Cloudron makes it easy to run web apps like WordPress, Nextcloud, GitLab on your server. Find out more or install now.


Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • Bookmarks
  • Search
Skins
  • Light
  • Brite
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (No Skin)
  • No Skin
Collapse
Brand Logo

Cloudron Forum

Apps | Demo | Docs | Install
  1. Cloudron Forum
  2. App Wishlist
  3. Firezone - FOSS noconf Mesh VPN using Wireguard, alternative to ZeroTier, Tailscale, OmniEdge, Netmaker etc

Firezone - FOSS noconf Mesh VPN using Wireguard, alternative to ZeroTier, Tailscale, OmniEdge, Netmaker etc

Scheduled Pinned Locked Moved App Wishlist
10 Posts 7 Posters 4.0k Views 9 Watching
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • marcusquinnM Offline
    marcusquinnM Offline
    marcusquinn
    wrote on last edited by marcusquinn
    #1
    • https://www.firezone.dev/
    • https://github.com/firezone/firezone
    • https://docs.firezone.dev/deploy
    • https://docs.firezone.dev/deploy/docker/
    • https://github.com/firezone/fz_docker
    • https://docs.firezone.dev/authenticate/oidc/keycloak/
    • https://alternativeto.net/software/firezone/about/
    • https://alternativeto.net/software/firezone/?license=opensource
    • https://forum.cloudron.io/topic/7560/omniedge-decentralised-noconf-mesh-vpn-using-wireguard-alternative-to-zerotier-tailscale-etc
    • https://forum.cloudron.io/topic/7563/tailscale-decentralised-noconf-mesh-vpn-using-wireguard-alternative-to-zerotier-etc
    • https://forum.cloudron.io/topic/7565/netmaker-foss-noconf-mesh-vpn-using-wireguard-alternative-to-zerotier-tailscale-omniedge-etc
    • https://forum.cloudron.io/topic/7571/netbird-foss-noconf-mesh-vpn-using-wireguard-alternative-to-zerotier-tailscale-omniedge-netmaker-etc

    Self-hosted secure remote access
    Firezone is an open-source VPN and firewall server built on WireGuard® to be stable, performant, and lightweight. Deploy in minutes on your own infrastructure.

    sudo -E bash -c "$(curl -fsSL https://github.com/firezone/firezone/raw/master/scripts/install.sh)"

    alt text

    Uses the standard Wireguard clients for all platforms, and the QR code generation looks good for making the setups easy enough for non-technical users.

    b6363cfd-681f-4024-8e19-0e23177f0c7d-image.png

    Looks like it supports Keycloak, so may interest @nj

    Common Use Cases

    NAT Gateway (Static IP)

    Restrict access for a self-hosted web app to a single whitelisted static IP running Firezone. (a highly recommended additional layer of protection for self-hosted apps that don't need to be exposed to on public IPs).

    Reverse Tunnels

    Enable an administrator to access a server, container, or machine that is normally behind a NAT or firewall.

    Split Tunnels

    Only traffic to defined IP ranges will be routed through the VPN server.

    Web Design & Development: https://www.evergreen.je
    Technology & Apps: https://www.marcusquinn.com

    timconsidineT micmcM 2 Replies Last reply
    10
    • marcusquinnM marcusquinn referenced this topic on
    • marcusquinnM marcusquinn referenced this topic on
    • marcusquinnM marcusquinn referenced this topic on
    • marcusquinnM marcusquinn
      • https://www.firezone.dev/
      • https://github.com/firezone/firezone
      • https://docs.firezone.dev/deploy
      • https://docs.firezone.dev/deploy/docker/
      • https://github.com/firezone/fz_docker
      • https://docs.firezone.dev/authenticate/oidc/keycloak/
      • https://alternativeto.net/software/firezone/about/
      • https://alternativeto.net/software/firezone/?license=opensource
      • https://forum.cloudron.io/topic/7560/omniedge-decentralised-noconf-mesh-vpn-using-wireguard-alternative-to-zerotier-tailscale-etc
      • https://forum.cloudron.io/topic/7563/tailscale-decentralised-noconf-mesh-vpn-using-wireguard-alternative-to-zerotier-etc
      • https://forum.cloudron.io/topic/7565/netmaker-foss-noconf-mesh-vpn-using-wireguard-alternative-to-zerotier-tailscale-omniedge-etc
      • https://forum.cloudron.io/topic/7571/netbird-foss-noconf-mesh-vpn-using-wireguard-alternative-to-zerotier-tailscale-omniedge-netmaker-etc

