mirror of
https://github.com/netbirdio/netbird.git
synced 2026-08-05 00:15:26 -04:00
Open
opened 2026-08-05 01:01:51 -04:00 by saavagebueno
·
59 comments
No Branch/Tag Specified
main
claude/agent-network-test-cases-p743vw
android/gui-integration
revert/component-types
feat-post_quantum_ml_kem
ice-stun-wg-demux
dependabot/npm_and_yarn/proxy/web/npm_and_yarn-b39864987c
agent-network-setup-poc
dependabot/go_modules/aws-sdk-8f849ebaed
dependabot/github_actions/actions-a940c7c866
dependabot/go_modules/otel-e34c790afd
dependabot/go_modules/testcontainers-de325c0dd6
dependabot/go_modules/wireguard-dbd6b95108
dependabot/go_modules/pion-5f703e1eca
dependabot/go_modules/gorm-2271c8195b
fix-login-needed-check
dependabot/go_modules/google.golang.org/grpc-1.82.1
fix/ui-gtk3-support
enterprise-traefik-and-migration-fixes
disambiguate_p2p_metrics
revert/component-types-hookup
embedded-vnc
feature/ios-ssh
docs/agent-network-docs-update
dependabot/go_modules/github.com/aws/aws-sdk-go-v2/service/s3-1.106.3
dependabot/go_modules/github.com/pion/stun/v3-3.1.5
fix-ssh-authorized-users-multi-rule
peer-acl-multi-source
reverse-proxy-crowdsec-appsec
reverse-proxy-allow-match-or
client-local-metrics
lazy-conn-per-peer
lazy-conn-rosenpass
dependabot/go_modules/github.com/gopacket/gopacket-1.7.0
dependabot/go_modules/goauthentik.io/api/v3-3.2026050.6
dependabot/go_modules/github.com/pires/go-proxyproto-0.15.0
dependabot/go_modules/github.com/jackc/pgx/v5-5.10.0
dependabot/go_modules/github.com/oapi-codegen/runtime-1.6.0
dependabot/go_modules/github.com/eko/gocache/lib/v4-4.2.4
dependabot/go_modules/github.com/pkg/sftp-1.13.11
dependabot/go_modules/github.com/coreos/go-oidc/v3-3.20.0
ssh-windows-privilege-check
fix/explicit-cors-handling
fix/remove-math-rand
test/gui-memory-leak-fix
fix/ui-status-dispatch
install-script-ui-dependencies
fix/grpc-get-network-map
fix/subscribe-status-coalesce
fix/tray-menu-item-leak
fix/windows-tray-race
feature/changeset
worktree-dns-route-qtype-fallthrough
mdm_integration
mlsmaycon-patch-2
feat/agent-network-ollama
proxy-tunnel-cache-ttl-env
coderabbitai/utg/1e5b0a5
grpc-acl
test/battery-drain
components-impl-drop-indexes-use-xids-no-resource-policy-map
fix/nmap-relevant-groups
e2e-guardrail-blocks-unselected-model
fix/lazyconn-cold-start-allowed-ips
vertex-guardrails-model-access-e2e
add-atomic-cache-ops
refactor/relay-foreign-cache
ci/trigger-release-tests
feature/kimi-3-agent-networks-dns-warmup
feature/dns-lazy-conn-warmup
daemon-ipc-acl
feature/ui-translation-key-parity-check
refactor/relay-foreign-cache-tests
fix/lazyconn-idle-keep-wg-peer
dmitri-propagate-auth-grant-types-on-combined
0.74.7-branch
diagnose-empty-vs-corrupt-state
windows-sleep-detector
fix/cli-up-wait-for-daemon
rp_key_persistency
feature/native-grpc
0.74.6-branch
0.74.6-branch-sync
0.74.5-branch-sync
0.74.4-branch
fix/remove-stale-peers-removal
fix/remove-stale-proxy-logic
fix/nsis-preserve-autostart-on-upgrade
refactor/peer-event-bus
dependabot/go_modules/goauthentik.io/api/v3-3.2026050.3
dependabot/go_modules/github.com/pkg/sftp-1.13.10
components-impl-drop-indexes
fix-reset-aggregation-window-flake
dependabot/go_modules/github.com/pion/dtls/v3-3.1.5
0.74.x
fix/relay-states-lock
update-process-pkg
update-gopsutil-v4
fix/relay_states_lock
increase-sysinfo-timeout
dependabot/go_modules/github.com/Azure/go-ntlmssp-0.1.1
dependabot/go_modules/github.com/eko/gocache/store/redis/v4-4.2.6
dependabot/go_modules/github.com/eko/gocache/lib/v4-4.2.3
fix/fail-to-create-upnp-port-mapping-on-opnsense-firewall
0.74.3-branch
fix/routeselector-atomic-exit-node
netmap_progressive_alignment
nmap/components-impl
dependabot/go_modules/github.com/jackc/pgx/v5-5.9.2
dependabot/go_modules/github.com/oapi-codegen/runtime-1.4.2
dependabot/go_modules/github.com/gopacket/gopacket-1.6.1
dependabot/go_modules/github.com/coreos/go-oidc/v3-3.19.0
dependabot/go_modules/github.com/pires/go-proxyproto-0.12.0
fix/signal-watchdog-sync-stop
docs/agent-network
test/affected-logic
fix/revert-ice-filter
refactor/simplify-affected-peers
pascal-filter-policies-by-direction
claude/lock-contention-peer-connect-g8t6au
dmitri-filter-policies-by-direction
refactor/migrate-profiles-to-go
profile-bindings-ios
fix/skip-restart-unchanged-route
fix/mgmt-cache-async-resolve
refactor/wails-update-105
client_lifetime_serialization_refactor
fix/browser-ssh-2
fix/ipv6-and-netstack-accept-loop
fix/browser-ssh
profile-id-name-test
refactor/mgmt-bootstrap
feat/getting-started-unified-wizard
socket-grpc-permissions
fix/mysql-index-migration
windows-dns-firewall
tests/enable-race-on-tests
