Open Source Self Hosted Cloud

Pritunl Cloud
Declarative KVM Virtualization

KVM based alternative to Kubernetes with shell and python based live updating declarative deployments

Cloud Deployments

Declarative Virtualization with Dynamic Shell and Python Specs

Define resources with dynamic templates that adjust to configuration changes in the cluster. Provides the benefits of Kubernetes with a less complex architecture and fewer interdependent components.

Transparent Python Integration

Transparent Python Integration

Utilize both shell and Python in pod templates with a transparent shared environment.

Instance Base Images

Instance Base Images

Includes base images for common Linux distributions and FreeBSD.

Multi-Tenant Support

Multi-Tenant Support

Isolate resources into organizations and control user access to each organization.

VPC Networking

VPC Networking

Advanced VPC networking with routing table support. Source and destination checking option for instances allows site-to-site VPN configurations.

Access Policies

Access Policies

Policy controls with WebAuthn, location, source network and browser options.

Domain Management

Domain Management

Integrated domain management with API support for AWS, Cloudflare and Oracle Cloud. Configure A, AAAA and CNAME records manually or automated with pods.

Advanced Firewall

Advanced Firewall

Detailed network ingress control with firewall rules that can be defined through role matched rules or in pod templates.

Static IP Management

Static IP Management

Static IP management that can manage pools of public IPv4 and IPv6 addresses that are either host specific or shared between multiple hosts. Support for DHCPv4, DHCPv6 and SLAAC is also available.

S3 Storage Integration

S3 Storage Integration

Integrated support for S3 API based storage providers. Pod template images, disk snapshots and backups are stored on the S3 storage.

SSH Key Management

SSH Key Management

Easily manage multiple SSH keys or SSH certificates to control access to instances.

Secrets Storage

Secrets Storage

Store secrets in JSON format and provide access through the IMDS service and pod templates.

Load Balancer

Load Balancer

Built in load balancer to provide access from the host to web servers running on instances.

A New Template Format

A new Markdown and YAML based template format that allows adding notes and documentation right into the deployment spec. Python and Shell support allows creating dynamic deployments that can handle complex configurations all in one template.

Markdown & YAML based.
Add notes and documentation directly into deployment specs with a familiar and readable format.
Python & Shell support.
Create dynamic deployments that can handle complex configurations with Python and Shell scripting.
All-in-one template.
Handle everything in a single unified template, simplifying deployment management and reducing complexity.
Template Editor
Deployments Log Output

Live Deployment Logs

Live view of deployment status with logging and resource metrics. All deployment management and monitoring can be done from the web console.

Real-time monitoring.
View live deployment status, logging output, and resource metrics directly from the web console.
Web console management.
All deployment management and monitoring can be done entirely from the web console interface.
Statement based plans.
Take actions such as scaling or restarting deployments based on the state of existing deployments.

Deployment Migration

Live migrate deployment templates with a diff view of changes that will be applied. Deployments can be migrated from older or newer template commits.

Live migration.
Migrate deployment templates between commits without downtime or service interruption.
Diff view.
Visual diff view of all changes that will be applied before committing the migration.
Version flexibility.
Migrate from older or newer template commits, allowing both upgrades and rollbacks.
Deployment Migration
Certificates Management

Automatic SSL Certificates

Automatically create SSL certificates from Lets Encrypt with support for HTTP validation or DNS CNAME validation. Certificates are dynamically updated in deployment templates with the IMDS service.

Lets Encrypt integration.
Automatically create and renew SSL certificates with HTTP validation on port 80 or DNS CNAME validation.
Multi-provider DNS.
DNS CNAME validation with AWS, Cloudflare, and Oracle Cloud DNS APIs. Wildcard certificates supported.
Automatic renewal.
Certificates automatically renew and are dynamically updated in deployment templates via the IMDS service.

Visual Deployment Management with an Integrated Editor

Visually manage large pod deployments with an integrated editor and comprehensive web console.

Deployments View

Integrated Template Editor

Integrated Monaco editor for editing templates. Includes syntax highlighting and autocomplete support for all resources in Pritunl Cloud.

Template Editor

Template Diff View

Compare changes between different template commits and quickly diagnose issues from changes. All from the web console editor.

Template Diff Editor

WebAuthn Token Control

Manage users WebAuthn tokens from the administrator console or allow the user to validate their own WebAuthn token.

User Devices Management

Open Source Virtualization

Scalable self hosted bare metal virtualization with no vendor lock-in.

Multi-Factor Authentication

Multifactor secondary authentication from Duo, OneLogin Protect, Okta Verify and any WebAuthn hardware token including YubiKeys and Google Titan Tokens.

High Availability

All nodes run independently and will continue running in the event of other nodes failing. Additional nodes can be added and removed as needed for fast scaling without downtime.

Instance IMDS Service

IMDS agent delivers deployment information, platform resource access, and real-time CPU, memory, and disk metrics. Security CVE alerts notify when DNF updates are pending.

Single Sign-On Providers

Supported single sign-on and secondary authentication providers.

Pricing

Pritunl Cloud is free to use with no limits on the number of servers or users. An optional subscription provides enterprise features including multi-tenant support, single sign-on and geo-IP data. The subscription can be activated from the admin web console at anytime.

Community

Free

Free to use with no limits on servers or users.

  • Unlimited Users
  • Unlimited Servers
  • Distributed Architecture
  • WebAuthn Authentication
  • Lets Encrypt Certificates
  • DNS Management

Enterprise

$50/month

Free 7 day trial included.

  • Multi-Tenant Support
  • Single Sign-On
  • Geo-IP Data
  • Email Support
  • Credit Card Payments
  • Bank ACH Payments
Get started today

Support

Email and community forums available for support. Subscribe to the Substack for security and update announcements.