      Self-hosted secure remote access
      Firezone is an open-source VPN and firewall server built on WireGuard® to be stable, performant, and lightweight. Deploy in minutes on your own infrastructure.

      sudo -E bash -c "$(curl -fsSL https://github.com/firezone/firezone/raw/master/scripts/install.sh)"

      alt text

      Uses the standard Wireguard clients for all platforms, and the QR code generation looks good for making the setups easy enough for non-technical users.

      b6363cfd-681f-4024-8e19-0e23177f0c7d-image.png

      Looks like it supports Keycloak, so may interest @nj

      Common Use Cases

      NAT Gateway (Static IP)

      Restrict access for a self-hosted web app to a single whitelisted static IP running Firezone. (a highly recommended additional layer of protection for self-hosted apps that don't need to be exposed to on public IPs).

      Reverse Tunnels

      Enable an administrator to access a server, container, or machine that is normally behind a NAT or firewall.

      Split Tunnels

      Only traffic to defined IP ranges will be routed through the VPN server.

      timconsidineT Offline
      timconsidineT Offline
      timconsidine
      App Dev
      wrote on last edited by
      #2

      @marcusquinn not sure I know enough yet to judge, but I’m drawn more to this one out of the various options posted.
      Just my initial unqualified 2p

      murgeroM 1 Reply Last reply
      1
      • timconsidineT timconsidine

        @marcusquinn not sure I know enough yet to judge, but I’m drawn more to this one out of the various options posted.
        Just my initial unqualified 2p

        murgeroM Offline
        murgeroM Offline
        murgero
        App Dev
        wrote on last edited by
        #3

        @timconsidine I actually JUST installed this on a non-cloudron server and I gotta say it would be perfect as an app.

        --
        https://urgero.org
        ~ Professional Nerd. Freelance Programmer. ~

        1 Reply Last reply
        3
        • marcusquinnM marcusquinn
          • https://www.firezone.dev/
          • https://github.com/firezone/firezone
          • https://docs.firezone.dev/deploy
          • https://docs.firezone.dev/deploy/docker/
          • https://github.com/firezone/fz_docker
          • https://docs.firezone.dev/authenticate/oidc/keycloak/
          • https://alternativeto.net/software/firezone/about/
          • https://alternativeto.net/software/firezone/?license=opensource
          • https://forum.cloudron.io/topic/7560/omniedge-decentralised-noconf-mesh-vpn-using-wireguard-alternative-to-zerotier-tailscale-etc
          • https://forum.cloudron.io/topic/7563/tailscale-decentralised-noconf-mesh-vpn-using-wireguard-alternative-to-zerotier-etc
          • https://forum.cloudron.io/topic/7565/netmaker-foss-noconf-mesh-vpn-using-wireguard-alternative-to-zerotier-tailscale-omniedge-etc
          • https://forum.cloudron.io/topic/7571/netbird-foss-noconf-mesh-vpn-using-wireguard-alternative-to-zerotier-tailscale-omniedge-netmaker-etc

          Self-hosted secure remote access
          Firezone is an open-source VPN and firewall server built on WireGuard® to be stable, performant, and lightweight. Deploy in minutes on your own infrastructure.

          sudo -E bash -c "$(curl -fsSL https://github.com/firezone/firezone/raw/master/scripts/install.sh)"

          alt text

          Uses the standard Wireguard clients for all platforms, and the QR code generation looks good for making the setups easy enough for non-technical users.

          b6363cfd-681f-4024-8e19-0e23177f0c7d-image.png

          Looks like it supports Keycloak, so may interest @nj

          Common Use Cases

          NAT Gateway (Static IP)

          Restrict access for a self-hosted web app to a single whitelisted static IP running Firezone. (a highly recommended additional layer of protection for self-hosted apps that don't need to be exposed to on public IPs).