ui-refactor-gtk3
feature/affected-peers-grpc
profile-id
lazyconn-first-packet-fix-v2
claude/focused-gates-VMTgb
ui-tray-linux-leftclick
fix/ctx-enrichment
daemon-owner
feature/android-client-ssh
worktree-accept-ra-forwarding
nmap/combined-deploy
task/align_protobuff_toolset
feature/session-extend
add-json-yaml-flags
refactor/ephemeral-cleanup
claude/webtransport-relay-wasm-mUjY9
claude/vnc-udp-feasibility-6KB1U
fix/wgport-config
e2e-windows-dns-combined
fix/login-cmd-root-flags
feat/reseller-openapi-spec
github-issue-resolver
add-steamos-support
fix-darwin-uninstaller
flutter-test
ci/freebsd-pkg-bootstrap
cached-serial-check-on-sync
fix-mgmt-cache-bypass-overlay
revert-easyjson-5938
revert-ice-5820
revert-firewalld-5928
refactor/permissions-manager
revert-dns-5935-systemd-resolved
revert-dns-5935-5945
revert-dns-5945-mgmt-cache
feature/log-most-busy-peers
prototype/ui-wails
coderabbitai/utg/8ae8f20
feature/use-peer-fqdn-on-https
release/0.68.3
add-slack-channel
claude/rdp-token-passthrough-eNcqW
transparent-proxy
fix/macos-stale-route-eexist
crowdsec-selfhosted
fix/remove-otel-units
entire/checkpoints/v1
fix/getting-started
feat/static-connectors-combined-server
feature/use-local-keys-embedded
feature/fleetdm
set-env-only-if-not-fork
feature/expose-has-channel
fix/connection-status-race
fix/filter-cgnat-cni-ice-candidates
feature/check-cert-locker-before-acme
test/proxy-fixes
test/proxy-mtu
prototype/ui-tauri
test/proxy-speed
fix-reused-ports
feat/migrate-to-embedded-idp
feature/add-serial-to-proxy-merged
deploy/proxy-serial
test/connection
feature/disable-legacy-port
feature/flag-to-disable-legacy-port
test/perftest
fix/http-redirect
poc-token-command
dn-reverse-proxy
prototype/reverse-proxy-rename
prototype/reverse-proxy-logs-pagination
feature/client-metrics
prototype/reverse-proxy-clusters
debug-dns-route
fix/win-dns-batch
add-extra-route-logs
job-stream-notify-disconnection-eof
deploy/secrets-manager
trigger-proxy-update
bug/update-ios-client-code-build-tags
sync-client-netmap-serial
log/conn-disconn
nmap/compaction-deploy
ci-win-test
feature/disk-encryption-check
wasm-debug
swap-dns-prio
fix/dex-config
feature/migrate-auto-groups-to-table
nmap/compaction
dex-nocgo-stub
feature/exclude-terraform-from-rate-limiting
test-freebsd
retries-refactor
coderabbitai/docstrings/b7e98ac
feat/integrate-zitadel
bug/ios-hanging-reconection
zitadel-idp
feat/network-map-serial
refactor/get-account-no-users
feat/auto-upgrade
feature/report-high-pat-id
feature/temporary-access-for-resource
fix/nmap-fwrules
dont-restart-dns
prototype/ui
update-gomobile
go-dns-for-ice
wasm-ldflags
test-ldflags
wasmbuild-test
feature/networks-s2s
vk/compare-nmaps
dbg/bothmaps
reorder-dns-shutdown
fix/relay-reconnection-race
fix/nmap-exitnodes
vk/debug/nmap-both
move-licensed-code
feat/better-daemon-connection-lost-message
feat/auto-update-2
test/timings
refactor/getaccount-raw
tests/nmap-getaccount
refactor/nmap
refactor/nmap-limit-buffer
feature/detect-mac-wakeup
feature/extract-modules
quick-setings
feat/sync-limiter
feature/store-cache-impl
fix-install-version
feature/store-metrics
feature/metrics-on-store
feature/use-gorm-cache
loadtest-signal
unsymmetrical-squash
refactor/reducate-signaling
test/update-reduce
feature/store-cache
feature/remote-debug
cli-ws-proxy-backend-addr
feat/mgmt-map-serial
snyk-fix-d9d0081a4c7f9137bdb59d0d50a141a2
snyk-fix-7415cea5a11acd66753540ca2c598c63
job-yml-update
feature/android-allow-selecting-routes
fix/up-sequence
fix/dns-hash-update
snyk-fix-967adae9863f17f108ce8948d9117b8d
log/getaccount-by-peer
signal-suppressor
dns-exit-node
feature/auto-updates
feature/cache-srv-key
merged-fixes
fix/missed-offers-and-debug
debug-and-fixes
poc-wasm-clean-backend-s2s
test/remote-debug
debug-api
fix/remove-gpo-if-empty
fix/test-freebsd
fix/mysql-setup
fix/remove-logout-btn
handle-existing-domain-user
chore/unify-domain-validation
snyk-fix-c5fafc8a50ce1f29046e25a1fc346185
feat/profile-edit-btn
snyk-fix-a54966211e18d4cf67e5a2757cc006d1
log-short-id
feat/logout-ephemeral
log-checks
batch-wg-ops
nb-interface-default
feat/aws-integration
add/race-test
feature/relay-feature-versioning
fix/systemd-service-logs
poc/preprocessed-map
add-account-onboarding
bind-ipv6
fix/merge-main
logs/peerlogs-addpeer
feature/net-297-network-migration
feature/support-skip-auto-apply-exit-node-routes
set-cmd
set-command-with-cursor
feature/limit-update-channel
stop-using-locking-share
feature/poc-lazy-detection
feature/net-248-removal-of-sync-mutex-locks
test/multiple-peer-logging
preresolve
add-ns-punnycode-support
apply-routes-early
