VPN Network Service - Netmaker makes networks with WireGuard. Netmaker automates fast, secure, and distributed virtual networks.
#nebula #tailscale #mesh #vpn #golang #go #overlay #meshvpn

0xdcarns fa1b3246fe added error catch on user token %!s(int64=3) %!d(string=hai) anos
.github dae87a7c3e added docker file location to build & push %!s(int64=3) %!d(string=hai) anos
auth 43b9e73eaa updated ioutil refs and composes %!s(int64=3) %!d(string=hai) anos
compose 4da76cf910 updating docker compose files %!s(int64=3) %!d(string=hai) anos
config ec3d1c035f Merge branch 'develop' into feature_v0.10.0_initialize_iptables %!s(int64=3) %!d(string=hai) anos
controllers fa1b3246fe added error catch on user token %!s(int64=3) %!d(string=hai) anos
database ad79f2ea1f addresses review comments %!s(int64=3) %!d(string=hai) anos
docker 06430a6932 updates for netclient docker images %!s(int64=3) %!d(string=hai) anos
docs 36cb6969eb docs: fix wrong path %!s(int64=3) %!d(string=hai) anos
functions 2cbf08ad1e adding logic for key checks, OS on server %!s(int64=3) %!d(string=hai) anos
grpc 44d03f6805 began refactoring of client %!s(int64=4) %!d(string=hai) anos
kube 0bc3014f10 fixed versions %!s(int64=3) %!d(string=hai) anos
logger 3917fecdcf changed to range %!s(int64=3) %!d(string=hai) anos
logic 8b184fd18f Merge pull request #769 from gravitl/feature_v0.10.1_token_length %!s(int64=3) %!d(string=hai) anos
models 7e9f65ad1b remove corednsAddrr from token %!s(int64=3) %!d(string=hai) anos
mq b6e3afa174 revert %!s(int64=3) %!d(string=hai) anos
netclient 7e9f65ad1b remove corednsAddrr from token %!s(int64=3) %!d(string=hai) anos
nginx 39e4d5377c updating docs %!s(int64=4) %!d(string=hai) anos
scripts 4ab924af3e use main.version rather than subpackage variables %!s(int64=3) %!d(string=hai) anos
servercfg 46052dbb97 update calc of default GPRCConnString %!s(int64=3) %!d(string=hai) anos
serverctl c238cf7f23 made use of string builder in logger %!s(int64=3) %!d(string=hai) anos
test a172641cad updating README %!s(int64=3) %!d(string=hai) anos
validation 8f72ecbaa0 refactored logic %!s(int64=3) %!d(string=hai) anos
.dockerignore 974627a9ab reorg of dockerfiles %!s(int64=3) %!d(string=hai) anos
.gitignore bc54bbf167 manual rebase to develop %!s(int64=3) %!d(string=hai) anos
CONTRIBUTING.md 95659ef0a5 Create CONTRIBUTING.md %!s(int64=3) %!d(string=hai) anos
Dockerfile 966603d3d0 match case of workflow var %!s(int64=3) %!d(string=hai) anos
LICENSE.txt 375482c16d updating docs %!s(int64=4) %!d(string=hai) anos
README.md 2b62731130 update readme gif %!s(int64=3) %!d(string=hai) anos
SECURITY.md d53bfd6ab1 Update SECURITY.md %!s(int64=3) %!d(string=hai) anos
go.mod 950ce4b4da removed APIConnString from accessToken %!s(int64=3) %!d(string=hai) anos
go.sum 6f0950792f set retained true on server publish and client ping server on checkin %!s(int64=3) %!d(string=hai) anos
main.go b7acb824dd don't set node_id if invalid hostname %!s(int64=3) %!d(string=hai) anos
mesh-diagram.png 0bacbd9f6c first commit %!s(int64=4) %!d(string=hai) anos
netmaker.png ba711d1b39 Add files via upload %!s(int64=4) %!d(string=hai) anos

README.md

Create and control automated virtual networks.

WireGuard® Automation from Homelab to Enterprise

  • Peer-to-Peer Mesh Networks
  • Kubernetes and Multi-Cloud Enablement
  • Remote Site Access via Gateway
  • OAuth and Private DNS Features
  • Support for Linux, Mac, Windows, FreeBSD, iPhone, and Android

Get Started in 5 Minutes

For DigitalOcean, use the 1-Click App:
For production-grade installations, visit the Install Docs.
For an HA install using helm on k8s, visit the Helm Repo.

  1. Get a cloud VM with Ubuntu 20.04 and a public IP.
  2. Open ports 443, 80, 53, and 51821-51830/udp on the VM firewall and in cloud security settings.
  3. Run the script (see below for optional configurations):

wget -qO - https://raw.githubusercontent.com/gravitl/netmaker/master/scripts/nm-quick.sh | sudo bash

Upon completion, the logs will display the instructions to connect various devices. These can also be retrieved from the UI under "Access Keys."

After installing Netmaker, check out the Walkthrough and Getting Started guides to learn more about configuring networks. Or, check out some of our other Tutorials for different use cases, including Kubernetes.

Optional configurations

Deploy a "Hub-And-Spoke VPN" on the server
This will configure a standard VPN (non-meshed) for private internet access, with 10 clients (-c).
wget -qO - https://raw.githubusercontent.com/gravitl/netmaker/master/scripts/nm-quick.sh | sudo bash -s -- -v true -c 10

Specify Domain and Email
Make sure your wildcard domain is pointing towards the server ip.
wget -qO - https://raw.githubusercontent.com/gravitl/netmaker/master/scripts/nm-quick.sh | sudo bash -s -- -d mynetmaker.domain.com -e [email protected]

Script Options

./nm-quick
-d domain.example.com # specify a wildcard domain for netmaker to use (DNS must point to this server)
-e [email protected] # specify your email (for SSL certificates)
-m true # create a default 'mesh network' (on by default)
-v false # create a default 'VPN network' (off by default)
-c 7 # number of client configs to create (for VPN network, 5 by default)

Why Netmaker + WireGuard?

  • Netmaker automates virtual networks between data centers, clouds, and edge devices, so you don't have to.

  • Kernel WireGuard offers maximum speed, performance, and security.

  • Netmaker is built to scale from the small business to the enterprise.

  • Netmaker with WireGuard can be highly customized for peer-to-peer, site-to-site, Kubernetes, and more.

Get Support

Community Projects

Disclaimer

WireGuard is a registered trademark of Jason A. Donenfeld.

License

Netmaker's source code and all artifacts in this repository are freely available. All versions are published under the Server Side Public License (SSPL), version 1, which can be found here: LICENSE.txt.