KVM based alternative to Kubernetes with shell and python based live updating declarative deployments

Define resources with dynamic templates that adjust to configuration changes in the cluster. Provides the benefits of Kubernetes with a less complex architecture and fewer interdependent components.

Utilize both shell and Python in pod templates with a transparent shared environment.

Includes base images for common Linux distributions and FreeBSD.

Isolate resources into organizations and control user access to each organization.

Advanced VPC networking with routing table support. Source and destination checking option for instances allows site-to-site VPN configurations.

Policy controls with WebAuthn, location, source network and browser options.

Integrated domain management with API support for AWS, Cloudflare and Oracle Cloud. Configure A, AAAA and CNAME records manually or automated with pods.

Detailed network ingress control with firewall rules that can be defined through role matched rules or in pod templates.

Static IP management that can manage pools of public IPv4 and IPv6 addresses that are either host specific or shared between multiple hosts. Support for DHCPv4, DHCPv6 and SLAAC is also available.

Integrated support for S3 API based storage providers. Pod template images, disk snapshots and backups are stored on the S3 storage.

Easily manage multiple SSH keys or SSH certificates to control access to instances.

Store secrets in JSON format and provide access through the IMDS service and pod templates.

Built in load balancer to provide access from the host to web servers running on instances.
A New Template Format
A new Markdown and YAML based template format that allows adding notes and documentation right into the deployment spec. Python and Shell support allows creating dynamic deployments that can handle complex configurations all in one template.


Live Deployment Logs
Live view of deployment status with logging and resource metrics. All deployment management and monitoring can be done from the web console.
Deployment Migration
Live migrate deployment templates with a diff view of changes that will be applied. Deployments can be migrated from older or newer template commits.


Automatic SSL Certificates
Automatically create SSL certificates from Lets Encrypt with support for HTTP validation or DNS CNAME validation. Certificates are dynamically updated in deployment templates with the IMDS service.
Visual Deployment Management with an Integrated Editor
Visually manage large pod deployments with an integrated editor and comprehensive web console.

Integrated Template Editor
Integrated Monaco editor for editing templates. Includes syntax highlighting and autocomplete support for all resources in Pritunl Cloud.

Template Diff View
Compare changes between different template commits and quickly diagnose issues from changes. All from the web console editor.

WebAuthn Token Control
Manage users WebAuthn tokens from the administrator console or allow the user to validate their own WebAuthn token.

Open Source Virtualization
Scalable self hosted bare metal virtualization with no vendor lock-in.
Multifactor secondary authentication from Duo, OneLogin Protect, Okta Verify and any WebAuthn hardware token including YubiKeys and Google Titan Tokens.
All nodes run independently and will continue running in the event of other nodes failing. Additional nodes can be added and removed as needed for fast scaling without downtime.
IMDS agent delivers deployment information, platform resource access, and real-time CPU, memory, and disk metrics. Security CVE alerts notify when DNF updates are pending.
Pricing
Pritunl Cloud is free to use with no limits on the number of servers or users. An optional subscription provides enterprise features including multi-tenant support, single sign-on and geo-IP data. The subscription can be activated from the admin web console at anytime.
Free
Free to use with no limits on servers or users.
$50/month
Free 7 day trial included.
Support
Email and community forums available for support. Subscribe to the Substack for security and update announcements.