          Reverse Tunnels

          Enable an administrator to access a server, container, or machine that is normally behind a NAT or firewall.

          Split Tunnels

          Only traffic to defined IP ranges will be routed through the VPN server.

          micmcM Offline
          micmcM Offline
          micmc
          wrote on last edited by
          #4

          @marcusquinn Awesome find!

          Ignorance is not an excuse anymore!
          https://AutomateKit.com

          necrevistonnezrN 1 Reply Last reply
          1
          • marcusquinnM marcusquinn referenced this topic on
          • micmcM micmc

            @marcusquinn Awesome find!

            necrevistonnezrN Offline
            necrevistonnezrN Offline
            necrevistonnezr
            wrote on last edited by
            #5

            @micmc does that work with dynamic IPs as well?

            marcusquinnM 1 Reply Last reply
            0
            • necrevistonnezrN necrevistonnezr

              @micmc does that work with dynamic IPs as well?

              marcusquinnM Offline
              marcusquinnM Offline
              marcusquinn
              wrote on last edited by
              #6

              @necrevistonnezr My complete guess is the broker service needs a fixed IP or domain mapped to a dynamic DNS service, but that clients shouldn't need fixed IPs.

              Web Design & Development: https://www.evergreen.je
              Technology & Apps: https://www.marcusquinn.com

              1 Reply Last reply
              1
              • fbartelsF fbartels referenced this topic on
              • marcusquinnM Offline
                marcusquinnM Offline
                marcusquinn
                wrote on last edited by
                #7

                Docker deployment now preferred: https://docs.firezone.dev/deploy/docker/

                Web Design & Development: https://www.evergreen.je
                Technology & Apps: https://www.marcusquinn.com

                1 Reply Last reply
                3
                • marcusquinnM Offline
                  marcusquinnM Offline
                  marcusquinn
                  wrote on last edited by
                  #8

                  Keycloak integration: https://docs.firezone.dev/authenticate/oidc/keycloak/

                  Web Design & Development: https://www.evergreen.je
                  Technology & Apps: https://www.marcusquinn.com

                  1 Reply Last reply
                  3
                  • marcusquinnM marcusquinn referenced this topic on
                  • marcusquinnM marcusquinn referenced this topic on
                  • KubernetesK Offline
                    KubernetesK Offline
                    Kubernetes
                    App Dev
                    wrote on last edited by
                    #9

                    Having this on Cloudron would be fantastic

                    1 Reply Last reply
                    2
                    • marcusquinnM marcusquinn referenced this topic on
                    • marcusquinnM marcusquinn referenced this topic on
                    • L Offline
                      L Offline
                      LoudLemur
                      wrote on last edited by
                      #10

                      Thanks to @marcusquinn for helping me find this request. There is at the moment an early access beta test for version 1.0 available here. Your contact details would be needed:

                      https://www.firezone.dev/product/early-access

                      1 Reply Last reply
                      1
                      • marcusquinnM marcusquinn referenced this topic on
                      Reply
                      • Reply as topic
                      Log in to reply
                      • Oldest to Newest
                      • Newest to Oldest
                      • Most Votes


                      • Login

                      • Don't have an account? Register

                      • Login or register to search.
                      • First post
                        Last post
                      0
                      • Categories
                      • Recent
                      • Tags
                      • Popular
                      • Bookmarks
                      • Search