Access control
Who sees whom, which ports are open, and who may sign in.
Visibility is the first control
Access policies are group-to-group rules that decide who appears in whose peer list. A device that is not in your peer list is not something you have to be firewalled from — you were never told it exists.
Controls
- Access policies — Group-to-group visibility rules.
- Port rules — Per-peer inbound filtering, enforced on the receiving client rather than centrally.
- Users and roles — Admin and non-admin accounts, argon2-hashed.
- Audit log — Enrollments, logins, policy and route changes, with source addresses.
- API tokens and service accounts — For automation that should not carry a person's credentials.
- Two-step sign-in — Available for accounts.
Pro features
- Device approval — An admin admits each new device before it joins. Opt-in per setup key.
- Directory login — LDAP or Active Directory credentials, with the role taken from a nominated group.
Hosted identity providers are not supported. OIDC exists only as a preview; directory login is the supported path.