OpenVLAN ships as a single platform β the mesh, the identity layer, the policy engine, and the tooling around them.
The core mesh that connects everything.
Devices connect peer-to-peer over encrypted tunnels; traffic never detours through a central appliance.
Learn more βEvery packet rides a AmneziaWG tunnel β fast, modern, audited cryptography.
About AmneziaWG βAdvertise whole VPCs, offices, or LANs into the tailnet with one command.
Site-to-site βRoute all device traffic through a trusted exit node β your own or a partner's.
Exit nodes βDirect connections behind cafΓ© wifi, LTE, and double-NAT β relay fallback when truly blocked.
Service-to-service identity and encrypted paths between servers, containers, and clusters.
Workload connectivity βZero Trust controls layered on top of the mesh.
Okta, Entra ID, Google Workspace β users and groups sync automatically.
Identity integrations βSSO-authenticated SSH sessions with recording and per-command audit.
SSH feature βCapture privileged terminal sessions for replay during reviews.
Privileged access βGive model training and inference jobs their own identities and rules.
Securing AI βUnified inventory, policy, and audit for every AI service and agent on your network.
Aperture βEphemeral per-job credentials for pipelines, scoped to exactly what they deploy.
CI/CD connectivity βThe small features people end up loving most.
Manage the whole network as reviewable code.
Invite, group, and revoke from one console.
The free plan includes the full mesh, MagicDNS, and up to 100 devices per user.