windows-search-domains
fix/connecting-route-filter
feature/management/rest-client/impersonate
debug-local-records
resource-fields-snake-case
test/grpc-rate-limit
traffic-correlation-policy
feature/rest-client-options
feat/events-metrics
feature/buf-cli
test/add-ratelimiter
test/remove-write-lock-on-add-peer
fix/add-peer-semaphore
feature/users-roles-endpoint
mlsmaycon-patch-1
debug-user-role
chore/primary-key-on-networks
feature/update-account-peers-buffer-startup
remove-ubuntu2004-runners
refactor/permissions-no-pat-allowed
ref/logrus-factory
use-conntrack-zone
deploy/permissions-account
feature/lazy-connection-idle
ref/improve-test-cov
restore-pr-3440
test/increase-grpc-timeouts
feat/buffer-account-peers-update
test/networkmapgeneration-changes
feature/base-manager
feature/flow-receiver
chore/benchmark-with-large-runner
refactor/handshake-initiator
client/ui-update-systray-icons
userspace-router
wgwatcher-test
output-if-key-already-exists
fix/relay-reconnection
feature/port-forwarding-client-codecleaning
detached2
test/callbacks-nil-iceconninfo
refactor/optimize-peer-expiration
enable-udp-port-for-docker-template
fix/relay-update
feature/apply-posture-netmap
fix/group-update-existing-resource
conntrack-stats
upgrade-okta-sdk
multi-price
test/conn-stat
set-min-parallel-tests-for-management
dns-interceptor
debug-dns
router-dns
add-static-system-info
debug-0.29.4
debug-0.33.0
account-refactoring
relay/2800_quic
route-get-account-refactoring
test/seed-random-routes
feature/get-account-refactoring
test/reconnect-race-condition
refactor/get-account-usage
feature/add-session-id-to-update-channel
improve-ipv4conn
fix/async-pion-event-handling
debug
add-offload
feature/validate-group-association-debug
fix/limit-conn-for-sqlite
test/engine-iface
test/transaction-for-jwt-sync
fix/engine-stop-in-foreground
feature/add-mysql-support
test-migration
refactor/header-size-values
relay/eliminate-gob
test/signal-dispatcher-with-relay
relay/debug
validate-icon
feature/ipv6-support
use-pre-expanded-peers-map
feature/use-signal-dispatcher
validate/peer-status
add-read-write-times
fix/sync-peer-race
feature/relay-status
netmap
evaluate/network-map-hash
fix/lower-dns-resolve-interval-on-fail
feature/relay
fix/go-mod-version
upgrade-nftables
synology-userspace-mode
fix/use-ip-for-default-routes-on-darwin
fix/proxy_close
enable-release-workflow-on-pr
deploy/peer-performance
feature/permanent-turn
feature/permanent-turn-proxy
deploy/posture-check-sqlite
feature/optimize_sqlite_save
debug-ios-behavior
fix/delete-route-only-after-adding
tshoot/windows-logger
remove-new-routing
refactor/eliminate-repo-dependency
add-arm-to-ci
refactor-demo-account-object
test/abc2
test/abc
send-ssh-rosenpass-config-meta
refactor-demo
ensure-schedule-never-runs-non-positive
feature/peer-validator-groupmgm
feature/peer-validator-fix
fix/include-active-dashboard-users
fix/handle-canceling-schedule
fix/geo-download
debug-google-workspace
yury/resolve-ip-to-location
feature/extend-sysinfo
sqlite-async-peer-status
yury/add-postgresql-store
fix/route
test-build
posture-checks-poc
debug-keycloak-idp
poc/netstack
for-pascal-tmp
peer-logout-management
manual-peer-logout
detached
chore/refactor-management
test/dns-bind
fix/enforce-acl-for-containers
yury/use-sync-map-in-updatechannel
fix/events-key-handling
filter-cache-on-load-account
fix/user-expiration
handle-user-context-cancellation
nb-client-k8s-statefulset
fake-addr
fix/iptables_in_docker
ebpf-debug
update-getting-started-flow-use-postgres
fix/peer_list_notification
feature/device-authentication-with-client-secret
feature/keep_alive
feat-groups-from-jwt
separate_proxy_from_wgconfig
fix/wg_conn
wg_conn_fix
wg_bind_parallel_processing
fix-rollback-get-acls
proxy_cfg_cleanup
performance-improvement-rego
update-lock-log-level
feat-client-side-acl
refactor/move_grpcserver_logic_to_account_manager
feature/event-storage
feature/update-idp-redeeming-invite
feature/api-peer-info
return-groupminimum-setupkey
feature/interface-bind
documentation_enhancement
fix-peer-registration
ssh
users_cache
pass-client-caller
client_caller_type
revert-283-feat-fix-windows-installer
periodic-peer-updates
ebpf
braginini/wasm
v0.76.1
v0.76.0
v0.75.1
v0.75.0
v0.74.7
v0.74.6
v0.74.5
v0.75.0-rc.6
v0.74.4
v0.74.3
v0.75.0-rc.5
v0.74.2
v0.74.1
v0.75.0-rc.4
v0.74.0
v0.74.0-rc.2
v0.74.0-rc.1
v0.73.2
v0.75.0-rc.3
v0.75.0-rc.2
v0.73.1
v0.75.0-rc.1
v0.73.0
v0.72.4
v0.72.3
v0.72.2
v0.72.1
v0.72.0
v0.71.4
v0.71.3
v0.71.2
v0.71.1
v0.71.0
v0.70.5
v0.70.4
v0.70.3
v0.70.2
v0.70.1
v0.70.0
v0.69.0
v0.68.3
v0.68.2
v0.68.1
v0.68.0
v0.67.4
v0.67.3
v0.67.2
