Autonomous Server Defense

Monarx Sentinel

Real-time network threat detection, monitoring & response. Identify port scans, SYN floods, and suspicious connections instantly.

Monarx Sentinel Dashboard
1s
Update Interval
100+
Capabilities
eBPF
Kernel Access
<15MB
Footprint

Core Capabilities

Everything you need for enterprise-grade server defense, right in your terminal.

Real-Time Monitoring

Monitor all active TCP connections, track states (ESTABLISHED, LISTEN), and view live statistics with 1-second updates.

Threat Detection

Identify SYN floods, port scanning, and high connection counts instantly with automated threshold alerts.

Process Intelligence

Map every connection to a PID and process name. Identify exactly which service is communicating.

Geographic Intel

Automatic GeoIP lookup for every connection. See city, country, and ISP organizations immediately.

Security Scanning

Deep scan mode checks for dangerous open ports, default configurations, and suspicious outbound traffic.

Terminal Dashboard

A rich, interactive CLI dashboard with color-coded states, sortable tables, and real-time alert panels.

Command Line Power

Monarx Sentinel is precise, fast, and scriptable. Designed for DevOps engineers and security analysts who live in the terminal.

monarx-sentinel --monitor
Quick system overview and threat summary
monarx-sentinel --watch
Launch live interactive dashboard
monarx-sentinel --scan --deep
Run comprehensive security vulnerability checks
monarx-sentinel --alerts
View recent security alerts and blocks
user@server: ~
~ monarx-sentinel --scan --deep

Monarx Sentinel Security Scan v1.0.0

----------------------------------------

[+] Checking SSH Configuration... SAFE
[+] Scanning Critical Ports... SAFE
[!] Checking for SYN Floods... WARNING

- Detected abnormally high SYN_RECV count (45)

[+] Analyzing Outbound Traffic... OK

----------------------------------------

Scan Complete: 1 Warning found

Technical Breakdown

Details for the details-obsessed.

Connection Intelligence

  • TCP State Analysis
  • IPv4 & IPv6 Support
  • /proc/net/tcp direct parsing
  • Reverse DNS Resolution

Threat Engine

  • Half-open connection detection
  • Rapid port scan identification
  • Connection exhaustion alerts
  • Botnet activity pattern matching

System Integration

  • Process ID (PID) mapping
  • Executable name resolution
  • Cross-platform (Linux/macOS)
  • Docker container support

Secure Your Infrastructure

Open source, transparent, and powerful. Join the community and start monitoring today.