vaultssh
netbird
vaultssh | netbird | |
---|---|---|
7 | 108 | |
60 | 9,175 | |
- | 6.8% | |
0.0 | 9.7 | |
over 2 years ago | 6 days ago | |
Rust | Go | |
MIT License | BSD 3-clause "New" or "Revised" License |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
vaultssh
-
Certificate based ssh?
Yes. I use Vault SSH certificates with a tool I wrote: vaultssh. Currently, I'm using Auth0 configured as an OIDC provider for Vault. My account is secured with 2FA using a hardware key. The result is pretty much what you see in the GIF on the vaultssh repo: I call vssh and authenticate to Auth0. I keep my certs valid for 12 hours to limit long-lived credentials.
-
SSH to your home lab without managing keys
That's the main selling point for certs. I use them in my homelab for the sole purpose of not keeping long-lived private keys on my machines. Is it unnecessary? Perhaps if you don't care about security, but for me, it's much easier to just copy my CA public key to all of my hosts and generate certs on the fly (I use vaultssh).
-
vaultssh: A small CLI wrapper for authenticating with SSH keys from Hashicorp Vault
Github
- vaultssh: CLI wrapper for authenticating with SSH keys from Hashicorp Vault
-
GH Actions Code Review
I've been using a pet project to learn Github Actions recently and wanted to reach out and see if anyone was interested in providing some feedback on my first CI/CD pipeline. You can see it here.
netbird
-
AWS Lambda Serverless Security. Mistakes, Oversights, and Potential Vulnerabilities
The best way to securely connect your functions to your other resources is with an encrypted mesh network like NetBird. NetBird lets you link your infrastructure together using a zero-config private WireGuard network that works across cloud, serverless, and on-premise infrastructure.
-
List of ngrok/Cloudflare Tunnel alternatives and other tunneling software and services. Focus on self-hosting.
NetBird - NetBird is an open-source VPN management platform built on top of WireGuard® making it easy to create secure private networks for your organization or home.
-
Using NetBird for Kubernetes Access
NetBird simplifies Kubernetes access with its zero-configuration approach, leveraging WireGuard's simplicity and strength. It seamlessly integrates with various tools, offering transparency and high reliability as an open source solution.
- JIT WireGuard
- Nebula is Not the Fastest Mesh VPN (But neither are any of the others)
-
A word of caution about Tailscale
Netmaker (https://www.netmaker.io/) Netbird (https://netbird.io/)
-
Free Tech Tools and Resources - Multi-clock Display, Networking Tools, Digital Forensics & More
NetBird is a configuration-free, peer-to-peer private network combined with a centralized access control system. Utilizing a WireGuard-based overlay network, it ensures encrypted connections between machines without the need for complex configurations such as port openings, intricate firewall rules, or VPN gateways. Prioritizes security with intuitive management of granular access policies for secure remote access, applicable universally across any infrastructure. petr205 explains, "Their SaaS version is free up to 100 machines and 5 users, but the self-hosted version is exactly the same and has very low requirements."
-
Show HN: WireHub – easily create and share WireGuard networks
It is always great to see another solution using Wireguard, which is a great technology for modern private connectivity.
I built https://github.com/netbirdio/netbird, which can be self-hosted and offers an option to run Wireguard without managing firewalls for P2P connectivity.
- Would we still create Nebula today?
- Netbirdio/netbird: Connect devices into a single private WireGuard mesh network
What are some alternatives?
Keycloak - Open Source Identity and Access Management For Modern Applications and Services
tailscale - The easiest, most secure way to use WireGuard and 2FA.
dashboard - NetBird Management Service Web UI Panel
Netmaker - Netmaker makes networks with WireGuard. Netmaker automates fast, secure, and distributed virtual networks.
auth0-java - Java client library for the Auth0 platform
ZeroTier - A Smart Ethernet Switch for Earth
headscale - An open source, self-hosted implementation of the Tailscale control server
Nebula - A scalable overlay networking tool with a focus on performance, simplicity and security
firezone - Open-source VPN server and egress firewall for Linux built on WireGuard. Firezone is easy to set up (all dependencies are bundled thanks to Chef Omnibus), secure, performant, and self hostable.
drago - ☁️ Securely connect anything with WireGuard® and manage all your networks from a single place.
tinc - a VPN daemon
coturn - coturn TURN server project