awesome-repositories.com
المدونة
awesome-repositories.com

اكتشف أفضل مستودعات المصادر المفتوحة باستخدام بحث مدعوم بالذكاء الاصطناعي.

استكشفعمليات بحث منسقةبدائل مفتوحة المصدربرمجيات ذاتية الاستضافةالمدونةخريطة الموقع
المشروعحولكيفية ترتيب النتائجالصحافةخادم MCP
قانونيالخصوصيةالشروط
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
firezone avatar

firezone/firezone

0
View on GitHub↗
8,701 نجوم·420 تفرعات·Elixir·Apache-2.0·8 مشاهداتwww.firezone.dev↗

Firezone

Firezone is a zero trust network access platform that uses WireGuard to provide identity-based connectivity to internal network resources. It functions as a virtual private network that synchronizes authentication and user groups via OpenID Connect providers.

The system implements a group-based access control engine to enforce least privilege by restricting network resources to specific user groups. It utilizes holepunching and relay protocols for NAT traversal to establish encrypted tunnels through firewalls without requiring inbound ports.

The platform includes a control plane for managing network gateways and access policies, with support for multi-gateway load balancing and containerized deployment. It provides capabilities for network access auditing, user activity tracking, and the management of secure remote infrastructure.

Features

  • WireGuard VPN Support - Uses the WireGuard protocol to create high-performance, encrypted peer-to-peer network tunnels for secure data transport.
  • Secure Remote Access - Implements a zero-trust system for establishing encrypted tunnels and authenticated communication to private network resources.
  • Control Planes - Implements a control plane that decouples administrative policy orchestration from the data plane handling network traffic.
  • NAT Traversal Mechanisms - Uses relay protocols to establish outbound connections through firewalls, bypassing the need for inbound ports.
  • NAT Traversal - Utilizes holepunching to establish direct peer-to-peer connections by bypassing restrictive firewall rules.
  • Secure Tunnel Clients - Provides clients to establish and manage encrypted peer-to-peer connections to remote network gateways.
  • WireGuard Management - Provides a central interface for configuring and monitoring WireGuard VPN tunnels and peer keys.
  • Identity Synchronization - Automatically imports and updates user lists and group memberships from external identity providers.
  • Encrypted Tunneling - Builds end-to-end encrypted network tunnels using holepunching to ensure private connectivity.
  • Identity Authentication - Verifies user identities and synchronizes group memberships through integration with external single sign-on providers.
  • Identity-Based Access Control - Enforces network-level access control by mapping user identities and groups to specific resource permissions.
  • Identity Provider Integrations - Synchronizes user authentication and group memberships by integrating with external OIDC and LDAP identity services.
  • Identity-Based VPNs - Provides a virtual private network that synchronizes authentication and group memberships via OpenID Connect.
  • Zero Trust Access - Implements an identity-based access framework that replaces traditional VPNs with zero-trust connectivity.
  • Zero Trust Networking - Implements a zero-trust security model to provide identity-based access for all network communication.
  • Access Policy Managers - Provides a system to manage network access policies and connectivity rules using group-based restrictions.
  • Group-Based - Enforces least privilege by restricting network resource availability based on identity provider group memberships.
  • Gateway Token Authentication - Links network resources to a central control plane using unique identity tokens and environment settings.
  • Container Deployment - Provides containerized images for the management server and network gateways to ensure consistent deployment across environments.
  • Load Balancers - Distributes network traffic across multiple gateway instances to ensure high availability and increase throughput.
  • Network Gateways - Deploys scalable network gateways that act as endpoints for managing encrypted traffic flow.
  • Peer-to-Peer Tunneling - Establishes direct encrypted connections between peers using holepunching to reduce routing overhead.
  • Remote Access Connectivity - Provides dedicated applications for Apple devices to establish secure remote connectivity to internal resources.
  • Traffic Management Gateways - Uses multiple network gateways to distribute traffic and maintain high throughput for remote connections.
  • Access Auditing - Maintains detailed audit logs of user connections and administrative changes for security compliance.
  • Network and Infrastructure Security - Deploys and scales network gateways to protect internal subnets and applications from public exposure.
  • Activity Monitors - Maintains detailed audit trails of network events to monitor for security threats and meet regulatory compliance.
  • Administrative Change Auditing - Maintains a verifiable history of administrative changes and configuration updates within the network control plane.
  • Virtual Network GUIs - Provides a visual interface for managing secure network connections across multiple desktop operating systems.
  • DevOps and Infrastructure - Zero-trust access platform built on WireGuard.
  • Networking and Infrastructure - Self-hosted VPN server and firewall.
  • Overlay Networks - WireGuard-based network gateway with SSO authentication support.
  • Cloud Security - VPN server and firewall management for teams.
  • Cybersecurity - VPN server and firewall solution for teams.
  • Security and Compliance - VPN and firewall built on WireGuard.
  • VPN and Networking - WireGuard-based VPN server and firewall.
  • VPN and Privacy - WireGuard-based VPN server and egress firewall.

