---
title: "Overview"
description: "What Ixolate is, what you need before you start, and which of the three onboarding paths applies to you."
---

> Documentation Index
> Fetch the complete documentation index at: https://docs.ixolate.com/llms.txt
> Use this file to discover all available pages before exploring further.

# Overview

Ixolate is a managed firewall appliance by 8Labs. It runs a hardened, branded firewall platform on your hardware and receives its operating-system and feature updates from the Ixolate subscription repository at `repo.ixolate.com`. Support is tied to the box through an offline support license, not to a phone-home service: the appliance never has to reach anything other than the update repository you configure.

## Three ways to get an Ixolate box

Pick the one that matches where you are today.

<figure style="margin:1.5rem 0">
<svg viewBox="0 0 780 330" role="img" aria-label="Onboarding paths: empty hardware, existing firewall, or an older Ixolate plugin all end at Updates & License" style="width:100%;height:auto;max-width:760px;display:block;margin:0 auto;color:var(--color-foreground, currentColor)" xmlns="http://www.w3.org/2000/svg">
<defs><marker id="ah" markerWidth="10" markerHeight="10" refX="9" refY="5" orient="auto" markerUnits="strokeWidth"><path d="M0,0 L10,5 L0,10 z" fill="currentColor"/></marker></defs>
<rect x="10" y="20" width="230" height="64" rx="10" fill="currentColor" fill-opacity="0" stroke="currentColor" stroke-width="1.5"/>
<text x="125.0" y="47.0" text-anchor="middle" font-size="14" font-weight="600" fill="currentColor" font-family="system-ui, sans-serif">Empty hardware / new VM</text>
<text x="125.0" y="67.0" text-anchor="middle" font-size="11.5" fill="currentColor" fill-opacity="0.7" font-family="system-ui, sans-serif">Ixolate media: ISO, USB, nano</text>
<rect x="10" y="133" width="230" height="64" rx="10" fill="currentColor" fill-opacity="0" stroke="currentColor" stroke-width="1.5"/>
<text x="125.0" y="160.0" text-anchor="middle" font-size="14" font-weight="600" fill="currentColor" font-family="system-ui, sans-serif">Firewall already running</text>
<text x="125.0" y="180.0" text-anchor="middle" font-size="11.5" fill="currentColor" fill-opacity="0.7" font-family="system-ui, sans-serif">supported series, converted in place</text>
<rect x="10" y="246" width="230" height="64" rx="10" fill="currentColor" fill-opacity="0" stroke="currentColor" stroke-width="1.5"/>
<text x="125.0" y="273.0" text-anchor="middle" font-size="14" font-weight="600" fill="currentColor" font-family="system-ui, sans-serif">Ixolate box, older plugin</text>
<text x="125.0" y="293.0" text-anchor="middle" font-size="11.5" fill="currentColor" fill-opacity="0.7" font-family="system-ui, sans-serif">release 4.x</text>
<rect x="300" y="20" width="200" height="64" rx="10" fill="currentColor" fill-opacity="0" stroke="currentColor" stroke-width="1.5"/>
<text x="400.0" y="47.0" text-anchor="middle" font-size="14" font-weight="600" fill="currentColor" font-family="system-ui, sans-serif">Clean install</text>
<text x="400.0" y="67.0" text-anchor="middle" font-size="11.5" fill="currentColor" fill-opacity="0.7" font-family="system-ui, sans-serif">installer, then boot from disk</text>
<rect x="300" y="133" width="200" height="64" rx="10" fill="currentColor" fill-opacity="0" stroke="currentColor" stroke-width="1.5"/>
<text x="400.0" y="160.0" text-anchor="middle" font-size="14" font-weight="600" fill="currentColor" font-family="system-ui, sans-serif">Convert</text>
<text x="400.0" y="180.0" text-anchor="middle" font-size="11.5" fill="currentColor" fill-opacity="0.7" font-family="system-ui, sans-serif">one package install</text>
<rect x="300" y="246" width="200" height="64" rx="10" fill="currentColor" fill-opacity="0" stroke="currentColor" stroke-width="1.5"/>
<text x="400.0" y="273.0" text-anchor="middle" font-size="14" font-weight="600" fill="currentColor" font-family="system-ui, sans-serif">Update plugin</text>
<text x="400.0" y="293.0" text-anchor="middle" font-size="11.5" fill="currentColor" fill-opacity="0.7" font-family="system-ui, sans-serif">pkg upgrade</text>
<rect x="560" y="118" width="210" height="94" rx="10" fill="currentColor" fill-opacity="0.08" stroke="currentColor" stroke-width="1.5"/>
<text x="665.0" y="160.0" text-anchor="middle" font-size="14" font-weight="600" fill="currentColor" font-family="system-ui, sans-serif">Updates &amp; License</text>
<text x="665.0" y="180.0" text-anchor="middle" font-size="11.5" fill="currentColor" fill-opacity="0.7" font-family="system-ui, sans-serif">subscription key</text>
<text x="665" y="192" text-anchor="middle" font-size="11.5" fill="currentColor" fill-opacity="0.7" font-family="system-ui, sans-serif">support license (optional)</text>
<line x1="240" y1="52" x2="300" y2="52" stroke="currentColor" stroke-width="1.5" marker-end="url(#ah)"/>
<line x1="240" y1="165" x2="300" y2="165" stroke="currentColor" stroke-width="1.5" marker-end="url(#ah)"/>
<line x1="240" y1="278" x2="300" y2="278" stroke="currentColor" stroke-width="1.5" marker-end="url(#ah)"/>
<line x1="500" y1="52" x2="560" y2="140" stroke="currentColor" stroke-width="1.5" marker-end="url(#ah)"/>
<line x1="500" y1="165" x2="560" y2="165" stroke="currentColor" stroke-width="1.5" marker-end="url(#ah)"/>
<line x1="500" y1="278" x2="560" y2="190" stroke="currentColor" stroke-width="1.5" marker-end="url(#ah)"/>
</svg>
<figcaption style="text-align:center;font-size:0.85rem;opacity:0.7">Three ways in, one destination.</figcaption>
</figure>

