Nanami gives people secure access to private networks without asking every user to understand VPN configuration. Administrators manage devices, groups, access rules, routes, gateways, and DNS from one product.
What you can do
- sign in with a password and MFA, a configured SSO provider, or browser approval,
- add computers and servers through Nanami Desktop, the CLI, or WireGuard,
- create private networks and grant access to people and groups,
- route selected traffic through a gateway,
- see online, offline, and connected state from observed data,
- review safe errors and audit history without exposing credentials or raw configuration.
Choose where Nanami runs
Nanami Cloud is operated by Nanami. It is the simpler choice when your team does not want to operate the Control Plane and shared platform services.
Self-hosted Community runs in infrastructure you control. Your operators own deployment, TLS, backups, upgrades, monitoring, and gateway availability. The supported setup starts from a Community release package or source bundle. This does not imply that a signed installer or anonymous public distribution package is available.
Both choices use the same product model: workspace, devices, networks, access rules, routes, gateways, and observed connection state.
What Nanami does not claim
Nanami does not show Connected because a user signed in, a device enrolled, a service started, or a driver is installed. Connected appears only after the local runtime observes the connection.
GRE is not available as a production transport. WireGuard is the supported transport.
Get started
Read Choose how to run Nanami, then complete the First connection.