reverse-proxy
Lightweight web UI for managing Caddy reverse proxy. Wildcard SSL • Auto-detection • One-click migration.
Local HTTPS Domains, Tunnels & Dev Environment Toolkit. Give your localhost a local or public URL.
Turn localhost:3000 into https://app.test with path routing, HTTPS, HMR support, or get a public url without deployment.
Related contents:
High Performance Web Platform Based on Nginx and LuaJIT.
OpenResty® is a dynamic web platform based on NGINX and LuaJIT.
OpenResty® is a full-fledged web platform that integrates our enhanced version of the Nginx core, our enhanced version of LuaJIT, many carefully written Lua libraries, lots of high quality 3rd-party Nginx modules, and most of their external dependencies. It is designed to help developers easily build scalable web applications, web services, and dynamic web gateways.
Open-Source AI Gateway with Workflows, Aliases, and Usage Tracking. AI Gateway for Tracking, Decoupling, Debugging your AI Usage.
High-performance AI gateway written in Go - unified OpenAI-compatible API for OpenAI, Anthropic, Gemini, Groq, xAI & Ollama. LiteLLM alternative with observability, guardrails & streaming.
A Man-in-the-Middle proxy written in Rust. Intercept, inspect, and modify HTTP/HTTPS traffic with Lua scripting, a TUI, and a web interface.
A programmable MITM proxy that intercepts HTTP/HTTPS traffic so you don't have to guess what your app is doing. Forward & reverse modes, TLS interception, TUI, terminal, and web GUI.
Related contents:
The open source toolbox for resilient operations.
Rebound is a set of tools, ranging from a network injection fault proxy to a reliability automation platform, so people can rely on you being there when they need.
Related contents:
Named .localhost URLs for Development. Replace port numbers with stable, named local URLs. For humans and agents.
Portless replaces port numbers with stable, named .localhost URLs for local development. For humans and agents.
Personal ngrok alternative. Expose local ports to the internet with automatic HTTPS, an interactive TUI dashboard, and HTTP request inspection -- all through your own VPS.
Open Source P2P Reverse Proxy. P2P Tunnels for Instant Access.
Create P2P tunnels instantly that bypass any network, firewall, NAT restrictions and share your local servers with the world securely. No Dynamic DNS required.
Holesail is the world's first truly peer-to-peer proxy for TCP and UDP ports. No port forwarding, servers or configuration required.
Related contents:
Puts Docker Containers to sleep and wakes them back up when they're needed.
Written in Node.js, this application acts as a HTTP reverse proxy and stops Docker containers which haven't been accessed recently and starts them again when a new request comes in. ContainerNursery also makes sure there are no more active WebSocket connections before stopping the container.
Related contents:
tunnelto lets you expose your locally running web server via a public URL. Written in Rust. Built completely with async-io on top of tokio.
Related contents:
Ingress NGINX Controller for Kubernetes.
ingress-nginx is an Ingress controller for Kubernetes using NGINX as a reverse proxy and load balancer.
Related contents:
- Ingress NGINX Retirement: What You Need to Know @ Kubernetes Contributors.
- Migration assistance from Ingress NGINX to HAProxy Kubernetes Ingress Controller @ HAProxy.
- Another open source project dies of neglect, leaving thousands scrambling @ The Register.
- Navigating the ingress-nginx archival: why now is the time to move to Cilium @ CNCF.
- Before You Migrate: Five Surprising Ingress-NGINX Behaviors You Need to Know @ kubernetes.
Smart Auto Start/Stop for Proxmox Containers via Traefik.
Wake-LXC is a smart proxy service that automatically starts and stops Proxmox LXC containers based on incoming traffic, saving resources while maintaining seamless user access.
MCP OAuth Proxy incl. dynamic client registration (DCR), MCP prompt analytics and MCP firewall to build enterprise grade MCP servers.
Jetski is an Open Source MCP Analytics and Authentication Platform - part of HyprMCP. It solves the three biggest problems teams face when developing MCP servers with zero code changes:
Varnish Cache is a web application accelerator also known as a caching HTTP reverse proxy. You install it in front of any server that speaks HTTP and configure it to cache the contents. Varnish Cache is really, really fast. It typically speeds up delivery with a factor of 300 - 1000x, depending on your architecture. A high level overview of what Varnish does can be seen in this video.
A Cloudflare alternative for local and cloud use, can be used ontop of cloudflare for cloudflares paid features, but for free!
NetGoat is a blazing-fast, self-hostable reverse proxy and traffic manager designed for developers, homelabbers, and teams who want Cloudflare-like features without the cost.
A free and open source tunneling tool.
Tunnelmole is a simple tool to give your locally running HTTP(s) servers a public URL.
