Axera
Red Hat certified operator · CNI-agnostic · On-prem & air-gapped

Microsegmentation and NDR for Kubernetes.

Axera turns real east-west and egress traffic into least-privilege NetworkPolicy — then detects the attacks that get through and contains them automatically, with closed-loop verification. See everything, segment everything, stop the breach — from one control plane you run yourself.

Observe Segment Detect & Respond
YOUR CLUSTERns/paymentsns/corens/dataeBPF-based flow + process telemetryObserveSegmentDetect & Respondvisibilityleast privilegecontainmentRed Hat certified operator · any CNI · self-hosted
One operator: observe → segment → detect → respond
Built for regulated, self-hosted Kubernetes Red Hat certified operator Any CNI (OVN-Kubernetes, Cilium, Calico…) On-prem & air-gapped eBPF flow + process telemetry SIEM & Prometheus native
One platform, three editions

From blind spot to breach containment — in one control plane.

Most teams buy visibility, segmentation, and detection from three vendors and stitch them across two consoles and a SIEM. Axera is a single Red Hat–certified operator that does all three — license-driven, CNI-agnostic, on infrastructure you control.

Observe
See every flow.

Full visibility into east-west and egress traffic on any CNI.

  • Real-time topology (any CNI)
  • Verdict-aware, process-attributed flows
  • Egress with destination IP + reverse-DNS
  • Coverage and policy monitoring analytics
  • eBPF-based flow + process telemetry
Explore Observe
NDR
Detect and contain.

Network Detection & Response, purpose-built for Kubernetes.

  • Process-attributed incidents
  • MITRE ATT&CK kill-chain fusion
  • DNS, mesh/identity and runtime detections
  • Context-rich AI triage
  • Active containment (NetworkPolicy / ANP)
  • Closed-loop verification + auto-response
Explore NDR

Three license tiers on one operator install. Upgrade Observe → Segment → NDR without redeploying.

NDR

Detect what gets through — and contain it.

Segmentation stops most lateral movement. Axera NDR catches the rest: process-attributed incidents fused into MITRE ATT&CK kill-chains, then contained automatically — and verified.

ReconInitial accessLateral moveImpactsignals fused into one incident, mapped to MITRE ATT&CKContainVerifyReopen
Kill-chain fusion → contain → verify → reopen
How it works

Observe. Govern. Operate.

Three moves, one operator.

01

Observe

See every east-west and egress flow — verdict-aware and process-attributed — across any CNI.

02

Govern

Turn that traffic into least-privilege policy you review, version and roll back.

03

Operate

Detect process-attributed threats, contain them automatically, and verify the fix.

Get the technical datasheet

See Axera on your own clusters.

A short technical demo on your environment — visibility, segmentation and NDR from one operator.