KVM · Platform
Frabs for libvirt / KVM
For plain KVM hosts and panels built on libvirt, Frabs reads the VMs over a read-only libvirt connection.

libvirt / KVM
- Protects
- KVM virtual machines managed by libvirt
- Recognised by
- The libvirt daemon, when no hosting panel is found
- Watches
- vnet<n>
- Panel links
- Not needed
How it works
How Frabs works on libvirt / KVM
- 01
Install
One command as root on the server. It reads the setup without changing anything.
- 02
Recognise libvirt / KVM
The libvirt daemon, when no hosting panel is found tells the sensor which platform it is on.
- 03
Find every guest
A read-only libvirt connection: virsh list, domstate and domiflist.
- 04
You confirm
You review what it will watch. Protection starts within 30 seconds of confirming.
Networking
What it watches, and what it leaves alone
vnet<n>
libvirt's default naming for VM interfaces
Bridges. The Linux bridges or networks your VMs use. Bridges with no VMs are left alone.
How traffic is counted. A Frabs-only nftables table on each guest interface. Your own firewall rules and the host's interfaces are not touched, and nothing changes until a rule or a person acts.
An example plan
Get started
Install on libvirt / KVM
On the server, as root
curl -fsSL https://install.frabs.net | sh -s -- --token frb_...
- Open vSwitch is supported; the review screen asks you to check every VM port is listed
- Read the Install Guide
Questions
Is anything installed inside the VMs?
Does Frabs change my bridges or firewall?
What happens if I add a bridge or move guests?
What if the sensor stops?
Also supported