MSP AutoTriage Engine

MSP AutoTriage Engine — sign in to continue.

SimFictional data
4Demo roles
0Prod systems

Sign in

Accounts are provisioned by an administrator. No self-registration.

Invalid email or password. Try a demo account below.
Email
Password
Verifying credentials…

Prototype accounts — click to fill and sign in

Session expiring

You've been idle. For security this session ends automatically in 15s.

Sign out?

Unsaved filter selections will be cleared. You'll return to the sign-in screen.

Incident Queue
MTTR: 5.4h (↓ from 11.2h) Loading
??
Switch role (demo)
🚨 Open Incidents
38
12 critical
🤖 Auto-Resolved
72%
▲ 28% baseline
⏱ Avg MTTR
5.4h
▼ from 11.2h
🏦 Clients
14
2 SLA breach risk
💸 Labor Saved
$42K
This month
Active Incidents
Ticket IDClientIssueSeverityAgeSLA StatusStatus
INC-4821Nexus FinancialVPN tunnel down — 12 usersP114mBreachedTriaging
INC-4820Metro LogisticsExchange server disk 92% fullP128mAt RiskRunning Playbook
INC-4819CityHealth ClinicEHR application slow — 3 deptsP245mOn TrackAuto-Resolved
INC-4818Atlas RetailPOS system offline — 4 storesP11h 2mBreachedEscalated
INC-4817Sunrise SchoolWi-Fi AP offline in main buildingP32h 14mOn TrackAuto-Resolved
Triage Console — INC-4821
P1 — 14 min old
Incident Summary
Client
Nexus Financial
Reporter
k.brady@nexus.com
Description
VPN tunnel to Azure AD down. 12 remote users locked out.
SLA Target
P1: 30 min response
Environment
FortiGate 200F / Azure VPN
AI Context Enrichment
[Triage-01] Category: network.vpn, Confidence: 0.96
[Triage-01] Last incident on this device: INC-3842 (2 weeks ago)
[Triage-01] Previous resolution: IKEv2 renegotiation timeout
[pgvector] 3 similar solutions found (cos sim > 0.88)
[Recommend] Ansible playbook: vpn_tunnel_reset_fortinet.yml
Triage Result
Category
network.vpn.tunnel_down
Root Cause (AI)
IKEv2 SA timeout (Phase 2)
Confidence
0.94
Recommended Action
Run Ansible Playbook
HITL Required
No
pgvector Solution Retrieval
Solution IDTitleSimilaritySuccess RateAvg Resolve TimePlaybook
SOL-8421FortiGate IKEv2 Phase 2 SA Reset0.9694%4.2 minvpn_tunnel_reset.yml
SOL-8119Cisco ASA VPN Tunnel Restart0.8891%6.1 mincisco_vpn_restart.yml
SOL-7820Azure VPN Gateway Reset (Portal)0.8478%18 minManual steps
SOL-7410DNS Resolution Fix for VPN Split Tunnel0.8182%8.4 mindns_fix.yml
Auto-Resolution — INC-4821
Running Playbook
Ansible Playbook: vpn_tunnel_reset_fortinet.yml
TASK [Gather FortiGate facts] *************** ok
TASK [Check current IKE SA status] ********** ok → Phase 2: DOWN
TASK [Clear dead SA entries] **************** ok → 3 stale SAs cleared
TASK [Renegotiate IKEv2 Phase 1] ************ running…
TASK [Renegotiate IKEv2 Phase 2] ************ pending…
TASK [Verify tunnel connectivity] *********** pending…
Steps Completed
3 / 6
Elapsed
2m 14s
Expected ETA
4m 00s
Confidence
94%
Escalation Validator — HITL Queue
2 Pending
INC-4818 — POS System Offline (Atlas Retail)
AI Confidence
0.68 (below 0.75 threshold)
Proposed Solution
Restart POS service on 4 store servers
Risk Level
Payment system — requires approval
Reviewer Notes
Client SLA Monitor
ClientSLA TierP1 SLACurrent MTTRBreach Risk %Open P1sStatus
Nexus FinancialPlatinum30 min24 min82%2Breached
Atlas RetailGold1 hour72 min98%1Breached
Metro LogisticsGold1 hour38 min42%1At Risk
CityHealth ClinicSilver4 hours45 min4%1On Track
Sunrise SchoolSilver8 hours2.1h2%0On Track
MTTR Analytics
Current MTTR
5.4h
▼ 52% from 11.2h
Auto-Resolution Rate
72%
▲ 44% improvement
Labor Saved
$42K
This month
HITL Rate
28%
▼ from 100%
Weekly MTTR Trend (hours)
Week 1
11.2h
Week 2
9.4h
Week 3
7.4h
Week 4
6.5h
Week 5
5.6h
Week 6
5.4h
Routing Rules Engine
Active Routing Rules
network.vpn
→ Network-01 agent
server.disk
→ Infrastructure-01
application.ehr
→ Application-01
hardware.pos
→ Hardware-01
confidence < 0.75
→ HITL Escalation
Rule Configuration
Category Prefix
Route To Agent
Confidence Weight
0.8
Agent Activity Log
TimeAgentActionIncidentTool UsedResult
09:14:24Triage-01CategorizeINC-4821pgvector similaritynetwork.vpn 0.96
09:14:22Network-01Run PlaybookINC-4821Ansible TowerRunning
09:12:18Infrastructure-01ResolveINC-4820Disk cleanup scriptResolved
09:10:45Application-01Restart serviceINC-4819PowerShell runbookResolved
09:08:31Triage-01EscalateINC-4818Escalation APIHITL queue
09:05:00Hardware-01DiagnoseINC-4818pgvector searchLow confidence 0.68
Post-Incident Report Generator
INC-4819 — EHR Application Slow — Auto-Generated Summary
Client
CityHealth Clinic
Opened
Jun 22, 09:01:14
Resolved
Jun 22, 09:46:22
MTTR
45 minutes
Root Cause
SQL Server log file 98% full
Resolution
Log rotation + index rebuild
HITL Required
No
Action Items