Xen · Platform
Frabs for Xen
On a Xen host, Frabs lists the running domains and watches each VM's virtual interface.

Xen
- Protects
- Xen virtual machines
- Recognised by
- The xen-utils or xen-hypervisor packages
- Watches
- vif<domid>.<n>
- Panel links
- Not needed
How it works
How Frabs works on Xen
- 01
Install
One command as root on the server. It reads the setup without changing anything.
- 02
Recognise Xen
The xen-utils or xen-hypervisor packages tells the sensor which platform it is on.
- 03
Find every guest
xl list for each running domain.
- 04
You confirm
You review what it will watch. Protection starts within 30 seconds of confirming.
Networking
What it watches, and what it leaves alone
vif<domid>.<n>
One per VM network device
Bridges. The bridges your VMs attach to, such as xenbr0.
How traffic is counted. A Frabs-only nftables table on each guest interface. Your own firewall rules and the host's interfaces are not touched, and nothing changes until a rule or a person acts.
An example plan
Get started
Install on Xen
On the server, as root
curl -fsSL https://install.frabs.net | sh -s -- --token frb_...
- Install on each Xen host (dom0)
- Read the Install Guide
Questions
Is anything installed inside the VMs?
Does Frabs change my bridges or firewall?
What happens if I add a bridge or move guests?
What if the sensor stops?
Also supported