RADIUS integration
Connect FreeRADIUS authentication to MFA and configurable identity backends.
OPEN SOURCE / v1.1.4
RADIUS authentication infrastructure for the networks you already operate.
Bring VPN access, identity providers, MFA, and daily operations together in one open-source service.
ONE POLICY POINT
Through FreeRADIUS, RoXX connects RADIUS clients to identity sources, adds multi-factor checks, and gives operators a web console for configuration, users, logs, and service health.
ARCHITECTURE
FreeRADIUS receives network requests; RoXX provides authentication integration and administration behind it.
Admin portal
Manage operators, providers,
tokens, and logs through the web interface.
Service operations
Readiness, liveness,
metrics, rotating logs, and audit export support deployment.
CAPABILITIES
Connect FreeRADIUS authentication to MFA and configurable identity backends.
Connect LDAP and Active Directory, SAML 2.0, Entra ID, and supported external providers.
Offer TOTP, WebAuthn, and configured push or SMS gateway integrations.
Manage users and roles, inspect logs, and configure providers from the admin portal.
Use the NPS migration assistant and FreeRADIUS integration guidance.
Use health probes, Prometheus metrics, rotating logs, and JSONL audit export.
DEPLOY
Release assets are built and smoke-checked on their target platforms. Verify the published SHA256 file before installation.
WINDOWS / SINGLE APPLICATION
Download the executable directly or use the archive with PowerShell install, upgrade, and uninstall scripts.
.\roxx.exe setup
.\roxx.exe server
LINUX / STANDALONE OR PACKAGES
Use the standalone x86_64 executable, the Debian package, or the RPM package. Packages include a systemd unit.
chmod +x roxx-linux-x86_64
./roxx-linux-x86_64 setup
./roxx-linux-x86_64 server
MACOS / APPLE SILICON
Check the release asset name for its architecture. Current tagged builds target the architecture of the GitHub macOS runner.
chmod +x roxx-macos-arm64
./roxx-macos-arm64 setup
./roxx-macos-arm64 server
OPERATOR GUIDE
Start with the short path below, then use the maintained guides for production detail.
Run roxx setup or the equivalent command for your
downloaded application. Setup generates a unique initial
administrator password under ROXX_CONFIG_DIR.
Sign in over HTTPS, change the initial password, then configure identity providers, RADIUS backends, and MFA for your environment.
Deployment guide ↗
Use /livez, /readyz, logs, metrics,
and audit export. Back up configuration and data before
upgrades.
OPEN PROJECT
Bug reports, deployment feedback, and focused improvements help shape RoXX.