First Endpoint Setup & Registration

Edit Article

How device identity tokens, DPAPI encryption, and initial policy synchronization work.

Sentinel Operations Team
4 min read
Updated August 28, 2026
v3.2

When Sentinel starts on a computer for the first time, it performs an automated initial handshake with the server to establish a cryptographic device identity.

The 3-Step Device Registration Process

1

Hardware Fingerprint Generation

The agent inspects the local motherboard UUID, disk serial number, and MAC address to create a tamper-proof hardware fingerprint.

2

DPAPI Token Encryption

Upon server approval, the server returns an encrypted device session token stored securely at "C:\ProgramData\Sentinel\registration.dat" using Windows Data Protection API (DPAPI).

3

Policy Pull & Immediate Heartbeat

The agent pulls the latest assigned monitoring policy and immediately sends its first heartbeat containing OS build, logged-in user, and hardware specs.

Tags:#Device Registration#DPAPI#Security

Was this documentation page helpful?

Your technician feedback helps our team continuously improve Sentinel guides.