awesome-repositories.com
Blog
MCP
awesome-repositories.com

Descubre los mejores repositorios open-source con nuestra búsqueda potenciada por IA.

ExplorarBúsquedas curadasAlternativas open-sourceSoftware autohospedableBlogMapa del sitio
ProyectoServidor MCPAcerca deCómo clasificamosPrensa
Aviso legalPrivacidadTérminos
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·

13 repositorios

Awesome GitHub RepositoriesSecure Tunneling

Establishes secure tunnels for remote device management without public exposure.

Distinct from Secure Remote Connectivity Tools: Distinct from Secure Remote Connectivity Tools: focuses on private tunnel establishment for IoT devices rather than general remote access.

Explore 13 awesome GitHub repositories matching security & cryptography · Secure Tunneling. Refine with filters or upvote what's useful.

Awesome Secure Tunneling GitHub Repositories

Encuentra los mejores repositorios con IA.Buscaremos los repositorios que mejor coincidan usando IA.
  • wled/wledAvatar de wled

    wled/WLED

    18,249Ver en GitHub↗

    WLED is a web-based firmware designed for ESP8266 and ESP32 microcontrollers to manage addressable LED strips and matrices. It functions as a comprehensive IoT lighting automation system, providing the tools to control individual pixels, define logical segments, and execute dynamic lighting effects. The platform supports a wide range of hardware configurations, including matrix panels and non-addressable LED arrays, while offering granular control over brightness, color palettes, and animation speed. The project distinguishes itself through its extensive support for networked orchestration an

    Connects remote devices to the local network via a secure tunnel to manage light arrays without exposing them to the public internet.

    C++esp32esp8266hacktoberfest
    Ver en GitHub↗18,249
  • sipeed/nanokvmAvatar de sipeed

    sipeed/NanoKVM

    6,061Ver en GitHub↗

    NanoKVM is a KVM-over-IP device that provides remote keyboard, video, and mouse control over IP networks for headless server management. It functions as remote server management hardware enabling out-of-band control of a computer's power, BIOS, and operating system over a network, while also serving as a RISC-V single-board computer for embedded and edge applications. The device additionally operates as an AI edge inference device running neural network models locally for real-time image recognition and object detection, and integrates Tailscale as a VPN appliance for secure peer-to-peer conne

    Establishes a secure outbound-only tunnel to Cloudflare, removing the need for public IPs or port forwarding.

    TypeScript
    Ver en GitHub↗6,061
  • webmin/webminAvatar de webmin

    webmin/webmin

    5,595Ver en GitHub↗

    Webmin is a web-based administration interface for Unix systems. It provides a centralized console for managing the full range of server administration tasks — users and groups, software packages, storage, network configuration, system services, and security — all through a browser. Its modular architecture allows separate modules to handle databases (MySQL, MariaDB, PostgreSQL), web servers (Apache), DNS (BIND), email (Sendmail, Dovecot), file sharing (Samba, NFS), and more, with a unified access control system that restricts what each administrator can see and do. What sets Webmin apart is

    Offers a one-click wizard to expose the administration interface via a Cloudflare tunnel.

    HTML
    Ver en GitHub↗5,595
  • yonggekkk/argosbxAvatar de yonggekkk

    yonggekkk/argosbx

    5,331Ver en GitHub↗

    Argosbx es un script de despliegue automatizado y gestor de proxies multiprotocolo diseñado para exponer servicios locales a Internet utilizando túneles Cloudflare Argo. Funciona como una herramienta para instalar y configurar kernels de túneles de red, incluyendo Sing-box y Xray, para crear proxies seguros y eludir restricciones de red sin necesidad de abrir puertos de firewall. El proyecto se distingue por proporcionar un generador de suscripciones de proxy que crea URLs formateadas y protegidas por contraseña para sincronizar configuraciones entre dispositivos cliente. También gestiona diversos protocolos de túnel, como VLESS, Hysteria2, TUIC y Shadowsocks-2022, tanto en entornos VPS como Docker. El sistema cubre capacidades más amplias para la gestión del tráfico de red, incluyendo enrutamiento de salida IPv4 e IPv6 para enmascarar identidades de servidor. Incluye utilidades de línea de comandos para la gestión del kernel de proxy, mantenimiento del ciclo de vida de nodos y despliegue consciente de contenedores para ajustar las configuraciones de red según el entorno de ejecución.

