VPN Network Service - Netmaker makes networks with WireGuard. Netmaker automates fast, secure, and distributed virtual networks.
#nebula #tailscale #mesh #vpn #golang #go #overlay #meshvpn

afeiszli 3b37532eaa fixing windows remove conf %!s(int64=3) %!d(string=hai) anos
.github c81a6c957d changed versions to 0.12.0, added new logo %!s(int64=3) %!d(string=hai) anos
auth 43b9e73eaa updated ioutil refs and composes %!s(int64=3) %!d(string=hai) anos
compose c81a6c957d changed versions to 0.12.0, added new logo %!s(int64=3) %!d(string=hai) anos
config 6028e1b6de added comms checks %!s(int64=3) %!d(string=hai) anos
controllers a3b5c10508 edited logs and used pre-existing mq function %!s(int64=3) %!d(string=hai) anos
database 6061ccec76 began ACL implementation %!s(int64=3) %!d(string=hai) anos
docker b752f9e533 Merge pull request #839 from gravitl/bugfix_v0.11.1_wireguard-tools %!s(int64=3) %!d(string=hai) anos
docs 36cb6969eb docs: fix wrong path %!s(int64=3) %!d(string=hai) anos
functions 1c06cfc8f7 modified getpeers for hub network %!s(int64=3) %!d(string=hai) anos
grpc 44d03f6805 began refactoring of client %!s(int64=4) %!d(string=hai) anos
kube 0bc3014f10 fixed versions %!s(int64=3) %!d(string=hai) anos
logger 3917fecdcf changed to range %!s(int64=3) %!d(string=hai) anos
logic 8ab7266c30 moved acl check %!s(int64=3) %!d(string=hai) anos
models 01484eec7b added ability to disable ext clients %!s(int64=3) %!d(string=hai) anos
mq 8516524d02 sync hotfix %!s(int64=3) %!d(string=hai) anos
netclient 3b37532eaa fixing windows remove conf %!s(int64=3) %!d(string=hai) anos
nginx 39e4d5377c updating docs %!s(int64=4) %!d(string=hai) anos
scripts f513e043a0 Merge pull request #875 from gravitl/hotfix_v0.11.1_windows_powershell %!s(int64=3) %!d(string=hai) anos
servercfg ab5e8f0b62 remove comms CIDR from server conf %!s(int64=3) %!d(string=hai) anos
serverctl fdfbde118e putting acl check before server pull %!s(int64=3) %!d(string=hai) anos
test a172641cad updating README %!s(int64=3) %!d(string=hai) anos
validation 8f72ecbaa0 refactored logic %!s(int64=3) %!d(string=hai) anos
.dockerignore 974627a9ab reorg of dockerfiles %!s(int64=3) %!d(string=hai) anos
.gitignore 112f03cf1f changed dir name and added to gitignore, removed log %!s(int64=3) %!d(string=hai) anos
CONTRIBUTING.md 95659ef0a5 Create CONTRIBUTING.md %!s(int64=3) %!d(string=hai) anos
Dockerfile e7ebc2463e move wg to container %!s(int64=3) %!d(string=hai) anos
LICENSE.txt 375482c16d updating docs %!s(int64=4) %!d(string=hai) anos
README.md dcb048d948 changing tagline %!s(int64=3) %!d(string=hai) anos
SECURITY.md d53bfd6ab1 Update SECURITY.md %!s(int64=3) %!d(string=hai) anos
go.mod d596ec4753 hostctl for dns %!s(int64=3) %!d(string=hai) anos
go.sum d596ec4753 hostctl for dns %!s(int64=3) %!d(string=hai) anos
main.go fdfbde118e putting acl check before server pull %!s(int64=3) %!d(string=hai) anos
mesh-diagram.png 0bacbd9f6c first commit %!s(int64=4) %!d(string=hai) anos
netmaker.png c81a6c957d changed versions to 0.12.0, added new logo %!s(int64=3) %!d(string=hai) anos

README.md

a platform for blazing fast and dynamic virtual networks

WireGuard® Automation from Homelab to Enterprise

  • Peer-to-Peer Mesh Networks
  • Kubernetes and Multi-Cloud Enablement
  • Remote Site Access via Gateway
  • OAuth and Private DNS Features
  • Support for Linux, Mac, Windows, FreeBSD, iPhone, and Android

Get Started in 5 Minutes

For DigitalOcean, use the 1-Click App:
For production-grade installations, visit the Install Docs.
For an HA install using helm on k8s, visit the Helm Repo.

  1. Get a cloud VM with Ubuntu 20.04 and a public IP.
  2. Open ports 443, 80, 53, and 51821-51830/udp on the VM firewall and in cloud security settings.
  3. Run the script (see below for optional configurations):

wget -qO - https://raw.githubusercontent.com/gravitl/netmaker/master/scripts/nm-quick.sh | sudo bash

Upon completion, the logs will display the instructions to connect various devices. These can also be retrieved from the UI under "Access Keys."

After installing Netmaker, check out the Walkthrough and Getting Started guides to learn more about configuring networks. Or, check out some of our other Tutorials for different use cases, including Kubernetes.

Optional configurations

Deploy a "Hub-And-Spoke VPN" on the server
This will configure a standard VPN (non-meshed) for private internet access, with 10 clients (-c).
wget -qO - https://raw.githubusercontent.com/gravitl/netmaker/master/scripts/nm-quick.sh | sudo bash -s -- -v true -c 10

Specify Domain and Email
Make sure your wildcard domain is pointing towards the server ip.
wget -qO - https://raw.githubusercontent.com/gravitl/netmaker/master/scripts/nm-quick.sh | sudo bash -s -- -d mynetmaker.domain.com -e [email protected]

Script Options

./nm-quick
-d domain.example.com # specify a wildcard domain for netmaker to use (DNS must point to this server)
-e [email protected] # specify your email (for SSL certificates)
-m true # create a default 'mesh network' (on by default)
-v false # create a default 'VPN network' (off by default)
-c 7 # number of client configs to create (for VPN network, 5 by default)

Why Netmaker + WireGuard?

  • Netmaker automates virtual networks between data centers, clouds, and edge devices, so you don't have to.

  • Kernel WireGuard offers maximum speed, performance, and security.

  • Netmaker is built to scale from the small business to the enterprise.

  • Netmaker with WireGuard can be highly customized for peer-to-peer, site-to-site, Kubernetes, and more.

Get Support

Community Projects

Disclaimer

WireGuard is a registered trademark of Jason A. Donenfeld.

License

Netmaker's source code and all artifacts in this repository are freely available. All versions are published under the Server Side Public License (SSPL), version 1, which can be found here: LICENSE.txt.