Firewall, QoS, monitoring and client management in a single Linux system. Install on your server, configure via web panel and take full control of your network - with a lifetime license and support from the system creators.
FiQs is an uncompromising Edge Gateway solution designed for full traffic control at the WAN-LAN boundary. It provides precise access management, advanced bandwidth limits and the highest level of security where your network meets the Internet.
Managing a network with 500+ subscribers?
FiQs replaces five separate tools with a single panel. QoS with four algorithms, automatic blocking, payment gateways, device monitoring and SMS notifications - everything ready from day one.
Need a firewall with QoS without monthly fees?
One-time payment for a lifetime license. Next-gen firewall, DDoS protection, geo-blocking, threat intelligence - and full control over who uses your network and how.
Looking for a proven solution for your clients?
22+ years on the market, 1,500+ deployments, zero negative references. Partner discounts, deployment support and ready ISO images for quick installation on client hardware.
Gain professional control in minutes: download a ready ISO image, install the complete system on your own server and after a quick addressing configuration enjoy Carrier-Grade infrastructure. Choose engineering precision that is ready to operate under full load immediately after launch.
We deliver the system as an optimized ISO image, ready to install on any x86 server or virtual platform. The ideal solution if you want to use your own hardware and maintain full control over the hardware layer. System installation takes just 5–10 minutes. You decide on the CPU power and RAM, scaling them to match your network size.
Software pricing is available in our pricing section.
You receive a dedicated hardware unit with the system factory-installed and preconfigured. A turnkey solution that guarantees 100% hardware compatibility and maximum stability under heavy load. Out of the box - the server is ready to work, and you get full technical support covering both the software layer and the physical device.
Pricing determined individually based on the selected hardware model - contact us.
We deliver an ecosystem of preconfigured services, designed by administrators for administrators. Thanks to years of experience, modules feature factory-optimized parameters for High-Traffic scenarios. A professional Linux router with expert knowledge "built into" the code, eliminating manual configuration and guaranteeing uncompromising stability immediately after installation.
Complete user management system with bandwidth limits, speed bursts, TCP connection control, time-based blocking, P2P detection and resharing protection (TTL).
Graphical interface for managing iptables rules across all tables with stateful packet inspection (SPI) and advanced port forwarding with connection limiting.
Traffic blocking based on 7 threat feeds: Spamhaus, Emerging Threats, FireHOL, AbuseIPDB and more.
Block traffic from selected countries at kernel level. CIDR lists from ipdeny.com with automatic restore scripts.
Protection against DDoS, SYN/ICMP Flood, Ping of Death, port scanning and SPAM. Real-time connection analysis with automatic blocking and logging.
Advanced bandwidth management: 4 algorithms (RTLM, CAKE, HTB, HFSC) with 7 queuing methods (PFIFO, SFQ, FQ_CODEL, SFB, HHF, PIE, iprtlm). Queue on WAN or LAN with IMQ virtual interfaces.
Multi-WAN link monitoring with automatic switching. False-positive protection with configurable thresholds. Email and Telegram alerts.
Monitor routers, switches and servers. Multiple check methods: ping, fping, arping, nmap. Email and Telegram alerts.
Ping, traceroute, DNS lookup, whois, port check, subnet calculator, MAC vendor, nmap scan, tcpdump, LAN scanner.
Integration with Tpay, Przelewy24 and PayU. Automatic client unblocking after payment. Notification system.
Communicate with clients via SMS (SMSAPI, SerwerSMS, SMSPlanet), email with attachments and browser notifications with read confirmation. Individual, group and bulk sending.
Automated backup via cron with delivery to email, FTP and SFTP. AES-256-CBC encryption. Attachment size control.
Built-in DHCP server with multiple address pools, MAC reservations, vendor-class options and lease time management. Network landing page, full integration with firewall and client panel.
Native PPPoE server for Point-to-Point over Ethernet connections. CHAP/PAP authentication, RADIUS support, per-session IP assignment and bandwidth limits.
VLAN management (802.1Q) and IP aliases on interfaces. Tagging, trunking, sub-interfaces and multiple IP addresses per port — all managed from the web panel.
Captive portal for new WiFi clients with network landing page, contact form and WYSIWYG editor. Authorization via SSL form or PPPoE.
Detailed statistics: per-protocol traffic charts (HTTP, SSL, FTP, SMTP, POP3, IMAP, TCP, UDP, ICMP), individual user statistics in 4 time ranges plus CPU, RAM and interface load.
