Akseslane is a multi-tenant VPN management platform built on top of Headscale. Connect your devices, approve routes, and manage access policies — all from one clean dashboard.
Self-hosted · End-to-end encrypted · No telemetry · Open standard (WireGuard®)
What you get
One platform that replaces a patchwork of scripts, firewall rules, and SSH tunnels.
See every node in your network — online status, IP, OS, and tags — in a single list. Approve or remove devices with one click.
Advertised subnet routes appear automatically after each sync. Approve or reject them from the Access page — and the change propagates to Headscale instantly.
Write tag-based ACL rules in plain English — source tags, destination tags, and ports. Akseslane compiles and pushes them to Headscale on every save.
Each organisation is fully isolated. Invite teammates and assign roles — Owner, Admin, Operator, or Viewer — with fine-grained permissions.
Every action — device sync, policy change, route approval — is recorded with actor, timestamp, and context. Compliance-ready out of the box.
Generate one-time pre-auth keys and download ready-to-run install scripts for Linux, macOS, and Windows — no manual config needed.
How it works
No complex setup, no CLI required for day-to-day operations.
Sign up, create your org, and point it at your Headscale server URL and API key.
Generate a pre-auth key from the dashboard, then install Tailscale on the device and register it — the node appears in your list within seconds.
Create tag-based access policies to define who can reach what. Changes are pushed to Headscale automatically.
Add teammates and assign roles. Operators can manage devices; viewers can only observe — you control the access.
Use cases
One platform, three very different problems — all solved the same way.
Connect laptops, staging servers, and cloud VMs into one private network — without exposing a single port to the internet. Every teammate gets a stable private IP and can reach internal services securely from anywhere.
tag:dev can't accidentally hit productionSpin up an isolated network per engagement in seconds. Your attack machine, listener VPS, and pivot nodes talk over WireGuard — fully encrypted, cleanly separated from other clients, and auditable from day one.
Connect your home NAS, cloud VPS, Raspberry Pi, and laptop into one private mesh — reachable from anywhere without a commercial VPN subscription. You own the infrastructure, Akseslane just makes it manageable.
Pricing
Start free. Upgrade when your network grows.
Starter
Free
Perfect for personal use or small teams just getting started.
Pro
Rp 99k / mo
For growing teams that need more devices and full audit history.
Business
Rp 299k / mo
Unlimited scale for enterprises and MSPs managing multiple networks.
Join teams that use Akseslane to manage their private infrastructure without the ops overhead.
Create your free account →