v0.67.1
v0.67.0
v0.66.4
v0.66.3
v0.66.2
v0.66.1
v0.66.0
v0.65.3
v0.65.2
v0.65.1
v0.65.0
v0.64.6
v0.64.5
v0.64.4
v0.64.3
v0.64.2
v0.64.1
v0.64.0
v0.63.0
v0.62.3
v0.62.2
v0.62.1
v0.62.0
v0.61.2
v0.61.1
v0.61.0
v0.60.9
v0.60.8
v0.60.7
v0.60.6
v0.60.5
v0.60.4
v0.60.3
v0.60.2
v0.60.1
v0.60.0
v0.59.13
v0.59.12
v0.59.11
v0.59.10
v0.59.9
v0.59.8
v0.59.7
v0.59.6
v0.59.5
v0.59.4
v0.59.3
v0.59.2
v0.59.1
v0.59.0
v0.58.2
v0.58.1
v0.58.0
v0.57.1
v0.57.0
v0.56.1
v0.56.0
v0.55.1
v0.55.0
v0.54.2
v0.54.1
v0.54.0
v0.53.0
v0.52.2
v0.52.1
v0.52.0
v0.51.2
v0.51.1
v0.51.0
v0.50.3
v0.50.2
v0.50.1
v0.50.0
v0.49.0
v0.48.0-dev2
v0.48.0
v0.47.2
v0.47.1
v0.47.0
v0.46.0
v0.45.3
v0.45.2
v0.45.1
v0.45.0
v0.44.0
v0.43.3
v0.43.2
v0.43.1
v0.43.0
v0.42.0
v0.41.3
v0.41.2
v0.41.1
v0.41.0
v0.40.1
v0.40.0
v0.39.2
v0.39.1
v0.39.0
v0.38.2
v0.38.1
v0.38.0
v0.37.2
v0.37.1
v0.37.0
v0.36.7
v0.36.6
v0.36.5
v0.36.4
v0.36.3
v0.36.2
v0.36.1
v0.36.0
v0.35.2
v0.35.1
v0.35.0
v0.34.1
v0.34.0
v0.33.0
v0.32.0
v0.31.1
v0.31.0
v0.30.3
v0.30.2
v0.30.1
v0.30.0
v0.29.4
v0.29.3
0.29.3
v0.29.2
v0.29.1
v0.29.0
v0.28.9
v0.28.8
v0.28.7
v0.28.6
v0.28.5
v0.28.4
v0.28.3
v0.28.2
v0.28.1
v0.28.0
v0.27.10
v0.27.9
v0.27.8
v0.27.7
v0.27.6
v0.27.5
v0.27.4
v0.27.3
v0.27.2
v0.27.1
v0.27.0
v0.26.7
v0.26.6
v0.26.5
v0.26.4
v0.26.3
v0.26.2
v0.26.1
v0.26.0
v0.25.9
v0.25.8
v0.25.7
v0.25.6
v0.25.5
v0.25.4
v0.25.3
v0.25.2
v0.25.1
v0.25.0
v0.24.4
v0.24.3
v0.24.2
v0.24.1
v0.24.0
v0.23.9
v0.23.8
v0.23.7
v0.23.6
v0.23.5
v0.23.4
v0.23.3
v0.23.2
v0.23.1
v0.23.0
v0.22.7
v0.22.6
v0.22.5
v0.22.4
v0.22.3
v0.22.2
v0.22.1
v0.22.0
v0.21.11
v0.21.10
v0.21.9
v0.21.8
v0.21.7
v0.21.6
v0.21.5
v0.21.4
v0.21.3
v0.21.2
v0.21.1
v0.21.0
v0.20.8
v0.20.7
v0.20.6
v0.20.5
v0.20.4
v0.20.3
v0.20.2
v0.20.1
v0.20.0
v0.19.0
v0.18.1
v0.18.0
v0.17.0
v0.16.0
v0.15.3
v0.15.2
v0.15.1
v0.15.0
v0.14.6
v0.14.5
v0.14.4
v0.14.3
v0.14.2
v0.14.1
v0.14.0
v0.13.0
v0.12.0
v0.11.6
v0.11.5
v0.11.4
v0.11.3
v0.11.2
v0.11.1
v0.11.0
v0.10.10
v0.10.9
v0.10.8
v0.10.7
v0.10.6
v0.10.5
v0.10.4
v0.10.3
v0.10.2
v0.10.1
v0.10.0
v0.9.8
v0.9.7
v0.9.6
v0.9.5
v0.9.4
v0.9.3
v0.9.2
v0.9.1
v0.9.0
v0.8.12
v0.8.11
v0.8.10
v0.8.9
v0.8.8
v0.8.7
v0.8.6
v0.8.5
v0.8.4
v0.8.3
v0.8.2
v0.8.1
v0.8.0
v0.7.1
v0.7.0
v0.6.4
v0.6.3
v0.6.2
v0.6.1
v0.6.0
v0.5.11
v0.5.10
v0.5.1
v0.5.0
v0.4.0
v0.3.5
v0.3.4
v0.3.3
v0.3.2
v0.3.1
v0.3.0
v0.2.3
v0.2.2-beta.1
v0.2.1-beta.5
v0.2.0-beta.5
v0.2.0-beta.4
v0.2.0-beta.3
v0.2.0-beta.2
v0.2.0-beta.1
v0.1.0-beta.3
v0.1.0-beta.2
v0.1.0-beta.1
v0.1.0-rc.2
v0.1.0-rc-1
v0.0.8-hotfix-1
v0.0.8
v0.0.7
v0.0.6
v0.0.5
v0.0.4
v0.0.3
v0.0.2
v0.0.1
v0.0.0
Labels
Clear labels
2021 Q4
2021 Q4
2021 Q4
2022 Q1
2022 Q1
2022 Q1
2022 Q1
2022 Q1
2022 Q1
accessibility
accessibility
accessibility
acl
acl
acl
agent
agent
agent
agent
agent
agent
Android
Android
Android
Android
Android
Android
api
api
api
authentik
authentik
authentik
automation
automation
automation
azure
azure
azure
battery-usage
battery-usage
battery-usage
bug
cache
cache
cache
client
client
client
client-ui
client-ui
client-ui
cloud
cloud
cloud
cloud-only
cloud-only
cloud-only
cloudflare
cloudflare
cloudflare
community
community
community
compatibility
compatibility
compatibility
config-idp
config-idp
config-idp
config-issue
config-issue
config-issue
connection
connection
connection
contribution
contribution
contribution
coturn
coturn
coturn
cross-vpn
cross-vpn
cross-vpn
dashboard
dashboard
dashboard
data-usage
data-usage
data-usage
distribution
distribution
distribution
dns
dns
dns
docker
docker
docker
documentation
documentation
documentation
duplicate
duplicate
duplicate
enhancement
enhancement
event-stream
event-stream
event-stream
feature-request
feature-request
feature-request
freebsd
freebsd
freebsd
getting-started
getting-started
getting-started
go
go
go
good first issue
good first issue
good first issue
gui
gui
gui
help wanted
help wanted
help wanted
home-assistant
home-assistant
home-assistant
idp
idp
idp
inconsistency
inconsistency
inconsistency
integration
integration
integration
integrations
integrations
integrations
ios
ios
ios
ipv6
ipv6
ipv6
jwt
jwt
jwt
k8s
k8s
k8s
keycloak
keycloak
keycloak
linux
linux
linux
login
login
login
macos
macos
macos
management-service
management-service
management-service
Medium
Medium
Medium
missing-docs
missing-docs
missing-docs
mobile
mobile
mobile
moved-internal
moved-internal
moved-internal
needs-review
needs-review
needs-review
netbird-ui
netbird-ui
netbird-ui
networking
networking
networking
new-platform
new-platform
new-platform
nginx
nginx
nginx
notification
notification
notification
okta
okta
okta
openwrt
openwrt
openwrt
P2
P2
P2
packaging