Related contents:
A lightweight proxy manager built on Tailscale's tsnet library that enables multiple HTTPS services on a Tailnet
ProxyAuth secures backend APIs through a fast authentication gateway. It encrypts tokens using ChaCha20 + HMAC-SHA256, with config-defined secrets. It features built-in rate limiting (on proxy and auth routes) and uses Argon2 with auto-generated salts for secure password hashing. The service is extremely fast, handling 100,000+ requests per second under load.
Related contents:
nginx ("engine x") is an HTTP web server, reverse proxy, content cache, load balancer, TCP/UDP proxy server, and mail proxy server. Originally written by Igor Sysoev and distributed under the 2-clause BSD License.
Related contents:
🔌 Command-line reverse proxy for forwarding HTTP requests through an outbound proxy.
prxy is a command-line reverse proxy written in Go for forwarding HTTP requests through an outbound proxy, while automatically rewriting the Host header for you.
Related contents:
A reverse proxy that provides authentication with Google, Azure, OpenID Connect and many more identity providers.
OAuth2-Proxy is a flexible, open-source tool that can act as either a standalone reverse proxy or a middleware component integrated into existing reverse proxy or load balancer setups. It provides a simple and secure way to protect your web applications with OAuth2 / OIDC authentication. As a reverse proxy, it intercepts requests to your application and redirects users to an OAuth2 provider for authentication. As a middleware, it can be seamlessly integrated into your existing infrastructure to handle authentication for multiple applications.
Related contents:
Simple yet powerful Traefik manager, enhanced with advanced features.
Mantræ is a user-friendly web interface designed to simplify the management of Traefik's dynamic configurations. Similar to Nginx Proxy Manager (NPM), this application allows you to manage your dynamic Traefik configuration from the comfort of a simple web ui.
Mantrae provides an intuitive UI for managing Traefik routers, middlewares, and DNS entries, making setup and configuration straightforward.
Nginx webserver and reverse proxy with php support and a built-in Certbot (Let's Encrypt) client. It also contains fail2ban for intrusion prevention.
Related contents:
Automatically optimize files uploaded to Immich in order to save storage space.
Immich Upload Optimizer is a proxy designed to be placed in front of the Immich server. It intercepts file uploads and uses an external CLI program (by default JPEG-XL, Caesium and HandBrake) to optimize, resize, or compress images and videos before they are stored on the Immich server. This helps save storage space on the Immich server by reducing the size of uploaded files.
Tunneled Reverse Proxy Management Server with Identity and Access Control and Dashboard UI.
Pangolin is a self-hosted tunneled reverse proxy management server with identity and access management, designed to securely expose private resources through use with the Traefik reverse proxy and WireGuard tunnel clients like Newt. With Pangolin, you retain full control over your infrastructure while providing a user-friendly and feature-rich solution for managing proxies, authentication, and access, and simplifying complex network setups, all with a clean and simple UI.
Related contents:
-
Pangolin: Your Own Self-Hosted Cloudflare Tunnel Alternative @ DB Tech's YouTube.
-
Ep 13: Cyberdeck Cyberwhat Selfhosted VPN networks and is Wireguard Hard @ Linux Prepper (Episode 13 Shownotes - Cyberdeck Cyberwhat and is Wireguard Hard @ Learning Together).
-
Self-hosted Cloudflare + VPN replacement! Pangolin Tutorial @ Christian Lempa's YouTube.
Dynamic Dashboard for Nginx Proxy.
Dashly is a lightweight, real-time dashboard for users of Nginx Proxy Manager. It simplifies how you monitor and organize your services by automatically syncing with your NPM database. This means you never have to manually edit dashboard configuration files like YAML—it dynamically tracks and displays all your services based on their domain configurations in NPM.
Caddy Config Generator.
A user-friendly interface for generating Caddy server configurations. Create and manage reverse proxy and file server configurations with support for SSL, compression, security headers, and more.
Very simple proxy with Tailscale. Fast, simple and easy for virtual services in Tailscale.
TsDProxy simplifies the process of securely exposing services and Docker containers to your Tailscale network by automatically creating Tailscale machines for each tagged container. This allows services to be accessible via unique, secure URLs without the need for complex configurations or additional Tailscale containers.
Related contents:
Ultra performant API Gateway with middlewares. A project hosted at The Linux Foundation.
An open framework to assemble ultra performance API Gateways with middlewares; formerly known as KrakenD framework, and core service of the KrakenD API Gateway. An extendable, simple and stateless high-performance API Gateway framework designed for both cloud-native and on-prem setups.
Lura is an API Gateway builder and proxy generator that sits between the client and all the source servers, adding a new layer that removes all the complexity to the clients, providing them only the information that the UI needs. Lura acts as an aggregator of many sources into single endpoints and allows you to group, wrap, transform and shrink responses. Additionally it supports a myriad of middlewares and plugins that allow you to extend the functionality, such as adding Oauth authorization or security layers.
PipeGate is a lightweight, self-hosted proxy built with FastAPI, designed as a "poor man's ngrok." It allows you to expose your local servers to the internet, providing a simple way to create tunnels from your local machine to the external world.