Layer 2 security: MAC security table, ARP binding and access control at the physical address level. Protection against ARP spoofing and unauthorized access.
Dual access: proprietary PHP web panel and system console. Direct code editing for advanced administrators. Integration with PYXIS ISP billing system.
No limits on network interfaces, subnets, VLANs or number of clients. Full root access to Rocky Linux - you can launch and configure any server service. Your server, your rules.
Built-in FTP server for file sharing and downloading/archiving network traffic logs. Web server for hosting websites and web applications. Ready to use right after installation.
Full integration with PYXIS 6 KsEF – an ISP database system with invoicing, subscriber billing and Polish National e-Invoice System (KSeF) support. The i-BOK client portal allows subscribers to independently view invoices, payments and contract details.
FiQs is software that becomes your property forever. The first year of system development and our support is included. We offer transparent terms with no hidden costs - build your network on a stable foundation that doesn't burden your monthly budget.
Single WAN link, ideal for smaller networks
Two WAN links with failover, ISP standard
For demanding networks with full support
Discounts up to 50% and additional bonuses for our returning clients.
Your price is likely much lower than the official price list.
Enter your licence number below to unlock your dedicated offer.
| Feature | 1xWAN | 2xWAN | Enterprise |
|---|---|---|---|
| Lifetime license | ✓ | ✓ | ✓ |
| 1 year of FiQs support and updates | ✓ | ✓ | ✓ |
| Dual management - web panel + CLI with root | ✓ | ✓ | ✓ |
| Traffic statistics and logging | ✓ | ✓ | ✓ |
| Firewall Manager | ✓ | ✓ | ✓ |
| QoS (RTLM, CAKE, HTB, HFSC) | ✓ | ✓ | ✓ |
| Threat Intelligence & DDoS | ✓ | ✓ | ✓ |
| Geo-blocking + IP Blacklist | ✓ | ✓ | ✓ |
| Device monitoring & alerts | ✓ | ✓ | ✓ |
| SMS, Email, notifications | ✓ | ✓ | ✓ |
| Payment gateways | ✓ | ✓ | ✓ |
| Service servers and integrations | ✓ | ✓ | ✓ |
| Backup (Email/FTP/SFTP) | ✓ | ✓ | ✓ |
| WAN interfaces | 1 | 2 | 4 |
| Automatic WAN failover | ✓ | ✓ | |
| Multi-link health checks | ✓ | ✓ | |
| Daily network status reports + remote backup | ✓ | ||
| SLA - Premium response time | ✓ |
Join a community of professionals who chose confidence over compromise. FiQs is a system that grows with your network. Check our references and see for yourself that quality speaks for itself.
Since 2003, we have been delivering proprietary Network Management solutions built on the foundations of Linux systems. As a team of practitioners behind the ININOUT brand (formerly INTRUX), we combine over two decades of server administration experience with a passion for designing secure, fully controlled, high-performance digital infrastructures. We are passionate about in-depth network traffic analysis, treating monitoring and bottleneck detection as a key element of building modern IT security.
Our philosophy is built on three pillars: uncompromising quality of technical solutions, engineering reliability in customer service and an individual approach to every deployment. We believe that in a world of ready-made, closed products, the real advantage comes from open architecture and expert support that allows administrators to maintain full control over their own infrastructure. That is why over 1,500 network administrators across various businesses, institutions and ISPs trust our products.
Our competencies extend beyond FiQs. As a team specializing in network security, we also offer NAC (Network Access Control) and 802.1X authentication deployment services. We partner with NACVIEW from Poznan – the manufacturer of the best Polish NAC system, which provides full control over who and what connects to your network. By combining FiQs with NACVIEW, we deliver a complete security solution: from port-level access control, through traffic management, to threat protection.
The FiQs deployment process was designed to minimize the time from startup to full network operability. You typically receive a ready, optimized ISO image, and the system installation itself takes just 5–10 minutes. No time wasted on manually compiling packages, resolving library dependencies or tedious configuration of low-level system services – everything needed for router and firewall operation is already preconfigured and ready to go.
Right after reboot, you're greeted by an intuitive CLI wizard that guides you through basic interface addressing and software registration in a few steps. Once you have network access, all further management moves to the clear web panel. Because key network services are factory-integrated and tested, you can immediately focus on defining access rules and QoS policies instead of fighting with operating system configuration.
