (Opens in new window) X
  • Share on Reddit (Opens in new window) Reddit
  • Share on LinkedIn (Opens in new window) LinkedIn
  • Share on Facebook (Opens in new window) Facebook
  • Share on Pinterest (Opens in new window) Pinterest
  • Share on Tumblr (Opens in new window) Tumblr
  • Share on Telegram (Opens in new window) Telegram
  • Share on WhatsApp (Opens in new window) WhatsApp
  • Share on Mastodon (Opens in new window) Mastodon
  • Share on Bluesky (Opens in new window) Bluesky
  • Share on Threads (Opens in new window) Threads
  • Share on Nextdoor (Opens in new window) Nextdoor
Reviews Tags:security, Windows 10

Post navigation

Previous Post: The PA Server Monitor review and product details
Next Post: File Audit and Monitoring: PA File Sight Ultra review and product details

Related Posts

  • Time machine
    How to Backup MacOS to Synology NAS via Time Machine Backup
  • Protecting DS923 NAS
    DSM Security: How to Protect Synology DS923+ NAS Reviews
  • Synology NAS as a Backup Repository for VBR
    Setup DS923+ Synology NAS as a Backup Repository for VBR Reviews
  • Screenshot
    Setup iSCSI Target and Storage LUN on Synology DS923+ for VBR Reviews
  • Object First Appliance unboxing
    Object First OOTBI Appliance Unboxing and Quick Setup Backup
  • Access Synology Remotely
    How to create a Tailscale VPN connection to Synology NAS Backup

More Related Articles

Time machine How to Backup MacOS to Synology NAS via Time Machine Backup
Protecting DS923 NAS DSM Security: How to Protect Synology DS923+ NAS Reviews
Synology NAS as a Backup Repository for VBR Setup DS923+ Synology NAS as a Backup Repository for VBR Reviews
Screenshot Setup iSCSI Target and Storage LUN on Synology DS923+ for VBR Reviews
Object First Appliance unboxing Object First OOTBI Appliance Unboxing and Quick Setup Backup
Access Synology Remotely How to create a Tailscale VPN connection to Synology NAS Backup

Leave a Reply Cancel reply

You must be logged in to post a comment.

Microsoft MVP

VEEAMLEGEND

vexpert-badge-stars-5

Virtual Background

GoogleNews

Categories

veeaam100

Veeam Vanguard

  • Preventing Attacks on Cisco Switches Blog Header
    How to enable ssh via ASDM on Cisco ASA Network | Monitoring
  • removing containers and unused images from Docker synology
    Kill Containers and remove unused images from Docker Correctly Storage
  • drivelock header 002
    The push installation of the agent failed for the computer – Error message (67) The network cannot be found Security | Vulnerability Scans and Assessment
  • image001
    Fix Certificate Error: Unable to access Windows Admin Center from the Web Windows Server
  • Featured image 5
    How to uninstall and prevent the installation of Microsoft Teams on Windows Windows
  • Specifiy the right credential for adding a domain
    Specify user account name when adding a DC to an existing Forest Windows Server
  • Shrink and Compact Virtual Hard Disks
    How to Shrink and Compact Virtual Hard Disks in Hyper-V Virtualization
  • License
    Windows Licensing: How to find your Windows 10 Product key Windows

Subscribe to Blog via Email

Enter your email address to subscribe to this blog and receive notifications of new posts by email.

Join 1,762 other subscribers
  • RSS - Posts
  • RSS - Comments
  • About
  • Authors
  • Write for us
  • Advertise with us
  • General Terms and Conditions
  • Privacy policy
  • Feedly
  • Telegram
  • Youtube
  • Facebook
  • Instagram
  • LinkedIn
  • Tumblr
  • Pinterest
  • Twitter
  • mastodon

Tags

Active Directory Azure Bitlocker Microsoft Windows PowerShell WDS Windows 10 Windows 11 Windows Deployment Services Windows Server 2016

Copyright © 2026 TechDirectArchive

Loading Comments...

You must be logged in to post a comment.