
NetBird
Open-source Zero Trust Networking platform replacing traditional VPNs with WireGuard-based mesh overlay.
About NetBird
NetBird is an open-source Zero Trust Networking platform that replaces traditional VPNs with a WireGuard-based peer-to-peer mesh overlay. It combines configuration-free networking with centralized access control, enabling secure remote access for distributed teams and hybrid cloud infrastructure.
Every machine runs a lightweight agent that auto-connects over encrypted WireGuard tunnels. No open ports, no complex firewall rules, no VPN gateways. Includes SSO/MFA, device posture checks, DNS management, activity logging with SIEM streaming, and a Terraform provider for infrastructure-as-code. When direct P2P fails (e.g., carrier-grade NAT), connections fall back to relay servers. Licensed under BSD-3 with AGPLv3 for management/signal/relay components.
Key Features
- WireGuard-based P2P mesh overlay with automatic NAT traversal
- Granular access policies with SSO, MFA, and device posture checks
- IdP group sync (Okta, Azure, Google, GitHub) and periodic re-authentication
- Admin web UI, Terraform provider, Ansible collection, and REST API
Self-Hosting Notes
Find another tool
More in Network & Firewall
OPNsense
FreeBSD-based firewall and routing platform with a modern GUI, intrusion prevention, VPN support, and plugin ecosystem.
Pangolin
Self-hosted tunneled reverse proxy with identity-aware access control.
WireGuard / Firezone
High-performance, secure VPN infrastructure for remote team networks.
WireGuard Easy
All-in-one WireGuard VPN with web UI for easy client management.