We believe in the quality of FiQs, which is why we offer you complete freedom to test the system in your real environment. You can take advantage of our 30-day satisfaction guarantee – install the software in your network, configure it for your specific needs and test it for a full month. If during that time you decide the system doesn't meet your expectations, we'll refund your money with no questions asked. For those who want to "click around" first, we also provide an interactive online demo of the admin panel.
Importantly, the testing phase isn't just your solo effort. From day one, we provide full technical support and remote assistance. Our engineers will help you with the installation process, resolve any issues with unusual hardware and advise on how to optimally tailor FiQs configuration to your infrastructure's specifics. We want you to purchase a solution that is already fully deployed and battle-tested, not just a "box" with a promise of working.
Hardware: Physical computer, rack server or virtual machine (VM).
RAM: Min. 4 GB (8 GB recommended for high session counts).
Disk space: Min. 100 GB (SSD recommended for fast event logging).
Architecture: The system works in both BIOS and UEFI mode.
Network interfaces: Minimum 2 independent NICs with throughput matching your link speed (1 Gbps or higher). Support for Ethernet (RJ-45) or SFP+ for fiber connections.
Yes. FiQs runs on all popular virtualization platforms: Proxmox, VMware ESXi, XCP-NG, Hyper-V, KVM and other standard-compliant hypervisors. Installation and configuration are identical to bare-metal hardware.
For maximum performance and minimal latency, the system fully supports PCI Passthrough technology. It allows physical network cards to be directly assigned to the virtual machine, bypassing the hypervisor's virtualization layer. This gives FiQs exclusive access to the hardware, eliminating CPU overhead from virtual switch handling and enabling full link throughput utilization (e.g. 10 Gbps and beyond), while maintaining stability comparable to a bare-metal installation.
Our solution is designed for anyone who wants to consciously manage their network – from experienced administrators to those just building their skills. Although FiQs is an advanced tool, you don't need to be an expert from day one.
Who do we invite to work with us?
Education and support is our mission:
For years we've been supporting the administrator community and gladly sharing knowledge. When you choose FiQs, you're not left alone with the terminal:
Don't be afraid to ask. We respond to every email and actively support less experienced colleagues. With our help, you'll quickly feel confident in the world of the Linux console, and your network will gain a professional heart.
Yes. We compile our own Linux kernel and strategic networking software packages responsible for QoS, firewall, routing and PPPoE session handling. This gives us full control over every bit of data flowing through the system.
Unlike solutions based on standard, off-the-shelf distributions, FiQs is optimized to eliminate bottlenecks in the network stack. Custom compilation of key components allows us to apply low-level patches that drastically improve traffic queuing performance and reduce firewall response times. It is this deep hardware-software integration that sets FiQs apart, guaranteeing stability even under extreme load on high-throughput links.
FiQs imposes no artificial licensing restrictions on the number of supported network elements. The system allows any configuration of physical interfaces, IP aliases and an unlimited number of tagged VLAN (802.1Q) ports. The only real limit is CPU processing power and hardware bus throughput.
The system architecture was designed with the most complex ISP topologies in mind. FiQs handles thousands of subnets, advanced multi-level addressing and dynamic virtual interface creation with ease. Whether your network relies on simple routing or a dense structure of isolated segments for business clients, the system ensures full traffic separation and routing table stability at any scale of operation.
Purchasing FiQs is an investment in your network's stability, which is why we offer a lifetime license. The system operates without any time restrictions – after the first year, your infrastructure remains fully functional, and all configured services, routing and firewall rules retain their functionality. We do not use any system "lock-out" mechanisms if a subscription is not renewed.
After the first year, you can optionally extend access to technical support and the latest updates by choosing one of three dedicated plans: Standard, Custom or Premium. If you decide not to renew the subscription, the system will continue to operate at full performance, but you will lose access to security patches and new features, and technical support will automatically switch to the Mini plan. Of course, even in such a case, we don't leave you without help – you can always count on us for contact and basic guidance if questions arise.
Yes. We understand that changing the heart of your network is a critical process, which is why we actively assist with migration from your current solution. Our engineering team conducts a detailed analysis of the existing configuration to precisely transfer what matters most: complex firewall rules, advanced QoS policies, IP addressing and client databases.
We complete most migration processes remotely within a single business day, ensuring that any service interruption is imperceptible to end users. We don't limit ourselves to simply copying settings – during configuration transfer, we audit and optimize it, tailoring it to the FiQs architecture. As a result, after migration your network often runs faster and more reliably than before. We conclude the entire process with joint testing of critical service functionality.