| You have | Go to |
|---|---|
| Empty hardware or a fresh virtual machine | [Clean install from media](/get-started/clean-install) |
| A firewall already running a supported series that you want to bring under Ixolate | [Convert an existing firewall](/get-started/convert-existing) |
| An Ixolate box with an older plugin release | [Update the Ixolate plugin](/get-started/upgrade-plugin) |

All three paths end at the same place: [Updates & License](/get-started/updates-and-license), where you enter the subscription key and, optionally, the support license.

## What you need

- **A subscription key** for the update repository. 8Labs issues one per appliance. Without it the box runs normally but stays on a frozen package tree and receives no operating-system updates ("no-subscription" mode).
- **A support license** (optional). It is bound to the hardware ID of the box and unlocks support entitlement, not features. Every feature can be switched on by any administrator.
- **Network access to `repo.ixolate.com`** over HTTPS (port 443) for updates. Everything else, including the optional feature catalogue, is shipped on the installation media so an appliance without an uplink can still be configured.

## Where things live

| Task | Menu |
|---|---|
| Subscription key, updates, support license, hardware ID | **System › Updates & License** |
| Optional features (packages shipped on the media) | **System › Updates & License › Optional Features** |
| Theme and general settings | **System › Settings › General** |
| Console menu (password reset, interface addresses, shell) | serial or VGA console, login as `root` |

Menu items that would let an operator leave the managed update path (stock firmware page, snapshots, factory defaults, help links) are hidden by design. Anything you cannot find in the menu is either covered in this documentation or handled by support.

## Getting help

Write to **info@ixolate.com** with the hardware ID from **System › Updates & License** and the output of **System › Diagnostics › Activity** if the question is about performance. Include the appliance model and the version shown on the dashboard.

Source: https://docs.ixolate.com/get-started/index.mdx