    Exposes local services to the internet via secure Cloudflare Argo tunnels without requiring public IPs.

    Shellanytlsargoclaw-cloud
    Ver en GitHub↗5,331
  • fscarmen/sing-boxAvatar de fscarmen

    fscarmen/sing-box

    4,878Ver en GitHub↗

    Este proyecto es un script de despliegue basado en shell para configurar servidores proxy multiprotocolo utilizando sing-box. Proporciona un sistema para instalar y gestionar entornos de proxy de red en servidores remotos, soportando protocolos como Reality, Hysteria2, TUIC, Trojan y Shadowsocks. La herramienta incluye un generador de suscripciones proxy que crea listas de nodos formateadas compatibles con varios clientes proxy a través de un único enlace de suscripción. También implementa configuraciones de red especializadas, incluyendo cadenas de proxy Cloudflare WARP para evitar restricciones regionales y puertas de enlace Argo tunnel para el cruce de NAT y la penetración en intranets sin necesidad de un dominio público. El software cubre una gama de capacidades de gestión de tráfico, incluyendo el enrutamiento de proxy basado en cadenas para evitar bloqueos regionales y el despliegue de túneles websocket seguros. Proporciona una configuración de entorno automatizada y gestión del ciclo de vida del servicio a través de un motor de scripts de shell y gestión de servicios en contenedores.

    Implements Cloudflare Argo tunnels to bypass NAT and enable websocket traffic without needing a public domain.

    Shellanytlsargohysteria2
    Ver en GitHub↗4,878
  • cloudflare/cloudflare-docsAvatar de cloudflare

    cloudflare/cloudflare-docs

    4,859Ver en GitHub↗

    Este repositorio es un sitio de documentación técnica y una colección de guías y referencias para implementar servicios de redes, seguridad e infraestructura en la nube. Funciona como un portal generado por sitio estático y una plataforma de contenido headless, separando los archivos fuente de la capa de presentación para permitir un renderizado flexible. El proyecto utiliza documentación basada en markdown almacenada en un repositorio Git con control de versiones. Proporciona contenido técnico especializado, incluyendo documentación de plataforma de IA para construir agentes y gestionar inferencia, una guía de infraestructura en la nube para configuración de DNS y CDN, una referencia de edge computing para despliegue serverless y documentación de seguridad de red para Zero Trust y gestión de firewalls.

    Connects internal infrastructure to the network via outbound-only encrypted tunnels to eliminate public IP exposure.

    MDXcloudflaredocshacktoberfest
    Ver en GitHub↗4,859
  • datlechin/tableproAvatar de datlechin

    datlechin/TablePro

    4,471Ver en GitHub↗

    TablePro is a cross-platform database management client designed for browsing, querying, and administering both SQL and NoSQL databases. It functions as a unified workspace that integrates a code-centric SQL editor with schema visualization tools, allowing developers to manage complex data models and execute queries across diverse database engines. The application distinguishes itself through an agentic AI integration layer that connects language models directly to database tools, enabling automated query generation, optimization, and error fixing with configurable approval gates. It features

    Routes database traffic through existing encrypted SSH connections to access private servers without additional ports.

    Swift
    Ver en GitHub↗4,471
  • jamesturland/jimsgarageAvatar de JamesTurland

    JamesTurland/JimsGarage

    4,439Ver en GitHub↗

    JimsGarage is a collection of shell scripts and automation tools designed to help individuals deploy and manage a wide range of self-hosted services on their own hardware. It provides a structured approach to setting up containerized applications, from media servers and document management systems to VPNs and monitoring stacks, all through automated Docker-based configurations. The project distinguishes itself by offering a comprehensive library of deployment recipes that cover the full lifecycle of a home server environment. This includes not just the services themselves, but also the suppor

    Routes external traffic through a Cloudflare tunnel to expose local services without opening firewall ports.

    Shell
    Ver en GitHub↗4,439
  • productdevbook/port-killerAvatar de productdevbook

    productdevbook/port-killer

    4,085Ver en GitHub↗

    Port-killer is a TCP port management utility and process termination tool. It provides a system for discovering listening TCP ports and terminating the processes occupying them to free up network resources. The project includes a port forwarding manager and a network tunnel monitor to track active connections and verify their operational status. These components support the management of Cloudflare tunnels and Kubernetes port forwarding, incorporating automatic reconnection and status logging to maintain stable connectivity. The utility covers broad network management capabilities, including

    Tracks the heartbeat and connection state of tunnels to trigger automatic reconnection logic.

