Security dashboard
Live appliance health, network visibility, and enforcement status.
Blocking rule sets
Predefined categories enforced across DNS, QUIC and bypass controls.
Network interfaces
Current kernel link and address state
Recent devices
Latest observed clients
Protection state
Current operating mode
Connected devices
Devices learned from IPv4 ARP and IPv6 neighbour tables.
| Device | IP address | MAC address | Interface | State | Last seen | Actions |
|---|---|---|---|---|---|---|
| Loading devices— | ||||||
Device blocking
Block a client by MAC address, IP address, hostname, or device group.
Blocking rules
Enabled rules compile into nftables candidates
Device groups
Apply one rule to multiple identities
Time-based schedules
A blocking rule with a schedule only applies inside its window.
Network
Adapters, roles, DHCP and network service objects.
Banner
Choose what the banner shows between the greeting and the clock.
Adapters
Assign each adapter a role. The internet side (WAN) gets its address from your router; the client side (LAN) keeps a fixed address so this appliance can serve DHCP and DNS. Renaming is per adapter.
Basic settings
WAN/LAN roles, who may manage the appliance, NAT and the safety-timer window.
Appliance identity
Rename the appliance itself.
DHCP settings
Addresses handed to client devices. The interface follows the LAN adapter automatically.
Leases
Devices that received an address from this appliance.
Reservations
Fixed addresses for specific devices.
DNS records
Local names resolved by this appliance.
Port forwards
Published services reachable from the internet side.
Audit log
Administrator, licensing, and deployment activity.
| Time | Action | Resource | Actor | Outcome |
|---|---|---|---|---|
| Loading events— | ||||
Choose your deployment architecture
Select how this appliance connects to your network.
- 1 — Setup type
- 2 — Plug-in points
- 3 — Addresses
- 4 — Confirmations
- 5 — Review
Which network adapter goes where?
Plug one adapter into the side that reaches your internet router (WAN) and the other into the side that reaches your client devices (LAN). Then select them below — the labels you set on the Interfaces page appear here too.