You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
{{ message }}
alatticeio
Cloud Native WireGuard Management Platform built on WireGuard
gVisor netstack ↔ WireGuard bridge library for zero-privilege AI agent sandboxing. / gVisor 网络栈与 WireGuard 桥接库。
Two Core Pillars / 两大核心引擎
Network Orchestration / 网络编排
Connect any device — servers, containers, IoT, Kubernetes pods — into an encrypted WireGuard overlay mesh. No firewall changes, no public IP exposure.
将任意设备连接成加密的 WireGuard 覆盖网格,无需修改防火墙,无需公网 IP。
Capability / 能力
Description / 描述
WireGuard Tunnel Automation
Key distribution, rotation, and peer discovery are fully automated. / 密钥分发、轮换、Peer 发现全自动。
NAT Traversal
Dual-stack ICE/STUN (IPv4 + IPv6), LRP relay fallback, works across symmetric NAT. / 双栈 ICE/STUN + LRP 中继自动回退。
Built-in IPAM
Two-tier allocation (global pool → subnet → peer IP). / 两级 IP 分配。
Give every AI agent a secure network identity — kernel-level isolation, natural-language-driven policy changes.
为每个 AI Agent 提供安全网络身份,内核级隔离,自然语言驱动的策略变更。
Capability / 能力
Description / 描述
AgentIdentity CRD
Binds an AI agent to a WireGuard Peer with RBAC and sandbox mode. / AI Agent 与 WireGuard Peer 绑定,RBAC 权限控制。