packaging
packaging
peer-management
peer-management
peer-management
peer-management
peer-management
peer-management
peer-management
peer-management
peer-management
performance
performance
performance
postgres
postgres
postgres
posture-checks
posture-checks
posture-checks
psk
psk
psk
pull-request
question
question
question
refactor
refactor
refactor
relay
relay
relay
release
release
release
rfc
rfc
rfc
routes
routes
routes
security
security
security
security-improvement
security-improvement
security-improvement
security-related
security-related
security-related
self-hosting
self-hosting
self-hosting
server
server
server
signal
signal
signal
sleep-issue
sleep-issue
sleep-issue
ssh
ssh
ssh
ssl
ssl
ssl
status
status
status
store
store
store
synology
synology
synology
system-compatibility-issue
system-compatibility-issue
system-compatibility-issue
test-suite
test-suite
test-suite
third-party-integration
third-party-integration
third-party-integration
triage
triage
triage
triage
triage
triage
triage-needed
triage-needed
triage-needed
troubleshooting
troubleshooting
troubleshooting
UX
UX
UX
waiting-feedback
waiting-feedback
waiting-feedback
windows
windows
windows
wontfix
wontfix
wontfix
zitadel
zitadel
zitadel
Mirrored from GitHub Pull Request
Milestone
No items
No Milestone
Projects
Clear projects
No project
No Assignees
Notifications
Due Date
No due date set.
Dependencies
No dependencies set.
Reference: DYNR/netbird#5183
Reference in New Issue
Block a user
Blocking a user prevents them from interacting with repositories, such as opening or commenting on pull requests or issues. Learn more about blocking a user.
Delete Branch "%!s()"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
Originally created by @trbutler on GitHub (Aug 20, 2024).
Original GitHub issue: https://github.com/netbirdio/netbird/issues/2454
Originally assigned to: @pappz on GitHub.
Even if I turn on Network Monitor, Netbird is rarely functional when I wake my Mac up from sleep.
To Reproduce
Put Mac to sleep for a short while, wake it up, try to access a Netbird peer. The computer will know the IP of the peer and
netbird statuswill say it is connected, but any access to the other peer will fail. This happens on every macOS client I try it with, whether Network Monitor is enabled or not.Expected behavior
One would expect the connection to recover shortly after waking from sleep.
Are you using NetBird Cloud?
Using the self-hosted version updated to the latest version.
NetBird version
0.28.7
Temporary Fix
Create a MacOS launchAgent for waking from sleep that will load a shell script that pings a known, always available Netbird peer and run the equivalent of
netbird down && netbird upif ping fails:What I've done is install the netbird client on the server hosting the Netbird docker container so I have a reliable point to connect to, then check to see if I can in fact connect to a "peer" (and not just the server processes). Obviously, this is a hack and not a permanent solution; it'd be better if this were some sort of built-in check rather than a shell script.
It might be nice if such a check could be done every so often by the netbird client even between times sleeping: I've found that if my network connection is unstable, I'll keep losing access to netbird peers midsession as well. I'm thinking about having this test script run every so many minutes rather than just on wake for now.
@hurricanehrndz commented on GitHub (Aug 29, 2024):
@trbutler can you share the status of netbird on a bad wake up.
@paularlott commented on GitHub (Sep 4, 2024):
We're seeing the same on 2 Macs.
When they have a bad wake up we get:
and
netbird down && netbird upseems to restore the connection every time.Hopefully that will help but if I can supply more information please let me know what would be helpful.
@hurricanehrndz commented on GitHub (Sep 10, 2024):
Version 29 is out that has a potential fix for this, if you still experience that with version 29, can you please test, the test version requires autoconnect and network monitor to both be on
https://github.com/netbirdio/netbird/actions/runs/10777251462?pr=2565
@paularlott commented on GitHub (Sep 12, 2024):
I'm finding that on 0.29.1 when a couple of the macs wake from sleep they are disconnected, selecting connect from the UI does nothing.
Running
sudo netbird service restartcauses a window to popup with the error:Thanks
@paularlott commented on GitHub (Sep 15, 2024):
Just to add to this, I think it's more to do with network change than wake from sleep, e.g. go to sleep on wifi 1, wake on wifi 2 or wired.
