VPN Network Service - Netmaker makes networks with WireGuard. Netmaker automates fast, secure, and distributed virtual networks.
#nebula #tailscale #mesh #vpn #golang #go #overlay #meshvpn

Matthew R. Kasun b7a18eac1f refactor pull to use api %!s(int64=3) %!d(string=hai) anos
.github a8073e8d86 build on linux; windows no work %!s(int64=3) %!d(string=hai) anos
auth 1e77a9eca4 remove new line to fix warning: fmt.Fprintln arg list ends with redundant newline %!s(int64=3) %!d(string=hai) anos
compose adfa5236f8 review comments addressed %!s(int64=3) %!d(string=hai) anos
config 935567761b mq direct to server public ip %!s(int64=3) %!d(string=hai) anos
controllers 34cac9ced0 allow nodes to authorize for certain controller/node endpoints %!s(int64=3) %!d(string=hai) anos
database 5e327fdea4 set max open conns to 1 for sqlite %!s(int64=3) %!d(string=hai) anos
docker 652d8a1018 allow anonymous access to mq but require cert %!s(int64=3) %!d(string=hai) anos
functions 2b1f20e94b changes from code review %!s(int64=3) %!d(string=hai) anos
grpc 44d03f6805 began refactoring of client %!s(int64=4) %!d(string=hai) anos
img 643093c133 adding image folder %!s(int64=3) %!d(string=hai) anos
kube 0bc3014f10 fixed versions %!s(int64=3) %!d(string=hai) anos
logger f272ef1022 adjusted comment %!s(int64=3) %!d(string=hai) anos
logic 6aa1a68a6f register command - client %!s(int64=3) %!d(string=hai) anos
models 6aa1a68a6f register command - client %!s(int64=3) %!d(string=hai) anos
mq ff89e3a391 Merge pull request #980 from gravitl/feature_v0.12.2_version_update %!s(int64=3) %!d(string=hai) anos
netclient b7a18eac1f refactor pull to use api %!s(int64=3) %!d(string=hai) anos
nginx 39e4d5377c updating docs %!s(int64=4) %!d(string=hai) anos
scripts a3f44f152b Merge pull request #1016 from gravitl/feature_v0.13.0_mq_register %!s(int64=3) %!d(string=hai) anos
servercfg 935567761b mq direct to server public ip %!s(int64=3) %!d(string=hai) anos
serverctl ff89e3a391 Merge pull request #980 from gravitl/feature_v0.12.2_version_update %!s(int64=3) %!d(string=hai) anos
test a172641cad updating README %!s(int64=3) %!d(string=hai) anos
tls adfa5236f8 review comments addressed %!s(int64=3) %!d(string=hai) anos
validation 8f72ecbaa0 refactored logic %!s(int64=3) %!d(string=hai) anos
.dockerignore 974627a9ab reorg of dockerfiles %!s(int64=3) %!d(string=hai) anos
.fpm ab3e643d5e add rpms %!s(int64=3) %!d(string=hai) anos
.gitignore 3e8a0554c2 changed dir name and added to gitignore, removed log %!s(int64=3) %!d(string=hai) anos
CONTRIBUTING.md 95659ef0a5 Create CONTRIBUTING.md %!s(int64=3) %!d(string=hai) anos
Dockerfile 1b10c08f55 updated docker versions %!s(int64=3) %!d(string=hai) anos
LICENSE.txt 375482c16d updating docs %!s(int64=4) %!d(string=hai) anos
README.md 9e4d321508 updated versions across git files %!s(int64=3) %!d(string=hai) anos
SECURITY.md d53bfd6ab1 Update SECURITY.md %!s(int64=3) %!d(string=hai) anos
go.mod a3f44f152b Merge pull request #1016 from gravitl/feature_v0.13.0_mq_register %!s(int64=3) %!d(string=hai) anos
go.sum a3f44f152b Merge pull request #1016 from gravitl/feature_v0.13.0_mq_register %!s(int64=3) %!d(string=hai) anos
main.go a340cd5c24 fix server startup for key/certs %!s(int64=3) %!d(string=hai) anos

README.md

a platform for modern, blazing fast virtual networks

WireGuard® Automation from Homelab to Enterprise

  • Peer-to-Peer Mesh Networks
  • Kubernetes and Multi-Cloud Enablement
  • Remote Site Access via Gateway
  • OAuth and Private DNS Features
  • Fine-grained access controls
  • Support for Linux, Mac, Windows, FreeBSD, iPhone, and Android

Get Started in 5 Minutes

For DigitalOcean, use the 1-Click App:
For production-grade installations, visit the Install Docs.
For an HA install using helm on k8s, visit the Helm Repo.

  1. Get a cloud VM with Ubuntu 20.04 and a public IP.
  2. Open ports 443, 80, 53, and 51821-51830/udp on the VM firewall and in cloud security settings.
  3. Run the script (see below for optional configurations):

wget -qO - https://raw.githubusercontent.com/gravitl/netmaker/master/scripts/nm-quick.sh | sudo bash

Upon completion, the logs will display the instructions to connect various devices. These can also be retrieved from the UI under "Access Keys."

After installing Netmaker, check out the Walkthrough and Getting Started guides to learn more about configuring networks. Or, check out some of our other Tutorials for different use cases, including Kubernetes.

Optional configurations

Deploy a "Hub-And-Spoke VPN" on the server
This will configure a standard VPN (non-meshed) for private internet access, with 10 clients (-c).
wget -qO - https://raw.githubusercontent.com/gravitl/netmaker/master/scripts/nm-quick.sh | sudo bash -s -- -v true -c 10

Specify Domain and Email
Make sure your wildcard domain is pointing towards the server ip.
wget -qO - https://raw.githubusercontent.com/gravitl/netmaker/master/scripts/nm-quick.sh | sudo bash -s -- -d mynetmaker.domain.com -e [email protected]

Script Options

./nm-quick
-d domain.example.com # specify a wildcard domain for netmaker to use (DNS must point to this server)
-e [email protected] # specify your email (for SSL certificates)
-m true # create a default 'mesh network' (on by default)
-v false # create a default 'VPN network' (off by default)
-c 7 # number of client configs to create (for VPN network, 5 by default)

Why Netmaker + WireGuard?

  • Netmaker automates virtual networks between data centers, clouds, and edge devices, so you don't have to.

  • Kernel WireGuard offers maximum speed, performance, and security.

  • Netmaker is built to scale from the small business to the enterprise.

  • Netmaker with WireGuard can be highly customized for peer-to-peer, site-to-site, Kubernetes, and more.

Get Support

Community Projects

Disclaimer

WireGuard is a registered trademark of Jason A. Donenfeld.

License

Netmaker's source code and all artifacts in this repository are freely available. All versions are published under the Server Side Public License (SSPL), version 1, which can be found here: LICENSE.txt.