    Swiftdeveloper-toolskubernetesmacos
    Ver en GitHub↗4,085
  • protonvpn/android-appAvatar de ProtonVPN

    ProtonVPN/android-app

    3,728Ver en GitHub↗

    This project is an Android VPN client and privacy-focused network tool. It serves as a secure tunneling application designed to encrypt internet traffic and mask IP addresses on Android devices. The application provides mobile privacy protection by routing network traffic through a secure VPN infrastructure. It enables remote network access and secure connectivity for public Wi-Fi usage to mask device identity and location.

    Establishes secure tunnels between the device and remote servers to encrypt internet traffic.

    Kotlin
    Ver en GitHub↗3,728
  • octelium/octeliumAvatar de octelium

    octelium/octelium

    3,371Ver en GitHub↗

    Octelium is a zero-trust network access platform and identity-aware proxy designed to secure private HTTP, SSH, and SQL resources. It functions as a secure gateway that validates human and workload identities using OIDC, SAML, and FIDO2 passkeys before granting access to internal applications and SaaS APIs. The system is distinguished by its secretless access broker, which injects credentials—such as API keys, passwords, and AWS Sigv4 signatures—at the gateway level so users can access databases and cloud resources without managing secrets. It further specializes in AI gateway administration,

    Creates encrypted tunnels to remote hosts for secure command-line access.

    Goabacai-gatewayapi-gateway
    Ver en GitHub↗3,371
  • onedr0p/cluster-templateAvatar de onedr0p

    onedr0p/cluster-template

    2,631Ver en GitHub↗

    This project is a Kubernetes cluster management framework and infrastructure-as-code template designed to bootstrap and maintain Talos Kubernetes clusters on bare-metal or virtual machines. It provides a structured system for deploying complete orchestration environments using declarative configurations and template-driven workflows. The framework distinguishes itself through a GitOps-driven execution model that utilizes Flux for state reconciliation and Renovate for automated dependency updates of Helm charts and container images. It employs a TOML-based configuration system to generate envi

    Connects external users to internal services via secure outbound tunnels, eliminating the need for public IPs.

    YAMLciliumfluxgitops
    Ver en GitHub↗2,631
  • strrl/cloudflare-tunnel-ingress-controllerAvatar de STRRL

    STRRL/cloudflare-tunnel-ingress-controller

    1,152Ver en GitHub↗

    Este proyecto es un controlador de Kubernetes que automatiza la gestión de recursos de red orientados al público y la conectividad de ingress segura. Funciona observando definiciones de recursos personalizados para reconciliar el estado deseado del tráfico de red con la configuración real de los servicios internos. El controlador gestiona la conectividad de red estableciendo túneles de salida seguros, lo que elimina el requisito de puertos de firewall de entrada tradicionales o reenvío de puertos. Se integra directamente con interfaces de gestión de nube externas para automatizar el ciclo de vida de estos túneles y sincronizar registros de dominio, asegurando que los servicios internos permanezcan accesibles desde internet. El sistema proporciona una gestión de tráfico integral y visibilidad operativa al rastrear cambios de configuración y rendimiento del sistema a través de interfaces de registro y métricas estándar. Admite patrones de acceso de confianza cero (zero-trust) manteniendo conexiones seguras desde dentro del clúster a un gateway externo.

    Automates the lifecycle of secure outbound tunnels to edge networks, eliminating the need for public IP addresses or port forwarding.

    Gocloudflarecloudflare-tunnelingress
    Ver en GitHub↗1,152
  1. Home
  2. Security & Cryptography
  3. Secure Remote Connectivity Tools
  4. Secure Tunneling

Explorar subetiquetas

  • Cloudflare Tunnels1 sub-etiquetaSecure outbound-only tunnels to Cloudflare's edge network that remove the need for public IPs or port forwarding. **Distinct from Secure Tunneling:** Distinct from Secure Tunneling: focuses specifically on Cloudflare's tunnel technology rather than general secure tunneling methods.