Manage remote access with zero trust policies and peer to peer connections built on the WireGuard protocol.

FireZone is an open-source platform that provides secure remote access using a zero-trust model. It replaces traditional VPNs by using peer-to-peer connections to grant granular access to specific applications or entire subnets based on group policies. The software is deployed as a server-side control plane with gateways installed on the target infrastructure and clients installed on end-user devices to facilitate secure connectivity.
Users manage access through a web-based admin interface, while the underlying data plane handles the encrypted traffic. It is available as a managed cloud service or as a self-hosted installation for educational and hobbyist use. The system supports a wide range of platforms, providing dedicated clients for Windows, macOS, Linux, iOS, and Android to ensure a consistent connection experience across different operating systems.
The architecture consists of a control plane written in Elixir and Phoenix, while the data plane and clients are developed in Rust. This combination allows for a responsive admin portal and a lightweight, high-performance gateway that requires only a few megabytes of memory. The system is designed for organizations of any size that need to secure remote access to cloud or on-premises resources without the overhead of legacy hub-and-spoke VPNs. It integrates with existing identity providers to sync users and groups automatically, ensuring that access permissions remain current with organizational changes.
FireZone is a modern network security tool focused on speed, scalability, and zero-trust principles.
A cross platform GUI client for managing rule based network tunnels and proxy configurations via Tauri.
Creates private WireGuard networks to connect devices across clouds, VPCs, and on-premises networks without modifying firewall rules.
Join our newsletter to get shiny new open source software delivered to your inbox. Unsubscribe anytime.