VirtuaMesh is an enterprise-grade virtual mesh network platform that connects global devices as if they were on the same LAN.
End-to-end encryption · Intelligent routing · Low-latency P2P direct connections.
Self-organizing P2P mesh network — nodes automatically discover optimal paths, encrypted data flows at light speed
🟢 VM Mesh Interconnect: 6 cross-region VM nodes (Beijing/Frankfurt/Singapore/New York/Johannesburg/Sydney) are coordinated by the VirtuaMesh control plane. A proprietary mesh protocol builds a full mesh with 15 WireGuard tunnels interconnecting every pair. Each node hosts several terminals (shown in the "icon strip" below the main label), and packets continuously slide along arcs within the tunnels (white dots + colored halos).
Each network (100.64.x.0/24, RFC 6598 shared address space) is an independent subnet that can be bridged or isolated on demand; cross-network traffic flows through the central control plane
By default only adjacent networks are allowed to interconnect; diagonal links are denied by ACL (green/red lines + 🚫), packets stop at the wall on contact
When P2P traversal fails, it automatically falls back to DERP relay servers (HTTP/2 TLS) to guarantee cross-network reachability
Beijing/Frankfurt/Singapore/New York/Johannesburg/Sydney…global nodes can all join the same network, with intelligent region-aware routing
From end-to-end encryption to intelligent routing, VirtuaMesh provides a complete solution for modern distributed networks
ChaCha20-Poly1305 encryption based on the WireGuard protocol — all traffic is end-to-end encrypted, and the control plane cannot decrypt user data
Automatically traverses NAT and firewalls to establish P2P direct connections, with DERP relay as a backup to keep connections always available
Supports multi-region deployment and cross-region optimization, self-hosted DERP relay servers to reduce latency, and intelligent routing to select the optimal path
Identity-based access control, RBAC role permission management, fine-grained traffic rule control, and full security audit trail
Supports Windows, macOS, and Linux across all platforms, with both CLI and GUI, supporting both userspace and kernel WireGuard modes
Real-time traffic monitoring, network topology visualization, system health checks, and alert rule configuration for full visibility into network operations
Automatically assigns DNS names to each node, enabling direct access by device name, with support for custom A/AAAA/CNAME records and reverse resolution
Fine-grained access control policies based on ACL, RBAC, time windows, and geolocation — flexibly matching enterprise organizational structures and security requirements
Say goodbye to the era of memorizing IP addresses — MagicDNS gives every device in the network a readable domain name
DNS records are automatically registered when a node joins the network, with device name changes synced in real time — access by name with zero configuration
Supports IP → hostname reverse resolution, making log auditing, troubleshooting, and device identification easier
Supports adding A, AAAA, CNAME, and other custom records to map dedicated domains for internal services
Supports domain search, DNS cache acceleration, and query statistics for easier operations observation and performance optimization
Set up secure networking in three steps — no complex configuration or specialized knowledge required
One-click deployment of the server using Docker Compose, including the API server, database, and DERP relay — done in minutes
Install the client on each device and register it with the control plane — automatically obtains virtual IP and WireGuard keys and establishes encrypted tunnels
Devices automatically establish P2P encrypted connections and access each other by node name via MagicDNS — as if on the same LAN
No need to configure firewalls, routing tables, or public IPs — init to initialize, register to join the network, up to connect
Left: CLI terminal simulator — init → register → up three-step onboarding |
Right: Networking flow animation — Registration → Key Exchange → P2P Direct / DERP Relay Fallback
From individual developers to enterprise groups, flexible feature packages meet the needs of different scales
Annual or monthly billing · 17% discount on annual plans · 7-day no-questions-asked refund
From individual developers to enterprise teams, VirtuaMesh adapts to a variety of network connectivity needs
Securely access corporate intranet resources without a traditional VPN client — zero-trust architecture protects the perimeter
Bridge multi-cloud environments such as Alibaba Cloud, Tencent Cloud, and AWS to build a unified virtual network plane
Securely connect distributed IoT devices for remote monitoring and management — no public IP or port mapping required
Just-in-time access control under a zero-trust architecture, with full operation audit trails to meet compliance and security audit requirements
Set up a secure virtual mesh network in minutes — making device connections secure and simple