Features#
Publishing with the first public release
The reference sections of this manual are complete and generated from the product itself. The capability and operational chapters below are being written for the first public release. Evaluating now? Get in touch.
Explanation, not instruction. These pages describe what a capability does, how it behaves under load and failure, and where its limits are — the context you need to decide whether and how to use something.
Capabilities#
| Area | Covers |
|---|---|
| Subscriber access | PPPoE (1:1 and N:1), IPoE, DHCP, router advertisements, dynamic address pools |
| L2TP and LNS | LAC relay, LNS appliance mode, tunnel policy, proxy-LCP |
| Routing and VRFs | FRR integration, BGP, the VRF model, uRPF |
| CGN / NAT44 | Integrated and standalone roles, pools, port-block allocation, logging |
| QoS and policy | Rate limiting, the dual-rate burst policer, RADIUS-driven service plans |
| AAA | RADIUS and database authentication, CoA and Disconnect, accounting |
| Management and monitoring | CLI, web UI, REST API, SNMP, syslog, alerting |
| Administration and security | Operator authentication, RBAC, packet capture, lawful-intercept readiness |
| Platform and lifecycle | Packaging, deployment, hitless upgrades, licensing |
Running it in production#
Alongside the capability pages, this section carries the material an operator needs when something is wrong — the part that separates a usable manual from a command list:
- Troubleshooting by symptom
- Scale limits, sizing, and the tested NIC/backend matrix
- Compatibility matrix (Debian, FRR, DPDK, browsers, SNMP managers) per release
- Upgrade, downgrade and rollback behaviour, including configuration migration
- Release notes, known issues, and the deprecation policy for commands and configuration keys
- Backup, restore and disaster recovery
- Failure runbooks: data plane unhealthy, licence grace and expiry, FRR faults, RADIUS failures
- Access recovery: certificates, OIDC, TACACS+, passkeys, break-glass local admin
- Security hardening and the RBAC permission reference
- Alarm and log message catalogue
- Support bundles: what they collect and how they are redacted