Containers · Platform
Frabs for LXC
On a classic LXC host, Frabs lists the containers and watches each container's veth interface.

LXC
- Protects
- LXC containers
- Recognised by
- The lxc tools, when LXD and Incus are not installed
- Watches
- veth…
- Panel links
- Not needed
How it works
How Frabs works on LXC
- 01
Install
One command as root on the server. It reads the setup without changing anything.
- 02
Recognise LXC
The lxc tools, when LXD and Incus are not installed tells the sensor which platform it is on.
- 03
Find every guest
lxc-ls and lxc-info for each container's interfaces and addresses.
- 04
You confirm
You review what it will watch. Protection starts within 30 seconds of confirming.
Networking
What it watches, and what it leaves alone
veth…
The host side of each container's network device
Bridges. The bridge the containers attach to, such as lxcbr0.
How traffic is counted. A Frabs-only nftables table on each guest interface. Your own firewall rules and the host's interfaces are not touched, and nothing changes until a rule or a person acts.
An example plan
Get started
Install on LXC
On the server, as root
curl -fsSL https://install.frabs.net | sh -s -- --token frb_...
- Nothing runs inside the containers
- Read the Install Guide
Questions
Is anything installed inside the containers?
Does Frabs change my bridges or firewall?
What happens if I add a bridge or move guests?
What if the sensor stops?
Also supported