E2EE aware proxy daemon for matrix clients.
Pantalaimon is an end-to-end encryption aware Matrix reverse proxy daemon. Pantalaimon acts as a good man in the middle that handles the encryption for you. Messages are transparently encrypted and decrypted for clients inside of pantalaimon.
A set of Otoroshi plugins to interact with LLMs.
Connect, setup, secure and seamlessly manage LLM models using an Universal/OpenAI compatible API.
API management on top of a reverse proxy.
Otoroshi is a layer of lightweight api management on top of a modern http reverse proxy written in Scala and developped by the MAIF OSS team. Otoroshi is designed to handle all the calls to and between your microservices without service locator and let you change configuration dynamicaly at runtime.
Easy to use reverse proxy with docker integration.
A lightweight, easy-to-use, and performant reverse proxy with a Web UI and dashboard.
Bye bye localhost, hello world.
LocalXpose is a reverse proxy that enables you to expose your localhost to the internet.
the Best WAF for Webmaster. Secure Everything on Your Web Applications.A simple, lightweight, self-hosted WAF that protects your website from cyber attacks.
serve as a reverse proxy to protect your web services from attacks and exploits.
Related contents:
nginx-proxy sets up a container running nginx and docker-gen. docker-gen generates reverse proxy configs for nginx and reloads nginx when containers are started and stopped.
A fully automated HTTPS server powered by Nginx, Let's Encrypt and Docker.
HTTPS-PORTAL is a fully automated HTTPS server powered by Nginx, Let's Encrypt and Docker. By using it, you can run any existing web application over HTTPS, with only one extra line of configuration.
Cloud-native high-performance edge/middle/service proxy. Envoy is an open source edge and service proxy, designed for cloud-native applications.
Speed application development and boost developer productivity. Ambassador is redefining how APIs are developed from design to production.
Emissary-Ingress is an open-source Kubernetes-native API Gateway + Layer 7 load balancer + Kubernetes Ingress built on Envoy Proxy. Emissary-ingress is a CNCF incubation project (and was formerly known as Ambassador API Gateway).
Open Source HTTP Reverse Proxy built in Rust for Immutable Infrastructures.
Sōzu HTTP reverse proxy, configurable at runtime, fast and safe, built in Rust. It is awesome! Sozu can receive configuration changes at runtime through secure unix sockets without having to reload.
Related contents:
The Platform Powering the API World. 🦍 The Cloud-Native API Gateway.
Kong or Kong API Gateway is a cloud-native, platform-agnostic, scalable API Gateway distinguished for its high performance and extensibility via plugins.
By providing functionality for proxying, routing, load balancing, health checking, authentication (and more), Kong serves as the central layer for orchestrating microservices or conventional API traffic with ease.
🌸 HTTP REST API caching middleware, to be used between load balancers and REST API workers.
Expose your services easily and securely.
This project comes as a pre-built docker image that enables you to easily forward to your websites running at home or otherwise, including free SSL, without having to know too much about Nginx or Letsencrypt.
Related contents:
- NPM Mobile Manager @ GitHub.
- HomeLab SSL certificates for FREE with minimal effort @ Perkelator's YouTube.
- Self-Hosted SSL Simplified: Nginx Proxy Manager @ Lawrence Systems' YouTube.
- The First Services I Always Spin Up in Any Home Lab @ VirtualizationHowto.
- Nginx Proxy Manager - Le reverse proxy que même ma grand-mère pourrait configurer @ Korben :fr:.
Traefik is an open-source Edge Router that makes publishing your services a fun and easy experience. It receives requests on behalf of your system and finds out which components are responsible for handling them.
frp is a fast reverse proxy that allows you to expose a local server located behind a NAT or firewall to the Internet. It currently supports TCP and UDP, as well as HTTP and HTTPS protocols, enabling requests to be forwarded to internal services via domain name.
GateJS is a javascript based reverse & forward proxy with high performance & capability.
Combine internet connections, increase your download speed .
A SOCKS5/HTTP proxy that balances traffic between multiple internet connections.
High Performance non-blocking event based network loop using EPool on Linux, select on other OSes use of cheap co-routine to handle clients connections automatically adding threads to handle load peaks (threads are forking the redirectors programs) internal use of sockets as message parsing technique with the threads internal non-blocking DNS resolver (UDP and TCP messages integrated in the main loop) optional local DNS caching of records
Vulture est une solution Web-SSO basée sur une technologie de proxy inverse implémentée sur le socle Apache. Vulture implémente également des fonctionnalités de firewall applicatif.
This is the homepage of frox. It is a transparent ftp proxy which is released under the GPL. It optionally supports caching (either through an external http cache (eg. squid), or by maintaining a cache locally), and/or running a virus scanner, on downloaded files. It is written with security in mind, and in the default setup it runs as a non root user in a chroot jail.