The Modern, Unified, Open Source Secure Access Platform

Replace your VPN, Proxies, PAM and Remote Access Tools with A Modern, Unified, FOSS, Identity-based Zero Trust ZTNA Platform for Humans, Workloads and AI Agents to Access Hybrid Infrastructure Including Internal Resources, Microservices, AI Workloads, IoT, and SaaS

Human
Workload
AI Agent
Unified identity for humans & workloadsIdentity-based L7-aware ABAC
SSH Server
PostgreSQL
Kubernetes
SaaS APIs
mTLS

Modern, Dynamic, L7-aware Access Control

Documentation
01

Per-request, identity-based, context-aware ABAC with policy-as-code via CEL and OPA.

02

Application layer-aware (layer-7) access control via scalable identity-aware proxies (IAPs) and policy-decision-points (PDPs) to provide dynamic least privilege access.

03

Zero-standing privileges. No superusers. All permissions can be dynamically limited by time and context.

04

Dynamic, identity-based, L7-aware upstream routing and request/response manipulation

policy.yaml
Identity & Device Posture
ABAC rules on user type, device OS, session mode, and group membership
Octelium is Free and Open Source

Start where it fits your work.

A next-gen FOSS unified zero trust secure access platform that's relevant for the age of AI and dynamic workloads

Enterprise

Replace legacy VPNs with a modern ZTNA deployed on your infrastructure and achieve compliance without vendor lock-in.

Startup

Unified secure access platform that is generic enough to operate as a VPN, modern API/AI/MCP/ingress gateway, or a PaaS.

Developer

FOSS Self-hosted alternative to VPNs and remote access tools such as ngrok. Deploy it on any VPS/machine.