Warden for Linux

Host enforcement you can inspect and reverse

Warden observes supported service logs, evaluates local policy, and applies time-bounded firewall decisions. Health checks, explanations, expiry, and recovery remain available on the server.

Native packages are undergoing supported-installation testing. XDP is experimental and is not part of the current product promise.

Designed for operators without a security team

Local diagnosis

Run warden doctor to verify configuration, daemon health, and the selected actuator without changing firewall state.

Expiring decisions

Automatic expiry limits the damage from an incorrect decision or an unavailable controller.

Visible recovery

Inspect, allow, pause, and undo decisions locally rather than searching for an opaque remote rule.

Native-package direction

Debian, RPM, and APK assets are being validated as complete installation and removal paths.

A progressive installation

Installation should produce evidence before it produces firewall changes. Warden starts with diagnosis and observation, then lets the operator choose an actuator and enforcement policy.

  1. 01Install the supported package
  2. 02Run warden doctor
  3. 03Observe service evidence
  4. 04Preview recommended decisions
  5. 05Enable nftables enforcement
  6. 06Confirm expiry and undo locally