Analytics cookies
We would like to use Google Analytics and Sentry session replay to see how the site is used. They are off until you say yes. What each one receives.

Easy and secure reverse SSH port forwarding
Openport is a cloud tunneling service that exposes any TCP port on a device to the internet without opening ports in a firewall or configuring a router. A single command on the client creates an encrypted reverse tunnel to Openport's global server network, giving you a public address for SSH, HTTP, databases, or any other TCP service. Paid plans add a web dashboard and REST API for managing fleets of registered devices, which makes it a common pick for Raspberry Pi and IoT deployments behind NAT or CGNAT.
Exposes any TCP port of a device to the internet without opening firewall ports or configuring NAT, so SSH, RDP, databases and web servers all work the same way.
Running `openport 22` immediately returns a public address like openport.io:12345 mapped to the local port, with no account required to get started.
Ports are secured by default: the person you share a session link with must visit it first to whitelist their IP before they can connect. Ports can also be made public deliberately.
Web admin pages show which registered devices are online and let you manage devices, sessions, keys and users from one place.
A token-authenticated API at api.openport.io exposes sessions, keys and server nodes for scripted automation. API access requires a paid subscription.
Openport runs relay servers in multiple regions so devices connect through the lowest-latency node available.
Install the ARM package, run `openport 22`, and reach the Pi over SSH from anywhere without a static IP, port forwarding, or a VPN — the common case for home labs and hobby projects.
Register each deployed device to an account, then use the dashboard to see which units are online and the REST API to script bulk access or commands across the fleet.
Expose a local HTTP server on a temporary public address so a client can review work in progress or a third-party service can deliver webhook callbacks to your machine.
Multiple team members can be given access to devices, with permissions controlled through user groups.
MIT-licensed clients for Windows 7-11, macOS 10.8+, Debian/Ubuntu, Red Hat/Fedora/CentOS, plus ARM64 and ARMHF builds for Raspberry Pi Zero through Pi 5.
Beyond exposing a port publicly, the client can bind a remote port to a local one so you connect over the tunnel directly, and can chain server-to-server forwards.
Sessions can be configured to restore automatically after a reboot on Windows, Linux and macOS, keeping unattended devices reachable.
Documented extras include UDP forwarding, simple file sharing over a session, ESP device support and batch command execution across registered devices.
Ship a preconfigured device or install the client on a customer machine so support staff can reach it on demand without asking the customer's IT team to change firewall rules.
Because it forwards arbitrary TCP, teams use it to connect to a Postgres instance or an RDP session on an internal machine through a forward tunnel rather than a public port.

The fastest AI code editor — built in Rust for speed and collaboration