VPN Network Service - Netmaker makes networks with WireGuard. Netmaker automates fast, secure, and distributed virtual networks.
#nebula #tailscale #mesh #vpn #golang #go #overlay #meshvpn

0xdcarns 5e327fdea4 set max open conns to 1 for sqlite %!s(int64=3) %!d(string=hai) anos
.github bc4991e3d1 add latest tag to docker images %!s(int64=3) %!d(string=hai) anos
auth 43b9e73eaa updated ioutil refs and composes %!s(int64=3) %!d(string=hai) anos
compose c81a6c957d changed versions to 0.12.0, added new logo %!s(int64=3) %!d(string=hai) anos
config 24f292c934 netclient: pass by value -> reference (#919) %!s(int64=3) %!d(string=hai) anos
controllers 5ba79afeba added default acl value option for networks %!s(int64=3) %!d(string=hai) anos
database 5e327fdea4 set max open conns to 1 for sqlite %!s(int64=3) %!d(string=hai) anos
docker b752f9e533 Merge pull request #839 from gravitl/bugfix_v0.11.1_wireguard-tools %!s(int64=3) %!d(string=hai) anos
functions 1c06cfc8f7 modified getpeers for hub network %!s(int64=3) %!d(string=hai) anos
grpc 44d03f6805 began refactoring of client %!s(int64=4) %!d(string=hai) anos
img 643093c133 adding image folder %!s(int64=3) %!d(string=hai) anos
kube 0bc3014f10 fixed versions %!s(int64=3) %!d(string=hai) anos
logger 3917fecdcf changed to range %!s(int64=3) %!d(string=hai) anos
logic 5ba79afeba added default acl value option for networks %!s(int64=3) %!d(string=hai) anos
models 5ba79afeba added default acl value option for networks %!s(int64=3) %!d(string=hai) anos
mq 8516524d02 sync hotfix %!s(int64=3) %!d(string=hai) anos
netclient 24f292c934 netclient: pass by value -> reference (#919) %!s(int64=3) %!d(string=hai) anos
nginx 39e4d5377c updating docs %!s(int64=4) %!d(string=hai) anos
scripts f513e043a0 Merge pull request #875 from gravitl/hotfix_v0.11.1_windows_powershell %!s(int64=3) %!d(string=hai) anos
servercfg ab5e8f0b62 remove comms CIDR from server conf %!s(int64=3) %!d(string=hai) anos
serverctl 772e5e6e80 commsnet else init %!s(int64=3) %!d(string=hai) anos
test a172641cad updating README %!s(int64=3) %!d(string=hai) anos
validation 8f72ecbaa0 refactored logic %!s(int64=3) %!d(string=hai) anos
.dockerignore 974627a9ab reorg of dockerfiles %!s(int64=3) %!d(string=hai) anos
.fpm ab3e643d5e add rpms %!s(int64=3) %!d(string=hai) anos
.gitignore 3e8a0554c2 changed dir name and added to gitignore, removed log %!s(int64=3) %!d(string=hai) anos
CONTRIBUTING.md 95659ef0a5 Create CONTRIBUTING.md %!s(int64=3) %!d(string=hai) anos
Dockerfile e7ebc2463e move wg to container %!s(int64=3) %!d(string=hai) anos
LICENSE.txt 375482c16d updating docs %!s(int64=4) %!d(string=hai) anos
README.md 643093c133 adding image folder %!s(int64=3) %!d(string=hai) anos
SECURITY.md d53bfd6ab1 Update SECURITY.md %!s(int64=3) %!d(string=hai) anos
go.mod c71c739ba2 logic/accesskeys: math.Rand -> crypto.Rand %!s(int64=3) %!d(string=hai) anos
go.sum c71c739ba2 logic/accesskeys: math.Rand -> crypto.Rand %!s(int64=3) %!d(string=hai) anos
main.go fdfbde118e putting acl check before server pull %!s(int64=3) %!d(string=hai) anos

README.md

a platform for blazing fast and dynamic virtual networks

WireGuard® Automation from Homelab to Enterprise

  • Peer-to-Peer Mesh Networks
  • Kubernetes and Multi-Cloud Enablement
  • Remote Site Access via Gateway
  • OAuth and Private DNS Features
  • Support for Linux, Mac, Windows, FreeBSD, iPhone, and Android

Get Started in 5 Minutes

For DigitalOcean, use the 1-Click App:
For production-grade installations, visit the Install Docs.
For an HA install using helm on k8s, visit the Helm Repo.

  1. Get a cloud VM with Ubuntu 20.04 and a public IP.
  2. Open ports 443, 80, 53, and 51821-51830/udp on the VM firewall and in cloud security settings.
  3. Run the script (see below for optional configurations):

wget -qO - https://raw.githubusercontent.com/gravitl/netmaker/master/scripts/nm-quick.sh | sudo bash

Upon completion, the logs will display the instructions to connect various devices. These can also be retrieved from the UI under "Access Keys."

After installing Netmaker, check out the Walkthrough and Getting Started guides to learn more about configuring networks. Or, check out some of our other Tutorials for different use cases, including Kubernetes.

Optional configurations

Deploy a "Hub-And-Spoke VPN" on the server
This will configure a standard VPN (non-meshed) for private internet access, with 10 clients (-c).
wget -qO - https://raw.githubusercontent.com/gravitl/netmaker/master/scripts/nm-quick.sh | sudo bash -s -- -v true -c 10

Specify Domain and Email
Make sure your wildcard domain is pointing towards the server ip.
wget -qO - https://raw.githubusercontent.com/gravitl/netmaker/master/scripts/nm-quick.sh | sudo bash -s -- -d mynetmaker.domain.com -e [email protected]

Script Options

./nm-quick
-d domain.example.com # specify a wildcard domain for netmaker to use (DNS must point to this server)
-e [email protected] # specify your email (for SSL certificates)
-m true # create a default 'mesh network' (on by default)
-v false # create a default 'VPN network' (off by default)
-c 7 # number of client configs to create (for VPN network, 5 by default)

Why Netmaker + WireGuard?

  • Netmaker automates virtual networks between data centers, clouds, and edge devices, so you don't have to.

  • Kernel WireGuard offers maximum speed, performance, and security.

  • Netmaker is built to scale from the small business to the enterprise.

  • Netmaker with WireGuard can be highly customized for peer-to-peer, site-to-site, Kubernetes, and more.

Get Support

Community Projects

Disclaimer

WireGuard is a registered trademark of Jason A. Donenfeld.

License

Netmaker's source code and all artifacts in this repository are freely available. All versions are published under the Server Side Public License (SSPL), version 1, which can be found here: LICENSE.txt.