On a typical hardware configuration (e.g. 4-core Intel Xeon/Core i5 processor, 8 GB RAM), FiQs effortlessly handles over 2,000 active clients simultaneously. Our system operates in networks of varying scale – from small nodes with a few dozen users to extensive ISP backbones serving many thousands of subscribers on a single server.
However, keep in mind that real-world performance depends on several key factors that we always consider when advising:
Traffic type: Transferring large data packets (streaming, downloads) primarily loads network interfaces, while hundreds of thousands of small packets (online gaming, DNS queries, VoIP sessions) require more CPU processing power.
Service complexity: The number of active PPPoE sessions, depth of firewall inspection and the extent of QoS queues (traffic shaping) have a direct impact on CPU and RAM resource requirements.
Hardware layer: Performance increases drastically when using branded network cards (e.g. Intel, Broadcom) supporting hardware queuing and when leveraging PCI Passthrough technology in virtual environments.
Link throughput: Handling 1 Gbps of symmetric traffic requires a different configuration than aggregating several 10 Gbps links.
That's why we don't sell a "box in the dark" – based on your traffic statistics and network topology, we help select optimal components so you can be sure the system maintains a safe performance margin even during peak hours.
The system guarantees full, native IPv4 and IPv6 networking stack support at the kernel level. The FiQs architecture is fully prepared for modern addressing, and IPv6 configuration is available directly from the system console.
In the current version, we focus on maximum optimization of IPv4 traffic management, which still forms and will continue to form the foundation of the vast majority of networks. Although full IPv6 automation is not utilized by default in daily operations, advanced administrators can freely deploy and test the next-generation protocol on their own, leveraging the full power within the Linux system.
At FiQs, we don't believe in closed ecosystems. You receive full, unrestricted root access, giving you complete control over the operating system. You can freely install additional packages from repositories, run your own automation scripts or deploy custom monitoring and reporting services. Your device is not a "black box" – it's a flexible platform that you can fully tailor to your infrastructure's needs.
However, we know that custom requirements sometimes need expert guidance. That's why we don't leave you alone with the terminal. We provide active support for advanced integrations. Whether you need to connect FiQs with an external billing system, a Radius database, a custom API or a log collection system (e.g. ELK Stack), our engineers will help you optimize the configuration so that your custom solutions run efficiently and reliably.
The choice of FiQs version depends on your strategy for ensuring continuous network access. We offer two variants:
1xWAN version: Designed for locations with a single stable internet link. Ideal where the priority is advanced traffic management within the local network.
2xWAN version (Failover & Load-Balancing): A solution for businesses and operators where every minute of downtime means losses. This variant offers:
Important technical note: The Failover mechanism works fully transparently for clients behind NAT. When using public IP addresses assigned to a specific provider, keep in mind that after switching to the second link, this addressing may not be supported by the new provider (specific configurations are then required, e.g. BGP protocol, if providers allow it).
All other features – from the advanced Firewall and QoS to monitoring and the intuitive web panel – are identical in both versions.
Yes, of course! Our existing clients are our priority, which is why we've prepared a special loyalty program for those who have been with us for years. We believe your trust in previous versions deserves the best conditions when transitioning to the new generation of the system.
What can you gain?
How to claim your discount? Before making a purchase, send us an email. We'll prepare a dedicated, tailor-made offer that takes your purchase history into account.
We appreciate your loyalty. We're glad you want to grow your network together with us!
Yes, FiQs grows with your network. If your infrastructure is expanding and you need additional links for safety (Failover) or increased bandwidth (Load-Balancing), upgrading to a higher version is quick and simple.
What does the upgrade process look like?
Flexibility first. You don't have to invest in the highest package right away – start with what you need today, and we'll help you expand the system when your network reaches the next level.
Describe your needs - we'll prepare a solution tailored to your infrastructure. Whether you manage a local business network or an extensive ISP infrastructure, together we'll select the parameters that ensure maximum performance and peace of mind. We're here to advise, share our experience and help you take your administration to the next level.
ININOUT LTD, 9-11 New Broadway, London W5 5AW, UK
Company Number 14553397
ININOUT Polska, ul. Wyspowa 5, 85-435 Bydgoszcz
NIP 7641721547, REGON 570337212
Grzegorz Lewandowski
Monday - Friday
8:00 - 16:00 CET