VPN Network Service - Netmaker makes networks with WireGuard. Netmaker automates fast, secure, and distributed virtual networks.
#nebula #tailscale #mesh #vpn #golang #go #overlay #meshvpn

dcarns 21abd767be Merge pull request #771 from gravitl/v0.10.0 %!s(int64=3) %!d(string=hai) anos
.github dae87a7c3e added docker file location to build & push %!s(int64=3) %!d(string=hai) anos
auth 43b9e73eaa updated ioutil refs and composes %!s(int64=3) %!d(string=hai) anos
compose 4da76cf910 updating docker compose files %!s(int64=3) %!d(string=hai) anos
config ec3d1c035f Merge branch 'develop' into feature_v0.10.0_initialize_iptables %!s(int64=3) %!d(string=hai) anos
controllers df292f2fc8 adjust test to new error msg %!s(int64=3) %!d(string=hai) anos
database ad79f2ea1f addresses review comments %!s(int64=3) %!d(string=hai) anos
docker 06430a6932 updates for netclient docker images %!s(int64=3) %!d(string=hai) anos
docs 36cb6969eb docs: fix wrong path %!s(int64=3) %!d(string=hai) anos
functions 2cbf08ad1e adding logic for key checks, OS on server %!s(int64=3) %!d(string=hai) anos
grpc 44d03f6805 began refactoring of client %!s(int64=4) %!d(string=hai) anos
kube 0bc3014f10 fixed versions %!s(int64=3) %!d(string=hai) anos
logger 5a5ded1c04 added mutex around logs again %!s(int64=3) %!d(string=hai) anos
logic e9f848c62a fix comment %!s(int64=3) %!d(string=hai) anos
models 9400209d97 adding OS and Version %!s(int64=3) %!d(string=hai) anos
mq c1274ed9e2 fixing counter for peer update %!s(int64=3) %!d(string=hai) anos
netclient d9a334b30c added initial pull to handle faster restarts %!s(int64=3) %!d(string=hai) anos
nginx 39e4d5377c updating docs %!s(int64=4) %!d(string=hai) anos
scripts 4ab924af3e use main.version rather than subpackage variables %!s(int64=3) %!d(string=hai) anos
servercfg 4ab924af3e use main.version rather than subpackage variables %!s(int64=3) %!d(string=hai) anos
serverctl 1a7a8beabc added server pulls upon server initialize if networks present %!s(int64=3) %!d(string=hai) anos
test a172641cad updating README %!s(int64=3) %!d(string=hai) anos
validation 8f72ecbaa0 refactored logic %!s(int64=3) %!d(string=hai) anos
.dockerignore 974627a9ab reorg of dockerfiles %!s(int64=3) %!d(string=hai) anos
.gitignore bc54bbf167 manual rebase to develop %!s(int64=3) %!d(string=hai) anos
CONTRIBUTING.md 95659ef0a5 Create CONTRIBUTING.md %!s(int64=3) %!d(string=hai) anos
Dockerfile 966603d3d0 match case of workflow var %!s(int64=3) %!d(string=hai) anos
LICENSE.txt 375482c16d updating docs %!s(int64=4) %!d(string=hai) anos
README.md 2b62731130 update readme gif %!s(int64=3) %!d(string=hai) anos
SECURITY.md d53bfd6ab1 Update SECURITY.md %!s(int64=3) %!d(string=hai) anos
go.mod 6f0950792f set retained true on server publish and client ping server on checkin %!s(int64=3) %!d(string=hai) anos
go.sum 6f0950792f set retained true on server publish and client ping server on checkin %!s(int64=3) %!d(string=hai) anos
main df895dc6b0 switching route thing in windows %!s(int64=3) %!d(string=hai) anos
main.go 789cb27d48 added jwt fix %!s(int64=3) %!d(string=hai) anos
mesh-diagram.png 0bacbd9f6c first commit %!s(int64=4) %!d(string=hai) anos
netmaker.png ba711d1b39 Add files via upload %!s(int64=4) %!d(string=hai) anos

README.md

Create and control automated virtual networks.

WireGuard® Automation from Homelab to Enterprise

  • Peer-to-Peer Mesh Networks
  • Kubernetes and Multi-Cloud Enablement
  • Remote Site Access via Gateway
  • OAuth and Private DNS Features
  • Support for Linux, Mac, Windows, FreeBSD, iPhone, and Android

Get Started in 5 Minutes

For DigitalOcean, use the 1-Click App:
For production-grade installations, visit the Install Docs.
For an HA install using helm on k8s, visit the Helm Repo.

  1. Get a cloud VM with Ubuntu 20.04 and a public IP.
  2. Open ports 443, 80, 53, and 51821-51830/udp on the VM firewall and in cloud security settings.
  3. Run the script (see below for optional configurations):

wget -qO - https://raw.githubusercontent.com/gravitl/netmaker/master/scripts/nm-quick.sh | sudo bash

Upon completion, the logs will display the instructions to connect various devices. These can also be retrieved from the UI under "Access Keys."

After installing Netmaker, check out the Walkthrough and Getting Started guides to learn more about configuring networks. Or, check out some of our other Tutorials for different use cases, including Kubernetes.

Optional configurations

Deploy a "Hub-And-Spoke VPN" on the server
This will configure a standard VPN (non-meshed) for private internet access, with 10 clients (-c).
wget -qO - https://raw.githubusercontent.com/gravitl/netmaker/master/scripts/nm-quick.sh | sudo bash -s -- -v true -c 10

Specify Domain and Email
Make sure your wildcard domain is pointing towards the server ip.
wget -qO - https://raw.githubusercontent.com/gravitl/netmaker/master/scripts/nm-quick.sh | sudo bash -s -- -d mynetmaker.domain.com -e [email protected]

Script Options

./nm-quick
-d domain.example.com # specify a wildcard domain for netmaker to use (DNS must point to this server)
-e [email protected] # specify your email (for SSL certificates)
-m true # create a default 'mesh network' (on by default)
-v false # create a default 'VPN network' (off by default)
-c 7 # number of client configs to create (for VPN network, 5 by default)

Why Netmaker + WireGuard?

  • Netmaker automates virtual networks between data centers, clouds, and edge devices, so you don't have to.

  • Kernel WireGuard offers maximum speed, performance, and security.

  • Netmaker is built to scale from the small business to the enterprise.

  • Netmaker with WireGuard can be highly customized for peer-to-peer, site-to-site, Kubernetes, and more.

Get Support

Community Projects

Disclaimer

WireGuard is a registered trademark of Jason A. Donenfeld.

License

Netmaker's source code and all artifacts in this repository are freely available. All versions are published under the Server Side Public License (SSPL), version 1, which can be found here: LICENSE.txt.