Install on OPNsense 24.7
Step-by-step install, repo keys, and service validation checks.
Read guide →Documentation
Architecture diagrams, performance notes, and operational runbooks are indexed below. Search anything—from JA4 blocking to TLS proxy tuning—and jump straight to the right guide.
Step-by-step install, repo keys, and service validation checks.
Read guide →Bring-your-own license flow plus offline activation CLI.
Read guide →Run capture diagnostics and packet echo before enabling policies.
Read guide →From NIC rings to writerd queues — every hop explained.
Read guide →Suffix tries, TLS metadata, and synchronous enforcement design.
Read guide →SQLite, Elastic, and Mongo targets with batching semantics.
Read guide →Install Zedmos, license the engine, and verify inline capture in minutes.
Dive into the packet path, DPI layers, and policy runtime internals.
Benchmarks, recommended BIOS flags, and profiling recipes.
Bootstrap production, automate policy delivery, and monitor health.
Control plane RPC, policy exports, and integration blueprints.
Architecture poster
A printable poster that walks through NIC capture, DPI layers, policy evaluation, and writerd persistence without any mystery hops.
Performance methodology
Every throughput, latency, and CPU number published on the landing page is sourced from this methodology. Clone the test harness, capture your own traces, and compare results apples-to-apples.
Deployment playbooks
Use the change templates, GARP checklists, and takeover rehearsals to deploy without packet loss. Each playbook lists owners, timings, and rollback triggers.
Interface prep, takeover plans, and rollback instructions.
Open playbook →Multi-interface flow, takeover lists, and TLS redirect rules.
Open playbook →Metrics endpoints, Prometheus exporters, and alerting hooks.
Open playbook →Release notes
Need a human?
Whether you are planning a migration or debugging a policy edge case, you can escalate straight to the people who build and run Zedmos.