Next Generation Kernel Network Tunnel
[PDF] - Whitepaper.
A curated list of WireGuard tools, projects, and resources.
This page lists names, links and short descriptions. The original list on GitHub is the source and belongs to its authors.
[PDF] - Whitepaper.
Unofficial WireGuard documentation.
Official quick start.
Official cross-platform tool to set up a WireGuard interface simply.
Creates Wireguard configuration for hub and peers with ease. :green_circle:
Simple command to manage a centralised wireguard VPN. Think wg-quick but quicker: key generation + address allocation. :green_circle:
Package wgctrl enables control of WireGuard interfaces on multiple platforms. :red_circle:
Zero overhead wireguard setup. :red_circle:
A tool to help set up WireGuard based networks. Currently, it generates configurations for peers according to a single configuration file. :red_circle:
A user-space WireGuard port-forwarder -- access ports running on peers in your WireGuard network from any device; without having to install WireGuard locally or without root access (no iptables configs). :green_circle:
A userspace WireGuard client that connects to a WireGuard peer, and exposes a SOCKS5 proxy. (Use cases: Setting up WG as a VPN requires special privilege. It tells the kernel to create a special network interface to handle WG connection. This can get messy if you do not have any special permission…
A tool for rotating the keys on peers to increase their privacy by removing their IP address from memory. :red_circle:
Wiretap is a transparent, VPN-like proxy server that tunnels traffic via WireGuard and requires no special privileges to run. :green_circle:
Simplest and fastest way to transfer files between computers via WireGuard. :green_circle:
Tailscale is a WireGuard-based app that makes secure, private networks easy for teams of any scale.
An open source implementation of the Tailscale control server. :green_circle:
A private network system that uses WireGuard under the hood. It is similar in its goals to Slack's nebula or Tailscale. :green_circle:
Kilo is a multi-cloud network overlay built on WireGuard and designed for Kubernetes (k8s + wg = kg). :green_circle:
(Previously Wiretrustee) NetBird is an open-source VPN management platform built on top of WireGuard® making it easy to create secure private networks for your organization or home. Technically, it creates an overlay network using ICE protocol (WebRTC) to negotiate P2P connections and WG (kernel…
wesher creates and manages an encrypted mesh overlay network across a group of nodes. :green_circle:
Netmaker is a VPN platform that automates WireGuard from homelab to enterprise. The key distinctions in their solutions are: fast because it can use kernel WireGuard (instead of userspace WireGuard, which is slower), tailored towards the Cloud and Kubernetes, and fully self-hostable. :green_circle:
Compare WireGuard mesh tools. :green_circle:
Auto-config WireGuard clients into a mesh :green_circle:
A combination of WireGuard, Pi-hole, and Unbound in a docker-compose project with the intent of enabling users to quickly and easily create a personally managed full or split-tunnel WireGuard VPN with ad blocking capabilities thanks to Pi-hole, and DNS caching, additional privacy options, and…
Automatically configure Wireguard interfaces in distributed system. It supports Consul as backend. :red_circle:
Deploys WireGuard VPN, Pi-Hole DNS Ad-blocking, and DNS over HTTPS in a cloud provider - or locally - using Terraform and Ansible. :green_circle:
Ansible role for installing WireGuard VPN. Supports Ubuntu, Debian, Archlinx, Fedora and CentOS. :green_circle:
Terraform module to deploy WireGuard on AWS. :red_circle:
An open-source WireGuard-based VPN server alternative to OpenVPN Access Server. You can self-host this. :green_circle:
Set up a DIY/personal VPN in the cloud. It is a set of Ansible scripts that simplify the setup of a personal WireGuard and IPsec VPN, open-sourced by Trail of Bits. :green_circle:
An all-in-one WireGuard VPN solution with a Web UI for connecting devices. This project aims to deliver a simple VPN solution for developers, homelab enthusiasts and anyone else feeling adventurous. :green_circle:
Think of it as a component that will allow you to extend your LAN over the Internet. WirtBot simplifies the process of creating your own private network into 3 steps. No registration, no accounts - Just a network that belongs to you. And it will always be completely free (except for the server/VPS…
A self-hosted and flexible configuration manager designed to make it simple to configure secure network overlays spanning heterogeneous nodes via a Web UI. :red_circle:
A WireGuard container image brought to you by LinuxServer.io. Not all image authors are as great as LinuxServer.io team. :green_circle:
A Docker image and configuration for a simple personal VPN, used for the goal of security over insecure (public) networks, not necessarily for Internet anonymity. There are currently 3 flavors. :red_circle:
WireGuard docker image. :green_circle:
Label based route/port forwarding management tool for Docker that can be used to easily route traffic of containers from/to Wireguard container, while preserving full network isolation.
A Prometheus exporter for WireGuard, very light on your server resources. :red_circle:
Linux NetworkManager has WireGuard support.
