VPN Network Service - Netmaker makes networks with WireGuard. Netmaker automates fast, secure, and distributed virtual networks.
#nebula #tailscale #mesh #vpn #golang #go #overlay #meshvpn

0xdcarns 3a74170ab2 added v0.14.5 and removed MQ_SERVER_PORT %!s(int64=3) %!d(string=hai) anos
.github 3a74170ab2 added v0.14.5 and removed MQ_SERVER_PORT %!s(int64=3) %!d(string=hai) anos
auth 2fa31a6947 add oidc provider for auth %!s(int64=3) %!d(string=hai) anos
compose 3a74170ab2 added v0.14.5 and removed MQ_SERVER_PORT %!s(int64=3) %!d(string=hai) anos
config 3a74170ab2 added v0.14.5 and removed MQ_SERVER_PORT %!s(int64=3) %!d(string=hai) anos
controllers f28d361bea refactoring cert logic to use database %!s(int64=3) %!d(string=hai) anos
database b281047168 adding functions to handle certs in DB %!s(int64=3) %!d(string=hai) anos
docker 127a75a81c remove listener 1883 from mosquitto conf file %!s(int64=3) %!d(string=hai) anos
functions 2b1f20e94b changes from code review %!s(int64=3) %!d(string=hai) anos
img 30c863a450 updated readme %!s(int64=3) %!d(string=hai) anos
kube 7152f6ccd4 remove references to grpc/comms net %!s(int64=3) %!d(string=hai) anos
logger 333a140c74 moved mutex %!s(int64=3) %!d(string=hai) anos
logic da293409d8 fix egress on server %!s(int64=3) %!d(string=hai) anos
models f8b1049c31 removed Gravitl from ascii logo %!s(int64=3) %!d(string=hai) anos
mq 47005b7ea4 removed useless continue %!s(int64=3) %!d(string=hai) anos
netclient 3a74170ab2 added v0.14.5 and removed MQ_SERVER_PORT %!s(int64=3) %!d(string=hai) anos
nginx 7152f6ccd4 remove references to grpc/comms net %!s(int64=3) %!d(string=hai) anos
scripts b54298347e Fixed incorrect flag. %!s(int64=3) %!d(string=hai) anos
servercfg 3a74170ab2 added v0.14.5 and removed MQ_SERVER_PORT %!s(int64=3) %!d(string=hai) anos
serverctl 3a74170ab2 added v0.14.5 and removed MQ_SERVER_PORT %!s(int64=3) %!d(string=hai) anos
test 7152f6ccd4 remove references to grpc/comms net %!s(int64=3) %!d(string=hai) anos
tls adaf8f1ca6 initial changes to make cert <-> broker comms work %!s(int64=3) %!d(string=hai) anos
validation 8f72ecbaa0 refactored logic %!s(int64=3) %!d(string=hai) anos
.dockerignore 974627a9ab reorg of dockerfiles %!s(int64=3) %!d(string=hai) anos
.fpm ab3e643d5e add rpms %!s(int64=3) %!d(string=hai) anos
.gitignore bc1eb17bad removing windows installer portions %!s(int64=3) %!d(string=hai) anos
CONTRIBUTING.md 95659ef0a5 Create CONTRIBUTING.md %!s(int64=3) %!d(string=hai) anos
Dockerfile 3a3cd83e85 speedup docker builds %!s(int64=3) %!d(string=hai) anos
LICENSE.txt 375482c16d updating docs %!s(int64=4) %!d(string=hai) anos
README.md 34f6a404e2 update version numbers to 14.4 %!s(int64=3) %!d(string=hai) anos
SECURITY.md d53bfd6ab1 Update SECURITY.md %!s(int64=3) %!d(string=hai) anos
dev.yaml 501108b53d Remove config.Server.Debug %!s(int64=3) %!d(string=hai) anos
go.mod 8e70e06396 Merge pull request #1288 from gravitl/dependabot/go_modules/develop/github.com/stretchr/testify-1.8.0 %!s(int64=3) %!d(string=hai) anos
go.sum 8e70e06396 Merge pull request #1288 from gravitl/dependabot/go_modules/develop/github.com/stretchr/testify-1.8.0 %!s(int64=3) %!d(string=hai) anos
main.go 98efd67313 added log and sharpened up %!s(int64=3) %!d(string=hai) anos

README.md

Y-Combinator

WireGuard® automation from homelab to enterprise

Create & Automate Manage
:heavy_check_mark: WireGuard Networks :heavy_check_mark: Admin UI
:heavy_check_mark: Remote Access Gateways :heavy_check_mark: OAuth
:heavy_check_mark: Mesh VPNs :heavy_check_mark: Private DNS
:heavy_check_mark: Site-to-Site :heavy_check_mark: Access Control Lists

Get Started in 5 Minutes

For DigitalOcean, use the 1-Click App:
For production-grade installations, visit the Install Docs.
For an HA install using helm on k8s, visit the Helm Repo.

  1. Get a cloud VM with Ubuntu 20.04 and a public IP.
  2. Open ports 443, 53, and 51821-51830/udp on the VM firewall and in cloud security settings.
  3. Run the script (see below for optional configurations):

wget -qO - https://raw.githubusercontent.com/gravitl/netmaker/master/scripts/nm-quick.sh | sudo bash

Upon completion, the logs will display the instructions to connect various devices. These can also be retrieved from the UI under "Access Keys."

After installing Netmaker, check out the Walkthrough and Getting Started guides to learn more about configuring networks. Or, check out some of our other Tutorials for different use cases, including Kubernetes.

Optional configurations

Deploy a "Hub-And-Spoke VPN" on the server
This will configure a standard VPN (non-meshed) for private internet access, with 10 clients (-c).
wget -qO - https://raw.githubusercontent.com/gravitl/netmaker/master/scripts/nm-quick.sh | sudo bash -s -- -v true -c 10

Specify Domain and Email
Make sure your wildcard domain is pointing towards the server ip.
wget -qO - https://raw.githubusercontent.com/gravitl/netmaker/master/scripts/nm-quick.sh | sudo bash -s -- -d mynetmaker.domain.com -e [email protected]

Script Options

./nm-quick
-d domain.example.com # specify a wildcard domain for netmaker to use (DNS must point to this server)
-e [email protected] # specify your email (for SSL certificates)
-m true # create a default 'mesh network' (on by default)
-v false # create a default 'VPN network' (off by default)
-c 7 # number of client configs to create (for VPN network, 5 by default)

Why Netmaker + WireGuard?

  • Netmaker automates virtual networks between data centers, clouds, and edge devices, so you don't have to.

  • Kernel WireGuard offers maximum speed, performance, and security.

  • Netmaker is built to scale from the small business to the enterprise.

  • Netmaker with WireGuard can be highly customized for peer-to-peer, site-to-site, Kubernetes, and more.

Get Support

Community Projects

Disclaimer

WireGuard is a registered trademark of Jason A. Donenfeld.

License

Netmaker's source code and all artifacts in this repository are freely available. All versions are published under the Server Side Public License (SSPL), version 1, which can be found here: LICENSE.txt.