OpenZiti

OpenZiti is an open-source overlay networking framework for zero-trust connectivity, letting developers embed secure, outbound-only network access directly into applications via SDKs. NetFoundry sponsors the project.

CybersecurityOpen sourceSelf-hosted
Visit official website

Published Updated

CategoryCybersecurity
AccessSelf-hosted
PricingOpen source
APIAvailable
Overview

What is OpenZiti?

OpenZiti is an open-source zero-trust networking framework: an overlay network with native application SDKs (Go, C, Java, .NET, Swift, and more) so applications can establish outbound-only, mutually authenticated connections without exposing inbound ports or relying on a traditional VPN. NetFoundry, the company sponsoring the project, also sells a managed/hosted version built on the same code.

Read the full overview

Sources checked 27 September 2026: official website, documentation, repository.

Why teams use it

Key capabilities

  • Overlay network: Outbound-only, mutually authenticated connections that eliminate open inbound ports.
  • Application SDKs: Embed zero-trust connectivity directly into apps across multiple languages.
  • Self-hosted control plane: Run your own controllers and routers, or use NetFoundry's managed option.
Core areas

Pilot the SDK integration in a real application, size the controller/router deployment for expected connection volume, and plan for certificate/PKI management before rolling this out beyond a proof of concept.

Positioning

Shortlist OpenZiti when you want zero-trust network access embedded into your own application via SDK rather than a network-appliance-based ZTNA product, and are prepared to self-host and operate the control plane.

Why it matters

Embedding zero-trust connectivity in application code is a different operational model than a network appliance; validate your team can own the PKI and control-plane operations before committing.

Deployment & technical details

Technical details

Access
Self-hosted
Source model
Open source
Founded
2019
Headquarters
Charlotte, USA
Pricing model
Open source
API
Available
Published release
OpenZiti Ziti v2.0.6 ↗ (checked )
Source check
Primary source ↗ checked
Check with the publisher

Official resources

Before you shortlist

What to verify for your environment

Start from the users, systems and operating responsibilities the tool needs to support.

  • Confirm current features, licensing and support terms with the publisher.
  • Validate deployment, data location, access control, backup and recovery requirements.
  • Test integrations, export paths and a representative operational workflow before committing.
Community experience

Reviews of OpenZiti

No published reviews yet.

Loading review form…