HomeServices › ZeroTier

ZeroTier on a Mac

Zero Trust SD-WAN / virtual networks — agent + API · VPN

ZeroTier creates encrypted virtual L2/L3 networks across devices and sites, with rules-based flow control. Install the macOS app (zerotier-cli joins networks); manage members via my.zerotier.com or your own controller, with a REST API. A peer to Tailscale for ZTNA. Running your own controller. Every zerotier-one install can also be the network controller for its own networks — the fully self-hosted alternative to my.zerotier.com, with no seat limits and nobody else holding your membership list. It exposes a REST API on 127.0.0.1:9993 (authenticated from authtoken.secret) but no local admin UI, which is the gap the ZeroTier Controller pane fills: controller status and identity, the networks it owns, the member-authorisation queue with one-click authorise/deauthorise, and a security audit. Administration runs over SSH against the controller's own loopback, so the API never has to be exposed. Run it on an always-on server with UDP 9993 reachable for peers and TCP 9993 on loopback. Back up identity.secret, identity.public and controller.d (encrypted, off-box) — network IDs derive from the identity, so losing it orphans every network.

Run ZeroTier with FrontierStack

FrontierStack lists ZeroTier in its VPN catalog. Install or connect it from one place, then monitor its status, ports and certificate, secure it with the firewall and Malware Audit, and back it up.

Run it all from one Mac app.

FrontierStack installs, monitors and secures the whole stack — locally and across your fleet — from a single native macOS app.

Download FrontierStack

Related in VPN