@hurricanehrndz commented on GitHub (Sep 20, 2024):
29.3 should fix this
@paularlott commented on GitHub (Sep 21, 2024):
From our testing 29.3 is reconnecting to netbird every time on wake, thank you.
@trbutler commented on GitHub (Sep 22, 2024):
Sorry, I missed your question. Typically it would look exactly as it should (with connections), they just wouldn't work. I updated to 0.29.4 from 0.29.2 this morning and will report back how it goes and share an example of the problematic status if it arises again.
@juev commented on GitHub (Oct 3, 2024):
I installed version 0.29.4, and the laptop with macOS does not see the network after sleep.
Reconnecting brings it back to life.
:(
@juev commented on GitHub (Oct 3, 2024):
update: Interestingly, the retest did not reproduce the problem. I'll keep an eye on it.
@hurricanehrndz commented on GitHub (Oct 3, 2024):
Please test the version in the PR above
Get Outlook for iOShttps://aka.ms/o0ukef
From: Evsyukov Denis @.>
Sent: Thursday, October 3, 2024 4:52:16 AM
To: netbirdio/netbird @.>
Cc: Carlos Hernandez @.>; Comment @.>
Subject: Re: [netbirdio/netbird] Netbird can't recover from macOS sleep (Issue #2454)
update: Interestingly, the retest did not reproduce the problem. I'll keep an eye on it.
—
Reply to this email directly, view it on GitHubhttps://github.com/netbirdio/netbird/issues/2454#issuecomment-2391109199, or unsubscribehttps://github.com/notifications/unsubscribe-auth/ABMJBTMV4MVEHOHA24J7HRLZZUOWBAVCNFSM6AAAAABM2MNULKVHI2DSMVQWIX3LMV43OSLTON2WKQ3PNVWWK3TUHMZDGOJRGEYDSMJZHE.
You are receiving this because you commented.Message ID: @.***>
@hurricanehrndz commented on GitHub (Oct 3, 2024):
Sorry this PR
https://github.com/netbirdio/netbird/pull/2676
@paularlott commented on GitHub (Oct 19, 2024):
It looks like release 0.30.2 of the client has gone backwards, it now never reconnects after the mac wakes up and I have to do
sudo netbird service restartafter which I can get connected. The previous 0.29.x versions were working fine and always reconnecting after wake from sleep.Is there any information that would help with debugging this?
@trbutler commented on GitHub (Oct 20, 2024):
I’m seeing the same thing. Or it’ll still be connected to 2-3 peers, but the other 8-12 only reconnect after bringing NetBird down and back up again.
@mlsmaycon commented on GitHub (Oct 20, 2024):
Hey folks, we are working on improving the recovery. The pr #2757 has a state handler for the DNS and routes added by the client. If possible, it would be great if you could download the builder binary and test it on your machine. See the steps below:
Download https://github.com/netbirdio/netbird/actions/runs/11405814951/artifacts/2074696862 (you need to be logged in to github).
Stop the service with
sudo netbird service stop.Extract, pick the correct arch and replace the netbird binary (which netbird) with the new one. e.g. when downloading and extracting the file in the Downloads folder:
Then
sudo netbird service startTo recover the package version, stop the service again and run the following command:
@Eu-Arthur commented on GitHub (Oct 21, 2024):
i have same bug on windows client & linux client
@mlsmaycon commented on GitHub (Oct 21, 2024):
@Eu-Arthur you can use the following download links to validate them on your other clients:
Linux:
https://github.com/netbirdio/netbird/actions/runs/11408557648/artifacts/2075518167
Windows:
https://github.com/netbirdio/netbird/actions/runs/11408557648/artifacts/2075518258
The idea is similar, just check the correct Linux path with the command
which netbirdand on Windows the path will beC:\Program Files\NetBird\netbird.exe@Eu-Arthur commented on GitHub (Oct 21, 2024):
On windows, that doesn't resolv the probleme.
And that was not better on linux.
I have rollback on 29.4 that work
@mlsmaycon commented on GitHub (Oct 21, 2024):
Thanks for the feedback @Eu-Arthur. Could you share a bit more about the tests that was performed and the behavior seem?
@trbutler commented on GitHub (Oct 22, 2024):
One addition to get it working: I had to run
xattr -dr com.apple.quarantine ~/Downloads/macos-packages/netbird_darwin_all/netbird. It's running at the moment; I'll report results back!@paularlott commented on GitHub (Oct 22, 2024):
On macOS Sequoia that PR appears to be solving the reconnect after wake
@trbutler commented on GitHub (Oct 22, 2024):
Prior to the PR, I found that usually there'd only be 2/10 online peers connected after wake. After the PR, the system woke this morning to 4/10 peers. All the available peers were specifically in one location; the other 6 or the 10 online peers came online when I ran
netbird down && netbird up.Last night:
In the morning:
Restarting netbird and then trying again:
@paularlott commented on GitHub (Oct 22, 2024):
I commented too soon, this morning the mac only connected to 2 out of 57 peers, I had to restart netbird and then the other peers all showed as available.
@Eu-Arthur commented on GitHub (Oct 25, 2024):
On windows, and linux the last update fix this
@paularlott commented on GitHub (Nov 12, 2024):
It seems the issue was resolved in 0.30.0 but back in 0.31.1, on the mac I have to restart netbird every time it wakes again.
@mlsmaycon commented on GitHub (Nov 13, 2024):
@paularlott can you share the logs from:
/var/log/netbird and /var/log/netbird.err?
@ser commented on GitHub (Nov 13, 2024):
With my setup, no single peer connects after waking from sleep. I even added alias to my zshrc:
alias nb=netbird down&&netbird upi really recommend it!
@paularlott commented on GitHub (Nov 13, 2024):
@mlsmaycon I'm more than happy to share the logs privately but there's some things in there from my pushing netbird to replace all our VPNs that I'm not keen to share publicly, what's the best way to get an archive of them to you?
