FerrumGate logo

FerrumGate

Identity and Access Management (IAM)

Open Source
Free Tier
Free Tier
Free Tier
Self-hosted
E
Enterprise
OpenMSP Score
32
16
Reddit Impact Score
Github Score
3K
29Stars
5Forks
104Commits
Jun 12, 2025Last commit
FerrumGate is an open-source Zero Trust Access (ZTA) project that implements modern cybersecurity principles to secure network resources and applications including SSH, RDP, Web, API, Database, and IoT devices. As a comprehensive ZTNA (Zero Trust Network Access) solution, it serves as a modern replacement for traditional VPNs. Recent developments in 2025 include enhanced capabilities with version 1.15.0 introducing new authentication methods (OpenID Connect, RADIUS), high availability between regions (v1.11), DNS filtering on zero trust networks, and a new QUIC protocol-based VPN server and client developed in Rust for smooth remote access performance. The platform offers comprehensive identity provider support including Local, Active Directory, Google Workspace, Azure AD, and Okta, with robust multi-factor authentication, device posture checks, location-based access controls, and continuous packet-level monitoring. FerrumGate enables creation of unlimited VLANs (1K-10K+) for advanced network segmentation. Key features include zero-touch deployment on premises or cloud, least privileged access principles, real-time activity monitoring and analysis, IP and FQDN intelligence provider integration, and advanced security policy enforcement. The solution supports various tunnel protocols (SSH, SSL, WireGuard, custom protocols) and provides comprehensive logging and auditing capabilities. With the Zero Trust market experiencing significant growth and AI integration becoming central to Zero Trust architectures in 2025, FerrumGate positions itself as an engineer-focused, open-source solution ideal for secure remote access, cloud security, privileged access management, endpoint security, and IoT connectivity. The platform includes a test environment at try.ferrumgate.com for evaluation purposes.
image media
1 / 2

Key Features

Zero Trust Network Access (ZTNA) gateway

Implements zero trust security model by verifying every connection request regardless of location or device, ensuring no implicit trust and requiring explicit verification for all network access attempts.

Device identity and posture assessment

Continuously evaluates device security posture including patch status, antivirus updates, and compliance with organizational policies before granting network access, ensuring only secure devices connect to resources.

Multi-factor authentication and conditional access

Enforces strong authentication requirements with support for multiple factors including TOTP, FIDO2, and biometrics, with conditional access policies based on user, device, location, and risk factors.

Micro-segmentation and least privilege access

Implements granular network segmentation ensuring users and devices can only access specifically authorized resources, reducing attack surface and containing potential security breaches.

Real-time monitoring and session recording

Provides comprehensive visibility into user activities with session recording, command logging, and real-time monitoring capabilities for privileged access sessions and sensitive resource interactions.

Cloud-native architecture with API-first design

Built for cloud environments with RESTful APIs enabling integration with existing security infrastructure, identity providers, and automation platforms for streamlined operations and management.

Pros and Cons

Pros

Open source

Free open source ZTNA solution

Multi-factor authentication

Built-in MFA capabilities

Flexible deployment

Can be deployed on-premises or in the cloud

Granular access control

Detailed access policies and controls

Cost-effective

Lower total cost of ownership than commercial alternatives

Cons

Limited community

Smaller community compared to other open source security tools

Documentation gaps

Less comprehensive documentation than commercial alternatives

Integration limitations

Fewer pre-built integrations with enterprise systems

Support challenges

Limited professional support options

Feature Comparison

Comments

Matthew EvansSecureLink MSP

Matthew EvansSecureLink MSP

Jun 25, 2025

Solid zero trust network solution

FerrumGate provides good zero trust capabilities for client networks. Identity management works well and multi-factor authentication is comprehensive. Open source model is appealing.

Ayumi NakamuraCloudBridge MSP

Ayumi NakamuraCloudBridge MSP

Jun 22, 2025

Good for modern security needs

Using FerrumGate for advanced access control. Setup requires networking expertise but security features are robust. Better documentation would help with complex deployments.

Joshua FisherCloudSecure MSP

Joshua FisherCloudSecure MSP

Jun 19, 2025

Promising zero trust platform

FerrumGate handles identity verification well for security-conscious clients. Feature set is growing and community support is helpful. Good alternative to commercial solutions.