Skip to main content
rfxn

Documentation

Architecture guides, key concepts, and comprehensive reference documentation for all R-fx Networks Linux security projects. Flagship projects include interactive architecture diagrams and in-depth technical breakdowns sourced from authoritative project READMEs.

3 architecture guides
4 full docs
10 total projects

Flagship Projects

4

Full documentation with architecture diagrams, key concepts, and navigable structured guides sourced from authoritative project READMEs on 2.x branches.

LMDLinux Malware Detect

Order-of-magnitude faster shell-native malware scanning for Linux

Multi-stage detection pipeline with hash-first short-circuiting

5 detection engines · 43x faster · SHA-NI accelerated

APFAdvanced Policy Firewall

iptables-based firewall with intuitive policy syntax

Three-fold filtering with static, stateful, and sanity layers

GeoIP · RAB · Virtual networks · ipset block lists

BFDBrute Force Detection

Modular log parser for blocking authentication attacks

Pressure-based scoring with exponential decay model

57 service rules · 8 firewall backends · Watch mode daemon

System and services monitor for SysVinit systems

Contents

Project Reference

6

Reference documentation generated from project metadata. Full README-based documentation is in progress for these projects.

IRSYNCIncremental Rsync

Snapshot backups with traffic shaping and restore

Incremental Rsync (IRSYNC) is an incremental backup utility built on rsync with integrated Linux traffic control (tc) shaping to regulate bandwidth consumption during transfers.

Automated security hardening for Linux systems

Linux Environment Security (LES) provides an increased level of local environment security with the goal of preventing environment-based attacks.

Detect unauthorized network connections in real time

Linux Socket Monitor (LSM) is a network socket monitor designed to track changes to both network sockets and Unix domain sockets, effectively serving as a port monitor.

Socket inode checks for compromise detection

Network Socket Inode Validation (NSIV) validates network socket inodes to detect security anomalies by correlating processes to their network sockets at the kernel inode level.

Monitor and enforce process resource limits

Process Resource Monitor (PRM) is a CPU, memory, process count, and run time resource monitor for Linux and BSD systems.

SPRISystem Priority

Process priority and scheduling management

System Priority (SPRI) is a tool for managing system process priorities and CPU scheduling on Linux systems.