@mlsmaycon commented on GitHub (Nov 14, 2024):
Can you join our slack and share through there?
NetBird slack
@mlsmaycon commented on GitHub (Nov 14, 2024):
@ser all your peers are in the latest 0.31.1 version? Can you share the same logs?
@mlsmaycon commented on GitHub (Nov 19, 2024):
Hello @paularlott. Thanks for sharing the logs in Slack. It seems like you’ve faced an issue with our state manager:
We’ve fixed this issue in the new 0.32.0 version
Can you try this version?
@trbutler commented on GitHub (Dec 9, 2024):
This issue seems to have regressed in the last release or two. I believe since 0.34.0, I've started noticing that some, but not all, peers become unavailable during sleep. Right now I can ping one system at my office, but not the system directly next to it. Sometimes network routes continue to work, but depending on which peers quit working, even HA routes can stop working because it seems to get stuck on one of the unavailable peers despite Netbird still being able to talk to one of the available peers.
As with earlier versions that exhibited this problem,
netbird down && netbird upon the Mac that was sleeping resolves the issue.Possible point on this: the system that remained available to the newly awakened Mac is a Linux system running Netbird 0.32.0. The ones that were unavailable until the Mac's Netbird was taken down and brought back up are running 0.34.0 or 0.34.1.
@trbutler commented on GitHub (Feb 21, 2025):
As I mentioned back in December, there seemed to be a regression after 0.32.0. If I keep my Linux servers on client version 0.32.0, I can reliably connect to them from my MacOS client that is running 0.36.7. However, as soon as I move the Debian systems to the latest Netbird, often the systems erratically disconnect even without going into sleep first. There's nothing in client.log that seems to evidence what is going on, but after
netbird down && netbird up, the more recent (beyond 0.32.0) clients will be available, then vanish after a minute or two. Those rolled back to 0.32.0 continue to be available, however.@trbutler commented on GitHub (Feb 22, 2025):
Continuing to try to locate the exact problem, I've noticed whenever I downgrade a system to 0.32.0 (something thereafter might be OK, but it is the version I've found consistent results with), I have to take Netbird down and back up my MacOS system with 0.36.7 before it will see the systems again. However, once I do that, the link becomes more reliable. I did notice if I do a roll back on a third machine, it may be that my system running 0.36.7 has to be restarted to see either remote host again.
The self-hosted installation of Netbird should be up-to-date -- I went through the upgrade process the middle of last week.
@trbutler commented on GitHub (Mar 3, 2025):
I'm trying to figure out if one client struggling has a profound impact on the other clients. What I have noticed if running 0.37.1 is that the problem seems to have gotten more extreme. On an M3 MacBook Air, on-wake Netbird's resource usage skyrockets as it gets stuck. This morning, it was taking 150% CPU on Activity Monitor and, as per usual with this situation, unable to communicate with other peers.
Here's some output from /var/log/netbird.out.log which seems to balloon to many gigabytes in size on my Mac peers, requiring me to remember to delete it or it will literally fill up the disk. The contents just repeat over and over:
Here's what the /var/netbird/client.log shows on the same system running the latest Netbird:
This all fixes itself if I restart Netbird, until (usually) the next time the system sleeps. Sometimes it'll malfunction again before going to sleep, but sleep is the most predictable cause of the problem.
@mlsmaycon commented on GitHub (Mar 4, 2025):
Hello @trbutler, we are working on fixing a race condition that happens after sleeping at 0.37+. In the meantime, a workaround is to either downgrade to 0.36.7 or disable the network monitor.
@trbutler commented on GitHub (Mar 6, 2025):
Thanks @mlsmaycon. I reverted back to 0.36.7 per your advice. Interestingly so far 0.36.7 is proving the most stable of any release I've used since 0.32.0 concerning the broader problem of recovering after sleep.
@trbutler commented on GitHub (Mar 7, 2025):
I don't know if this is relevant to the overall problem of restoring connections after sleep, but I've noticed even on 0.36.7, after sleep Netbird uses 2-4x more resources than before sleep. It seems to idle at about 5% CPU on the M3, but after sleep it easily tops 20% until I restart Netbird.
@trbutler commented on GitHub (Mar 12, 2025):
So, 0.38.0 still does not resolve the sleep issue and also seem to continue to show signs of the bug present in 0.37.x. Upon wake from sleep, Netbird is using 60%+ of the M3, spitting out this error into the log at high speed:
After restarting Netbird, usage goes down to about 6%.
@trbutler commented on GitHub (Mar 25, 2025):
So the issues remain in 0.39.1 and may have actually worsened. After waking from sleep Netbird was using 65% of a processor core. /var/log/netbird/client.log hadn't shown any updates at all since 5 a.m. (several hours after I put the computer to sleep for the night), but /var/log/netbird.out.log was going wild again:
@trbutler commented on GitHub (Mar 27, 2025):
A few details I've noticed that may be relevant beyond the resource usage upon wake from sleep. The Netbird clients I have that are running in a datacenter remain available from my Mac laptop. But the clients I have connected to SOHO-grade Internet are not (unfortunately this didn't dawn on me before I restarted Netbird, so I can't say if clients on my local network remain available or not). Restarting netbird on my reawakened Mac restored access to the clients at two different locations outside of a datacenter.
This came up while providing more information for #3576, in which I noticed that the file /var/logs/netbird.out on the reawakened MacOS system had no entries in it for today, but /var/logs/netbird/netbird.out.log on one of the remote systems did have a bunch of entries in it for today.
@trbutler commented on GitHub (Mar 31, 2025):
On previous releases, I found that frequently using
netbird down && netbird upwould both restore access to the peers and reduce the load Netbird put on the system after sleep. However, on 0.39.2, something has degraded further and I have to runsudo netbird service restartor I'm seeing Netbird take as much as 140% CPU on an M1 Max after waking from sleep.@nazarewk commented on GitHub (Apr 3, 2025):
@trbutler could you enable the trace logs and send us (support at netbird.io or kdn @ public Slack) the debug bundle gathered while the issue is happening?
