Secure network edge protection for IoT using an open-source next-generation router
An open-source next-generation secure router, built for the EU's human-centric internet.
The Challenge
The router is the single most exposed device on any network — industry reporting has put routers at over 75% of infected devices — yet router software is typically closed, ageing and slow to patch. As the European movement towards a human-centric internet built on privacy, trust, transparency, security and inclusivity gathered pace, rebuilding such core internet components became a priority: router vendors, ISPs and IoT integrators needed an open, security-first alternative to closed gateway stacks.
The Solution
NQM’s answer was EDGESec: an open-source implementation of a next-generation router, designed with security in mind and with a particular focus on IoT security. NQM applied its secure-gateway lineage (seeded by the NCSC IOTSecHub project) to produce a modular router security toolset — device identification, per-device network segregation, secure onboarding and traffic capture/analysis at the edge.
Outcomes
The project delivered the EDGESec source code on GitHub under an MIT open-source licence, developer documentation and a Doxygen C API at edgesec.info, and working ports to commodity hardware (Raspberry Pi 3 B+/4 B, PC Engines apu2, NVIDIA Jetson Nano). Because the stack is fully open, any ISP, router vendor or IoT gateway developer can adopt it without licence barriers — bringing modern, patchable, security-first software to the most attacked device class on the network. EDGESec was launched publicly in October 2021, showcased at Infosec Europe 2022, and its components fed forward into NQM’s ManySecured/SNbD secure-router portfolio.

Features
Open-source next-generation router implementation (MIT licence) with IoT security focus.
Secure device onboarding and per-device network access control at the edge.
Traffic capture and analysis toolset for edge threat detection.
Build instructions, deployment guides and Doxygen C API (edgesec.info).
Raspberry Pi 3 B+/4 B, PC Engines apu2, NVIDIA Jetson Nano.
An EU-endorsed, fully open router security stack an ISP or vendor can adopt without licence barriers.
Benefits
Open-source secure-router toolset publicly released and maintained on GitHub (`nqminds/edgesec`).
EU NGI Pointer backing positioned NQM among the "Next Generation Ecosystem of Internet Architects".
Showcased at Infosec Europe 2022 (on-router AI reducing IoT threat vectors); presented at NGI/TETRA scale-up bootcamp and Wolves Summit investor events.
Fed the secure-router codebase and concepts into ManySecured and SNbD (CHERI/Morello) follow-ons.

