The Open Source Next-Gen Platform for Zero Trust Resource Access
A Modern, Scalable, Unified Zero Trust Architecture that Provides Secure Access for Humans, Workloads and AI Agents to Hybrid Infrastructure Including Internal Resources, Microservices, AI Workloads, IoT, and SaaS with Centralized Identity Management, Dynamic Access Control and Real-time Visibility
A Comprehensive Zero Trust Network Access (ZTNA) Platform
Octelium is Free and Open Source Software
Modern, Scalable, Unified Zero Trust Platform for Secure Access
Unified Platform for Humans and Workloads to Access Private Clouds and Internal Resources, Microservices, AI Workloads, IoT and Publicly Protected SaaS Resources
Unified Architecture Providing both Zero-Config Client-based over WireGuard/QUIC and Public Clientless/BeyondCorp Access
Seamless Secretless Access that Eliminates Sharing Layer-7 Credentials such as HTTP API keys, TLS/SSH Private keys and Database Passwords
Built on top of Kubernetes for Seamless Horizontal Scalability and Availability
OpenTelemetry-native, L7-aware Visibility and Auditing in Real-Time
Generic enough to Operate as a ZTNA/BeyondCorp Platform, Remote Access VPN, API/AI/MCP Gateway, PaaS, Reverse Proxy, and More
Dynamic, Application-layer Aware, Per-Request Access Control
Per-Request, Dynamic, Identity-based, Context-aware Access Control using ABAC and Policy-as-Code
L7-aware Access Control via Scalable Identity-aware Proxies (IAPs) to Provide Dynamic Least Privilege Access
Dynamic, Identity-based, L7-aware Upstream Routing and Request/Response Manipulation
Zero-Standing Privileges. No Superusers. All Permissions can be Dynamically Limited by Time and Context.
Much More than just Another Secure Remote Access Solution
Centralized, Declarative GitOps-friendly Management
A PaaS-like Platform to Effortlessly Deploy, Scale and Secure Access to Containerized Applications
Provide Anonymous Public Access to your Websites and Public APIs
Passwordless SSH Access to Hosts with no SSH Servers such as Containers and IoT Devices
Eliminate VPN Routing Problems at Scale. Eliminate the Need for NAT64. Unified Automatic Private DNS Server using Your Own Domain.
Continuous, Strong Authentication
Seamlessly Integrate any OpenID Connect and SAML 2.0 SSO Identity Provider (IdP) and Force Strong MFA via FIDO2 Phishing Resistant Authenticators into Access Control
Secure Clientless Access for your Workloads Written in any Programming Language to HTTP-based Resources and APIs using Standard OAuth2 and Bearer Authentication
Secretless OIDC Assertion-based Authentication for Workloads that eliminates Authentication Token Management and Distribution at Scale
Per-User Re-Authentication Periods and Real-time Session Revocation
Octelium is Free and Open Source Software