@trbutler commented on GitHub (Apr 4, 2025):
@nazarewk I'll update with more contents because today it is technically functioning, but I have been observing the high resource usage that happens when Netbird hasn't been restarted after sleep. I'll send the requested logs to that e-mail address. Thank you! Here's what client.log shows at the moment:
@trbutler commented on GitHub (Apr 18, 2025):
The issue continues to exist in 0.41.3. In fact, on the M3, I saw the worst post-sleep performance yet with Netbird claiming 120% CPU in Activity Monitor.
@trbutler commented on GitHub (Apr 24, 2025):
The issue persists in 0.42.0 with the same ~ 110-120% CPU as 0.41.x. This is a significant continued regression from even the earlier problem where it was only 20-30% CPU upon wake.
@lixmal commented on GitHub (Apr 24, 2025):
@trbutler Next time this happens, can you run
This might be able to generate a debug bundle in
/tmp(whilenetbird statusis stuck)@trbutler commented on GitHub (Apr 25, 2025):
Got it. Where should I send it? Thanks!
@lixmal commented on GitHub (Apr 25, 2025):
support@netbird.io or on slack
@trbutler commented on GitHub (Apr 25, 2025):
Thanks, @lixmal . I sent that debug bundle to the address.
@lixmal commented on GitHub (Apr 26, 2025):
@trbutler We haven't received anything yet
@Gauss23 commented on GitHub (May 15, 2025):
Any progress here? The Netbird client on MacOS should cope with sleep/hibernation of the machine. That's a common usecase.
@trbutler commented on GitHub (May 15, 2025):
That's weird -- I'll try to send it again. Please let me know if you receive it. Thanks!
I can confirm this is continuing in 0.43.3, incidentally.
@pappz commented on GitHub (May 19, 2025):
@trbutler
Could you run the netbird debug bundle -S when the connection and CPU usage are normal?
@trbutler commented on GitHub (May 25, 2025):
@pappz I sent the requested bundle on Slack. This is a particularly interesting moment of it working, too: it was a rare occasion the MacBook resumed from sleep without Netbird going crazy on resource usage, so I thought it might offer something helpful. Notably, I've see 0.45.1 using fewer resources when it is working well, sometimes as little as 2-5%. It can still use up to 15% of the M3, which seems a bit high given how well it works onconsiderably less powerful processors such as a Raspberry Pi's or an anemic Atom x5-Z8350 (it often idles at about the same utilization on the Atom as on the M3). But, the previous range was 12-20%, so it is an improvement! It can still get into the mess after waking where it uses 100% until I restart the service.
@pappz commented on GitHub (May 27, 2025):
@trbutler Unfortunately, I can't find your message with the bundle. Could you please send it to me directly via Slack? My name is Zoltán Papp.
@trbutler commented on GitHub (May 29, 2025):
Oops, I accidentally sent it along with the other bundle to @lixmal. Sorry. I've attached it to a message to you now. Incidentally, @Markovich01 mentioned in https://github.com/netbirdio/netbird/issues/3852#issuecomment-2917419716 the suggestion that maybe the unreliable peer connections we've been experiencing have to do with Quantum Resistance being enabled. Do you suppose that could also affect recovery from sleep? These seem to be two separate, but, I suspect, related issues.
@trbutler commented on GitHub (Jun 3, 2025):
Following up on what @Markovich01 had suggested in #3852. I disabled quantum resistance on every peer on my Netbird network (since the peers couldn't communicate if I only turned it off on some of them) and about 12 hours later, all the peers are still talking to each other. Perhaps more notably, thus far, my attempts to wake the Mac have been smooth without the 100%+ core usage I've been sharing in this bug report. Moreover, Netbird's average CPU usage, which had been hovering between 10-20% constantly on an Apple M3 has dipped to about 0.6% (which is, obviously, way better for battery life on a laptop!).
Whereas previously Netbird would be the most demanding process upon wake and remain in the top five most demanding processes constantly, it seems to be hovering around the 15th most demanding process in Activity Monitor at the moment.
This makes me strongly suspect the bug with waking up a Mac has something to do with Rosenpass. I've been using Rosenpass in Permissive mode, incidentally -- I have not tested it in the non-permissive mode. What is less clear is if it has to do directly with Rosenpass on MacOS or the general network instability that seems to be happening with Rosenpass, since this switch does seem to be improving the general Netbird network instability I reported in that other bug report, as well.
@stefan007007 commented on GitHub (Jun 26, 2026):
Same failure class, but the trigger here is network roaming (WiFi↔cellular), not only sleep — and there's a DNS amplification loop that prevents the relay fallback from ever engaging.
Env: macOS (Apple Silicon), NetBird client v0.73.1, interface type userspace, quantum-resistance permissive. Heavily-mobile laptop, constant WiFi↔cellular switching.
Symptom chain (from
/var/log/netbird/client.log, observed repeatedly 2026-06-20…24):keepalive ping failed to receive ACK within timeout,connection reset, with source IPs in10.44.x.x(cellular CGNAT).100.126.255.254, match-domain routed to a peer IP), the upstream times out.relay.netbird.ioitself becomes unresolvable (no such host, logged ~1345×) → the relay fallback never engages → peer stays stuck inConnectingindefinitely.netbird up/ restart does not recover the P2P/ICE path; only a stable network for several minutes lets it rebuild.What actually helped (workaround, not a fix):
netbird up --disable-dns+ a static/etc/resolverentry pointing elsewhere breaks loop step 2→3, sorelay.netbird.iostays resolvable. The underlying Signal-stream-drop-on-roam (step 1) remains.So two distinct asks beyond the sleep case: (a) Signal/management stream should reconnect on interface/route change without a full restart; (b) relay-host resolution should not depend on NetBird's own DNS takeover, otherwise a peer-DNS outage cascades into total relay failure. Related closed roaming report: #2211.