VPN Network Service - Netmaker makes networks with WireGuard. Netmaker automates fast, secure, and distributed virtual networks.
#nebula #tailscale #mesh #vpn #golang #go #overlay #meshvpn

Matthew R. Kasun 199ea15b1d add VerifyConnection func to NewTLSConf as InsecureSkipVerify:false doesn't work vor 3 Jahren
.github a8073e8d86 build on linux; windows no work vor 3 Jahren
auth 1e77a9eca4 remove new line to fix warning: fmt.Fprintln arg list ends with redundant newline vor 3 Jahren
certs 199ea15b1d add VerifyConnection func to NewTLSConf as InsecureSkipVerify:false doesn't work vor 3 Jahren
compose a0e7163e7e program to generate initial server certs/key vor 3 Jahren
config 935567761b mq direct to server public ip vor 3 Jahren
controllers 935567761b mq direct to server public ip vor 3 Jahren
database 5e327fdea4 set max open conns to 1 for sqlite vor 3 Jahren
docker a0e7163e7e program to generate initial server certs/key vor 3 Jahren
functions e086cee9f2 functions/helpers: Add DB tests. vor 3 Jahren
grpc 44d03f6805 began refactoring of client vor 4 Jahren
img 643093c133 adding image folder vor 3 Jahren
kube 0bc3014f10 fixed versions vor 3 Jahren
logger f272ef1022 adjusted comment vor 3 Jahren
logic 935567761b mq direct to server public ip vor 3 Jahren
models 9897b2228c mqttSetup refactor vor 3 Jahren
mq ff89e3a391 Merge pull request #980 from gravitl/feature_v0.12.2_version_update vor 3 Jahren
netclient 199ea15b1d add VerifyConnection func to NewTLSConf as InsecureSkipVerify:false doesn't work vor 3 Jahren
nginx 39e4d5377c updating docs vor 4 Jahren
scripts 199ea15b1d add VerifyConnection func to NewTLSConf as InsecureSkipVerify:false doesn't work vor 3 Jahren
servercfg 935567761b mq direct to server public ip vor 3 Jahren
serverctl ff89e3a391 Merge pull request #980 from gravitl/feature_v0.12.2_version_update vor 3 Jahren
test a172641cad updating README vor 3 Jahren
tls 199ea15b1d add VerifyConnection func to NewTLSConf as InsecureSkipVerify:false doesn't work vor 3 Jahren
validation 8f72ecbaa0 refactored logic vor 3 Jahren
.dockerignore 974627a9ab reorg of dockerfiles vor 3 Jahren
.fpm ab3e643d5e add rpms vor 3 Jahren
.gitignore 3e8a0554c2 changed dir name and added to gitignore, removed log vor 3 Jahren
CONTRIBUTING.md 95659ef0a5 Create CONTRIBUTING.md vor 3 Jahren
Dockerfile 1b10c08f55 updated docker versions vor 3 Jahren
LICENSE.txt 375482c16d updating docs vor 4 Jahren
README.md 9e4d321508 updated versions across git files vor 3 Jahren
SECURITY.md d53bfd6ab1 Update SECURITY.md vor 3 Jahren
go.mod 98cbec6dde tls package vor 3 Jahren
go.sum 98cbec6dde tls package vor 3 Jahren
main.go 7ca2c259ed added option to make iptables change vor 3 Jahren

README.md

a platform for modern, blazing fast virtual networks

WireGuard® Automation from Homelab to Enterprise

  • Peer-to-Peer Mesh Networks
  • Kubernetes and Multi-Cloud Enablement
  • Remote Site Access via Gateway
  • OAuth and Private DNS Features
  • Fine-grained access controls
  • Support for Linux, Mac, Windows, FreeBSD, iPhone, and Android

Get Started in 5 Minutes

For DigitalOcean, use the 1-Click App:
For production-grade installations, visit the Install Docs.
For an HA install using helm on k8s, visit the Helm Repo.

  1. Get a cloud VM with Ubuntu 20.04 and a public IP.
  2. Open ports 443, 80, 53, and 51821-51830/udp on the VM firewall and in cloud security settings.
  3. Run the script (see below for optional configurations):

wget -qO - https://raw.githubusercontent.com/gravitl/netmaker/master/scripts/nm-quick.sh | sudo bash

Upon completion, the logs will display the instructions to connect various devices. These can also be retrieved from the UI under "Access Keys."

After installing Netmaker, check out the Walkthrough and Getting Started guides to learn more about configuring networks. Or, check out some of our other Tutorials for different use cases, including Kubernetes.

Optional configurations

Deploy a "Hub-And-Spoke VPN" on the server
This will configure a standard VPN (non-meshed) for private internet access, with 10 clients (-c).
wget -qO - https://raw.githubusercontent.com/gravitl/netmaker/master/scripts/nm-quick.sh | sudo bash -s -- -v true -c 10

Specify Domain and Email
Make sure your wildcard domain is pointing towards the server ip.
wget -qO - https://raw.githubusercontent.com/gravitl/netmaker/master/scripts/nm-quick.sh | sudo bash -s -- -d mynetmaker.domain.com -e [email protected]

Script Options

./nm-quick
-d domain.example.com # specify a wildcard domain for netmaker to use (DNS must point to this server)
-e [email protected] # specify your email (for SSL certificates)
-m true # create a default 'mesh network' (on by default)
-v false # create a default 'VPN network' (off by default)
-c 7 # number of client configs to create (for VPN network, 5 by default)

Why Netmaker + WireGuard?

  • Netmaker automates virtual networks between data centers, clouds, and edge devices, so you don't have to.

  • Kernel WireGuard offers maximum speed, performance, and security.

  • Netmaker is built to scale from the small business to the enterprise.

  • Netmaker with WireGuard can be highly customized for peer-to-peer, site-to-site, Kubernetes, and more.

Get Support

Community Projects

Disclaimer

WireGuard is a registered trademark of Jason A. Donenfeld.

License

Netmaker's source code and all artifacts in this repository are freely available. All versions are published under the Server Side Public License (SSPL), version 1, which can be found here: LICENSE.txt.