OpenVLAN + AWS

A private path into every VPC you run. Connect RDS, EKS, EC2, and private S3 endpoints without public exposure — and buy OpenVLAN through AWS Marketplace.

Patterns customers run on AWS

VPC subnet routing

One small EC2 instance advertises the VPC CIDR. Every laptop, CI runner, and admin box reaches private subnets with no internet gateways.

Private RDS & ElastiCache

Developers connect to databases that have no public endpoints — access controlled by identity, not IP allowlists.

EKS access

The OpenVLAN operator exposes the Kubernetes API privately, and routes pods and services into your tailnet.

Private S3 & DynamoDB

Use VPC endpoints, then give humans and CI a secure path to them via gateway VPC endpoints.

Hybrid on-prem

Bridge the office or data center to AWS with site-to-site tunnels — no Transit Gateway hub-and-spoke tax for small sites.

Audit-ready egress

Route cloud egress through approved exit nodes with full logging, for workloads that must appear from known regions.

Buy through Marketplace

Commit your AWS spend to OpenVLAN and simplify procurement.

AWS Marketplace listing

Private offers available for Premium and Enterprise plans. Use committed spend (EDP/EMI) and skip a separate vendor cycle.

See plans →

Partner benefits

Registered partners earn margin on Marketplace deals too. Register the opportunity first, then transact.

Register a deal →

Quick start on AWS

# on a small EC2 instance in your VPC
$ curl -fsSL https://www.openvlan.com/install.sh | sh
$ openvlan up
# advertise the VPC range to your tailnet
$ openvlan up --advertise-routes=10.0.0.0/16
# approve the route in the admin console, then from your laptop:
$ psql -h db.internal.prod -U app