Here is a complete summary of features:
- Process-based ACLs
- Process-based resource restrictions
- IP ACLs
- Resource to prevent bruteforce attacking of processes
- Full-featured intelligent learning mode
- Human-readable configuration files
- An intelligent userspace administration tool that enforces secure ACLs
- Support for including additional ACL configurations via an include directive. The argument can be a directory or a file.
- O(1) searching algorithms
- Administrator mode
- Capability and ACL inheritance