Security dashboard
Live appliance health, network visibility, and enforcement status.
Blocking rule sets
Predefined categories enforced across DNS, QUIC and bypass controls.
Network interfaces
Current kernel link and address state
Recent devices
Latest observed clients
Protection state
Current operating mode
Connected devices
Devices learned from IPv4 ARP and IPv6 neighbour tables.
| Device | IP address | MAC address | Interface | State | Last seen | Actions |
|---|---|---|---|---|---|---|
| Loading devices— | ||||||
Device blocking
Block a client by MAC address, IP address, hostname, or device group.
Blocking rules
Enabled rules compile into nftables candidates
Device groups
Apply one rule to multiple identities
Time-based schedules
A blocking rule with a schedule only applies inside its window.
Network
Adapters, roles, DHCP and network service objects.
Adapters
Assign each adapter a role. The internet side (WAN) gets its address from your router; the client side (LAN) keeps a fixed address so this appliance can serve DHCP and DNS. Renaming is per adapter.
Appliance identity
Rename the appliance itself.
Kea DHCP
Addresses handed to client devices. The interface follows the LAN adapter automatically.
Network service objects
Fixed addresses, local names and published services.
Audit log
Administrator, licensing, and deployment activity.
| Time | Action | Resource | Actor | Outcome |
|---|---|---|---|---|
| Loading events— | ||||
Choose your deployment architecture
Select how this appliance connects to your network.
- 1 — Setup type
- 2 — Plug-in points
- 3 — Addresses
- 4 — Confirmations
- 5 — Review
Which network adapter goes where?
Plug one adapter into the side that reaches your internet router (WAN) and the other into the side that reaches your client devices (LAN). Then select them below — the labels you set on the Interfaces page appear here too.