WireGuard VPN installer for Linux servers. :red_circle:
The Simplest VPN installer (scripts), designed for Raspberry Pi. :green_circle:
WireGuard road warrior installer for Ubuntu, Debian, CentOS and Fedora. :green_circle:
enables you to build your own vpn under a minute. :green_circle:
WireGuard full mesh configuration generator. :red_circle:
A gRPC server for managing wireguard tunnels. :red_circle:
Expose a WireGuard tunnel as a SOCKS5 proxy. :red_circle:
Utility to configure and manage your WireGuard tunnels. :red_circle:
A WireGuard peer manager with OAuth2 authentication. :green_circle:
WireGuard helper scripts. :red_circle:
WireGuard network configuration generator with support for multiple topologies written in Rust :red_circle:
Lightweight single binary CLI tool, roadwarrior peer management, config file generator, QR code image generator, MikroTik command generator. :green_circle:
WG Commander is a TUI for a simple WireGuard VPN setup. UI, QR Codes, Setup Wizard in the terminal. :green_circle:
Simple Web based configuration generator for WireGuard. :red_circle:
A simple WireGuard VPN server GUI. :red_circle:
WireGuard Web UI for self-serve client configurations, with optional auth. :red_circle:
The easiest way to run WireGuard VPN + Web-based Admin UI. :green_circle:
Simple, have empty interfaces for authentication :yellow_circle:
Supports LDAP and more :green_circle:
A http server helps managing wireguard devices and peers on kernel level. :green_circle:
Network-Manager VPN Plugin for WireGuard. :red_circle:
macOS menubar icon for WireGuard/wg-quick. :black_circle:
TunnlTo is a lightweight, fast, Windows WireGuard VPN client built for split tunneling. :green_circle:
A simple and easy to use WireGuard dashboard written in Python and Flask. :green_circle:
A free WireGuard VPN from Cloudflare that's trying to fix mobile Internet performance and security.
Cross-platform, unofficial CLI for Cloudflare Warp. :green_circle:
green_circle:
An unofficial configuration manager giving Linux, macOS users (among others), access to Mozilla VPN. :green_circle:
A wireguard VPN provider with Ligthning only payments, pay as you use. :red_circle:
A CoreDNS plugin that serves WireGuard peer information via DNS-SD (RFC6763) semantics. This enables use cases such as mesh networking, NAT-to-NAT connectivity, and dynamic discovery of WireGuard endpoint. :yellow_circle:
A Python project to help you find the optimal MTU values for WG server and WG peer that maximizes the upload or download speeds between a peer and server. :yellow_circle:
A C implementation of the WireGuard protocol intended to be used with the lwIP IP stack. :yellow_circle:
WireGuard implementation for ESP32 Arduino in C. :red_circle:
Taildrop was the main new feature launched in Tailscale v1.8.
Setting up WireGuard to work in restricted networks that block UDP traffic.
A simple solution. There is no need of any configurations to set split-tunneling. The example shows how Peer B can route to Peer A through a WG server. Peer B can reach a specific network (subnet) behind Peer A.
A simple solution for routing specific docker containers through a WireGuard VPN using only two simple systemd-networkd files, no cumbersome wg or ip calls.
A simple guide on how to inspect WireGuard packets in Wireshark.
WG has a bit of a trap/gotcha when running multiple independent tunnels, one of which has a default route associated with it.
The important feature of this setup is, split tunnelling.
using WireGuard Docker image by linuxserver.io
A basic Ansible playbook for deploying a WireGuard server and (local) client.
Run your own VPN with global exit nodes with Fly.io, Tailscale and Github.
A good talk from the WireGuard developer and security researcher, Jason Donenfeld explaining what WireGuard can do and how it works. The talk examine both the cryptography and kernel implementation particulars of WireGuard and explore an offensive attack perspective on network tunnels.
A good tutorial from Lawerence Systems regarding WireGuard.
A list of all Jason's presentations.
Run WireGuard and Tailscale in the browser. wireguard-go code compiled to Wasm. WebVM is proprietary WebAssembly-powered x86 virtualization tech. I'm genuinely curious how it compares to v86/Fabrice Bellard's JSLinux (like WebVM but free and opened-source).
Official Reddit WireGuard.
Official IRC on Libera Chat.
networktocode/awesome-network-automation
Curated Awesome list about Network Automation
briatte/awesome-network-analysis
A curated list of awesome network analysis resources.
jtoy/awesome-tensorflow
TensorFlow - A curated list of dedicated resources http://tensorflow.org
facyber/awesome-networking
A collection of awesome networking courses, books, tutorials and other resources
rtckit/awesome-rtc
:satellite: A curated list of awesome Real Time Communications resources
eozer/awesome-snmp
A curated list of awesome SNMP libraries, tools, and other resources.