Your network infrastructure is constantly evolving, but is your documentation keeping up? When devices are added, configurations change, or infrastructure drifts from its intended state, the gap between reality and documentation creates serious operational risks.
Network documentation drift isn’t just an inconvenience—it’s a compliance, security, and operational risk. Outdated documentation can lead to security vulnerabilities going unnoticed, compliance failures during audits, and extended incident resolution times when your source of truth can’t be trusted.
NetBox Assurance changes this entire dynamic. Instead of hoping your documentation stays current, Assurance automatically detects when your real-world infrastructure diverges from what’s documented in NetBox—what we call “operational drift.”
NetBox Assurance provides automated operational drift detection by continuously comparing ingested network data against your documented intent in NetBox. Here’s how it works:
The workflow is straightforward: NetBox Discovery is a companion service that provides automated network discovery capabilities. Network data flows into NetBox Enterprise through NetBox Discovery agents, controller integrations, or the Diode API. Assurance immediately compares this data against your existing NetBox documentation and flags any discrepancies as deviations that need your attention.
Before Assurance, keeping network documentation current was manual and error-prone. With Assurance enabled, you get:
NetBox Assurance is available as an add-on component for NetBox Enterprise starting with version 1.10. During installation, your license file determines whether Assurance is enabled. Without Assurance, you’ll have access to Diode, which is fully compatible with NetBox Discovery agents but without the reconciliation workflows.
Already have NetBox Enterprise but don’t have Assurance? Contact NetBox Labs to add Assurance to your existing deployment.
When setting up NetBox Enterprise, you’ll see a configuration screen with available features:
To enable full drift detection capabilities, make sure both components are selected:
Note: If Assurance isn’t licensed, you’ll only see the Diode option, which still provides powerful data ingestion capabilities.
Once NetBox Enterprise deploys, Assurance appears directly in your NetBox navigation sidebar:
Assurance is integrated directly into your NetBox instance—no separate tools or complex integrations needed.
NetBox Assurance works with multiple data sources:
Purpose-built tools that automatically scan your network using SSH, API calls, ping sweeps, and port scanning, then send data directly to NetBox Enterprise.
Note: SNMP support is coming soon to provide even broader device compatibility.
NetBox Discovery can also integrate directly with network controllers and management platforms:
For advanced use cases or custom data sources, you can use the Diode SDKs (available in Python and Go) to build custom integrations. This approach lets you:
Learn more about Diode in the official documentation and introduction blog post. The Diode project is also available for community use.
Once network data flows into NetBox Enterprise, Assurance immediately begins detecting operational drift and presenting actionable insights:
The aggregated view reveals operational trends:
This helps teams prioritize remediation efforts and identify systemic documentation gaps.
Processed deviations move to archived status, creating audit trails for compliance and operational history. Teams can:
Successful drift detection requires establishing team workflows around deviation management. Most organizations develop daily/weekly review cycles where network teams process new deviations, update documentation, and identify automation opportunities.
The goal isn’t just finding drift—it’s building sustainable processes that keep your network documentation trustworthy as your infrastructure evolves.
NetBox Assurance is available as an add-on for NetBox Enterprise. If you already have NetBox Enterprise, contact NetBox Labs about adding Assurance to your deployment.
New to NetBox Enterprise? Learn more about NetBox Enterprise and see how Assurance can transform your network operations alongside other enterprise features.
Important: Even without an Assurance license, NetBox Enterprise includes Diode for powerful data ingestion capabilities. You can send network data to NetBox Enterprise and benefit from automated ingestion workflows—Assurance simply adds the drift detection and management layer on top.