SoftEther VPN Server
SoftEther VPN Server delivers a powerful, open-source enterprise VPN solution developed by University of Tsukuba, Japan.
This is the only VPN server that simultaneously supports six protocols (SSL-VPN, OpenVPN, L2TP/IPsec, MS-SSTP, L2TPv3/IPsec, EtherIP/IPsec), providing unprecedented deployment flexibility while delivering 4-13x superior performance compared to commercial solutions.
The perfect choice for businesses that demand data localization compliance, enterprise-grade security, and effortless scalability to 4,096 concurrent sessions — all with zero licensing limits.
Key Features
- Multi-protocol architecture: Simultaneous support for SSL-VPN, OpenVPN, L2TP/IPsec, MS-SSTP, L2TPv3/IPsec, and EtherIP/IPsec protocols on a single server
- High-performance throughput: Up to 980 Mbps bandwidth with TCP optimization and parallel data transmission capabilities
- Advanced firewall penetration: Unique tunneling capabilities through HTTPS (port 443), DNS, and ICMP packets to bypass restrictive network limitations
- Enterprise scalability: Support for up to 4,096 virtual hubs, 10,000 users per hub, clustering up to 64 servers with automatic load balancing
- Comprehensive management: GUI interface, HTML5 web console, JSON-RPC API for automation and integration with enterprise systems
- Active Directory integration: Built-in support for AD, RADIUS, LDAP for centralized corporate user authentication
- Enterprise-grade encryption: AES-256, ChaCha20-Poly1305, RSA up to 4096-bit, TLS 1.3 with Russian cryptographic standards compatibility
Important Compliance Information
Russian Federation Compliance: This solution is intended exclusively for corporate use. All Russian employees using corporate VPN must be documented according to Russian Federation legislation from March 2024. Organizations must have written IT policies prohibiting personal VPN use on corporate systems.
Warning
Important! This build is specifically optimized for Yandex Cloud, taking into account the specifics of BareMetal servers as well as the requirements of Russian legislation and federal laws. Its functionality and behavior differ from the standard version.
Warning
Warning! After the BareMetal server is created, the product settings generation process will start automatically. This usually takes about 5 minutes, depending on the hardware. During this time, SSH access will be unavailable. This step is necessary to ensure complete and secure setup. Once completed, the server will reboot automatically.
-
Prepare a pair of SSH keys to connect to the BareMetal server.
-
Lease a BareMetal server. In the Image section, go to the Marketplace tab and select SoftEther VPN Server. In the Access section paste the contents of your public SSH key in the Public SSH key field.
-
Wait for the installation process to complete and connect to the server via SSH:
ssh root@<публичный_IP-адрес_сервера> -
Obtain the auto-generated configuration from the file
credentials.txt:cat /opt/softether/credentials.txt
- Remote employee access: Secure connectivity for remote workers and mobile personnel to corporate network
- Branch office connectivity: Site-to-site VPN for connecting geographically distributed offices and subsidiaries
- Hybrid cloud architecture: Integration of on-premises infrastructure with Yandex Cloud resources
- Security compliance: Secure communication channels to meet industry regulatory requirements
OpenNix provides technical support to SoftEther VPN users in Yandex Cloud. You can contact their technical support by email at support@opennix.ru. Support engineers are available on business days from 9 am to 6 pm GMT+3.