Get the latest tech news

Sanctum || A pq-safe and sandboxed VPN daemon


Blessed sanctum, save us || Sanctum is a small, reviewable, capable, pq-safe and fully privilege seperated VPN daemon. || This is a read-only mirror, pull requests are ignored. - jorisvink/sanctum

Additionally when making use of sanctum's cathedrals one can get peer-to-peer tunnels that are able to traverse NAT, allowing your devices to talk to each other directly no matter where they are without having to open pesky firewall ports or fiddle with forward rules. The bishop process must be privileged due to the fact it is fork+exec'ing the hymn configuration tool for setting up new tunnels (only if using liturgy mode). Sanctum is post-quantum safe due to its unique approach to deriving session keys based on a shared symmetrical secret in combination with a hybridized asymmetrical exchange.

Get the Android app

Or read this on Hacker News

Read more on:

Photo of Sanctum ||

Sanctum ||

Photo of VPN daemon

VPN daemon