OPNMGR: install and first setup
For the administrator who installs OPNMGR (OPNManager), MSP Zero's self-hosted OPNsense fleet manager: what it needs, the manual install from the README, the master key that encrypts secrets, staff roles and two-factor authentication, agent authentication modes, building and hosting the agent package, enrolling a first firewall with the command from the Settings page, the first configuration (alert evaluator, baselines, rings) and upgrading safely.
- Level
- Advanced
- Length
- About 50 minutes
- Contents
- 3 lessons · 1 video · final exam
- Status
- Published · updated 2 Oct 2026
- OPNMGR · open source
Skills you'll practise
- Check a server against OPNMGR's documented requirements and install the manager in the README's order
- Generate, protect and back up OPNMGR_MASTER_KEY and explain what losing or changing it does
- Assign Administrator, Technician and Read Only roles and enforce two-factor authentication for administrators
- Choose the agent_auth_mode that fits the fleet's state without refusing check-ins
- Build the agent package and enrol a test firewall using the install command from the Settings page
- Plan an upgrade: read the changelog, back up, pull, install dependencies and run migrations
Course outline
- 1.OPNMGR: install and first setupVideo · 2 min
- 2.What OPNMGR is and installing the managerLesson · 17 min
- 3.Securing access: roles, two-factor and agent authenticationLesson · 15 min
- 4.Agent package, first firewall and keeping it updatedLesson · 18 min
- 5.OPNMGR: install and first setup: knowledge checkKnowledge check · 15 questions
- 6.Final exam8 questions · passing it completes the course, so people who already know the material can test out
Sources it draws on
The lessons and questions are written from these references, so learners can go back to the original.
- OPNMGR README: quick start, compatibility, known limitations, upgrading
- OPNMGR SECURITY.md: agent authentication, secrets at rest, roles, sessions, hardening, AI redaction, audit log
- OPNMGR docs/UPGRADING.md: upgrading the server and the agent fleet
- OPNMGR CHANGELOG.md: incidents, drift, rings, restore safety, two-factor, reinstall command
- OPNMGR .env.example: configuration template
- MSP Zero: OPNMGR tool page (first deployment, know before you deploy)
- MSP Zero: Self-hosting (what you take on, the path to a first install)
- OPNsense documentation: Updates
See it with your own jobs and topics
Tell us about your team and we'll walk you through setup, from choosing jobs to your first skills check.