Open Source, Self-Hosted, Zero Trust WireGuard Remote Access VPN
Octelium is Free and Open Source Software
A Modern, Scalable, L7-aware WireGuard-based Remote Access VPN
A Unified, L7-Aware, Zero-Config Remote Access WireGuard-based VPN with Automatic Private DNS for both Humans and Workloads to Access any Private/Internal Resource behind NAT from Anywhere as well as Protected Public Resources such as SaaS APIs and Databases
Secretless Access to SSH, APIs and Databases
Provide Dynamic Secretless Access to HTTP-based Resources without sharing API Keys and Access Tokens, PostgreSQL and MySQL Databases without sharing Passwords, SSH Servers without Managing Keys and Certificates
A True Zero Trust Architecture
Identity-based, Application-layer/L7-aware, Context-aware ABAC Access via Control Policy-as-Code using CEL and Open Policy Agent (OPA)
Zero-Config Clients with Kernel-native Performance
Zero-Config, Lightweight Clients with Support for both Kernel-native WireGuard for Maximum Performance as well as Unprivileged, Rootless Tunneling over gVisor. Can Run anywhere from your Laptop to Containers, Kubernetes, IoT and GitHub Actions.
Eliminate Traditional VPN Problems
Eliminate Traditional VPN Problems: Use a Single Stable Route instead of Injecting Countless Routes into Your Users' Clients. Effortless Dual-Stack Networking Regardless of the Support at the Upstream. Seamless, Unified, Automatic Private DNS.
Integrate with OpenID Connect and SAML SSO Providers
Seamlessly integrate any OpenID Connect or SAML 2.0 SSO Provider (IdP) as well as GitHub OAuth2 and Provide Secure Access to all your Resources for your Teams at Scale.
Scalable Secretless Authentication for Workloads
Authenticate your Workloads running from Kubernetes Clusters, Cloud Providers, GitHub Actions and SPIFFE Identities with OpenID Connect (OIDC) Assertions to Eliminate Managing and Distributing Credentials at Scale.
Unified, Scalable Architecture for Clientless Access
Public clientless BeyondCorp access for both Human via their Browsers and Workload Users via Standard OAuth2 Client Credentials Flow and Bearer Authentication
Built for Scalability and Availability
A Scalable Platform Built on top of Kubernetes for Automatic Horizontal Scalability and Availability
Centralized, Declarative and Programmable Management
Designed to be Administered like Kubernetes via DevOps/GitOps-friendly Centralized and Declarative Way. The Cluster is furthermore fully Programmable over gRPC.
OpenTelemetry-native, L7-aware Visibility
OpenTelemetry-native, Layer-7 Aware, Real-Time Visibility and Auditing to Your Log Management and SIEM Providers
Octelium is Free and Open Source Software