سجل النجوم

مخطط تاريخ النجوم لـ firezone/firezoneمخطط تاريخ النجوم لـ firezone/firezone

بحث بالذكاء الاصطناعي

استكشف المزيد من المستودعات الرائعة

صف ما تحتاجه بلغة بسيطة — وسيقوم الذكاء الاصطناعي بترتيب آلاف المشاريع مفتوحة المصدر المنسقة حسب الصلة.

Start searching with AI

بدائل مفتوحة المصدر لـ Firezone

مشاريع مفتوحة المصدر مشابهة، مرتبة حسب عدد الميزات المشتركة مع Firezone.
  • octelium/octeliumالصورة الرمزية لـ octelium

    octelium/octelium

    3,371عرض على GitHub↗

    Octelium is a zero-trust network access platform and identity-aware proxy designed to secure private HTTP, SSH, and SQL resources. It functions as a secure gateway that validates human and workload identities using OIDC, SAML, and FIDO2 passkeys before granting access to internal applications and SaaS APIs. The system is distinguished by its secretless access broker, which injects credentials—such as API keys, passwords, and AWS Sigv4 signatures—at the gateway level so users can access databases and cloud resources without managing secrets. It further specializes in AI gateway administration,

    Goabacai-gatewayapi-gateway
    عرض على GitHub↗3,371
  • netbirdio/netbirdالصورة الرمزية لـ netbirdio

    netbirdio/netbird

    26,188عرض على GitHub↗

    NetBird is a zero-trust networking platform that builds secure, encrypted peer-to-peer overlay networks using the WireGuard protocol. It functions as a software-defined perimeter, connecting distributed infrastructure across cloud environments and physical locations while hiding network resources from the public internet. By integrating with external identity providers, the platform enforces granular access control and identity-based segmentation for every user and device. The platform distinguishes itself through extensive automation and programmatic management capabilities. It provides a ce

    Gogolangmeshmesh-networks
    عرض على GitHub↗26,188
  • slackhq/nebulaالصورة الرمزية لـ slackhq

    slackhq/nebula

    17,405عرض على GitHub↗

    Nebula is a scalable, decentralized overlay networking tool designed to create secure, encrypted peer-to-peer connections between distributed hosts. By utilizing a certificate-based identity authority, it enables the construction of private communication fabrics across disparate physical infrastructures, such as multiple cloud providers or on-premises data centers, without requiring central authentication servers. The project distinguishes itself through a zero-trust architecture that enforces granular, policy-driven firewall filtering based on certificate-derived group memberships. It facili

    Go
    عرض على GitHub↗17,405
  • fosrl/pangolinالصورة الرمزية لـ fosrl

    fosrl/pangolin

    21,255عرض على GitHub↗

    Pangolin is a zero-trust remote access platform designed to provide secure, identity-aware connectivity to private network resources. It functions as a cloud-native network controller that orchestrates encrypted tunnels, traffic routing, and access policies across distributed environments. By leveraging WireGuard for secure data transport, the platform enables authenticated access to internal web applications, terminal sessions, and remote desktops without exposing services to the public internet. The platform distinguishes itself through a declarative infrastructure model that synchronizes n

    TypeScriptcrowdsecdockerhome-lab
    عرض على GitHub↗21,255
عرض جميع البدائل الـ 30 لـ Firezone→

الأسئلة الشائعة

ما هي وظيفة firezone/firezone؟

Firezone is a zero trust network access platform that uses WireGuard to provide identity-based connectivity to internal network resources. It functions as a virtual private network that synchronizes authentication and user groups via OpenID Connect providers.

ما هي الميزات الرئيسية لـ firezone/firezone؟

الميزات الرئيسية لـ firezone/firezone هي: WireGuard VPN Support, Secure Remote Access, Control Planes, NAT Traversal Mechanisms, NAT Traversal, Secure Tunnel Clients, WireGuard Management, Identity Synchronization.

ما هي البدائل مفتوحة المصدر لـ firezone/firezone؟

تشمل البدائل مفتوحة المصدر لـ firezone/firezone: octelium/octelium — Octelium is a zero-trust network access platform and identity-aware proxy designed to secure private HTTP, SSH, and… netbirdio/netbird — NetBird is a zero-trust networking platform that builds secure, encrypted peer-to-peer overlay networks using the… slackhq/nebula — Nebula is a scalable, decentralized overlay networking tool designed to create secure, encrypted peer-to-peer… fosrl/pangolin — Pangolin is a zero-trust remote access platform designed to provide secure, identity-aware connectivity to private… tailscale/tailscale — Tailscale is a zero-trust networking overlay that connects distributed devices and services into a private, encrypted… gravitl/netmaker — Netmaker is a platform for automating and managing virtual mesh networks built on WireGuard. It functions as a…