NetBird Private Access Gateway with Command Center by Code Creator is a self hosted secure access appliance for teams that need controlled access to private workloads without publishing those workloads directly to the public internet. This is a repackaged open source software product wherein additional charges apply for Code Creators Secure Access Command Center, AWS resource discovery, guided private access policy automation, connection diagnostics, first boot configuration, and customer ready NetBird deployment.
The Comand Center combines NetBird with Code Creator software that discovers private AWS resources, visualizes remote user and routing health, previews access changes before they are applied, and creates narrowly scoped NetBird resource and TCP/UDP access policies through a guarded workflow.
Additional charges apply for Code Creators technical additions and deployment automation, including the Secure Access Command Center, AWS resource discovery for EC2, RDS, RDS clusters, and load balancers, first boot endpoint and credential generation, prebuilt NetBird groups/network/routing topology, live data refresh, connection diagnostics, and Guided Access Setup. The Command Center shows whether the AWS target is running, whether the routing peer and remote user are connected, whether a private access policy exists, and whether the selected TCP resource is reachable. Access Setup presents a dry-run plan and requires explicit APPLY confirmation before creating a NetBird resource or policy. It does not modify AWS security groups, route tables, NACLs, or IAM policies.
Deploy the AMI in the VPC containing the private resources you want to reach, attach the documented read-only IAM discovery role, and provide a public IPv4 address for the NetBird management endpoint. First boot configures HTTPS, creates customer specific credentials and the Code Creator routing topology, and writes login information to ~/FIRST_LOGIN.txt. Human users can be enrolled with NetBirds embedded local identity system or an external identity provider, while setup key enrollment is available for quick validation and managed/server devices.
The deployment runs in the buyers AWS account and uses the buyers EC2, networking, IAM, and security controls. NetBird geolocation based posture functionality is disabled in this build.
External dependencies: the default automated public IP deployment uses sslip.io DNS for its generated hostname and Lets Encrypt for TLS certificate issuance and renewal. Internet connectivity to these services is required. Neither service requires a separate paid subscription.
Highlights
Operate private access from one purpose built Command Center: Discover EC2, RDS, RDS clusters, and load balancers; monitor remote users and routing health; refresh live AWS and NetBird state; and see the complete private-access path from one GUI.
Preview before you change access: Guided Access Setup validates the private target, shows a dry run plan, reuses the Code Creator routing topology, and creates narrowly scoped NetBird resource and TCP/UDP access policies only after explicit APPLY confirmation.
Move from AMI launch to working private access with less manual setup: First boot creates HTTPS, unique customer credentials, NetBird groups, private access network, routing peer, and diagnostics while the included guide walks administrators through IAM discovery, user enrollment, and private resource validation.
AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
You pay by the hour based on the EC2 instance size you choose to run the gateway. All seven options bill the same way, differing only in compute capacity. The t3a options use one processor family, while the t3 options use another. Within each family, sizes range from medium through 2xlarge, so hourly cost rises as you select more compute. Pick the size that matches your expected network load. You can start small and move to a larger instance if your traffic grows.
Top-of-mind questions for buyers
What does the hourly instance charge cover, and what am I billed for separately?
You pay per hour for the running gateway instance you select. The charge meters running time on the compute size you pick. Underlying AWS resources, such as storage or data transfer, bill separately through your AWS account. The software charge covers only the gateway running on that instance.
Am I charged when the gateway instance is stopped or powered off?
Hourly software charges apply only while the instance runs. A fully stopped instance stops accruing software charges. Note that AWS storage tied to a stopped instance may still incur its own fees, billed separately from this software.
What does this gateway do, and does deployment require complex network setup?
NetBird is a Zero Trust networking platform. It creates encrypted point-to-point tunnels between your devices without a central VPN server. Devices connect directly, so you avoid opening ports or writing complex firewall rules. The hourly charge runs this gateway on the compute size you choose.
docs.netbird.io
Helpful?
Vendor refund policy
You may cancel the AWS Marketplace subscription at any time. No contracts. Software charges already incurred are not refundable.
How can we make this page better?
Tell us how we can improve this page, or report an issue with this product.
Give us feedbackReport a problem with this product or seller
Legal
Vendor terms and conditions
Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA).
Content disclaimer
Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.
An AMI is a virtual image that provides the information required to launch an instance. Amazon EC2 (Elastic Compute Cloud) instances are virtual servers on which you can run your applications and workloads, offering varying combinations of CPU, memory, storage, and networking resources. You can launch as many instances from as many different AMIs as you need.
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
This is a software product wherein additional charges apply for Code Creator automated AWS deployment, no domain quick start configuration, secure private network setup, EC2 ready configuration, and AWS Marketplace AMI engineering. Deploy a private NetBird based VPN and secure access server in your own AWS account with browser based management
Launch a private MCP control center on AWS with secure tool access for AI applications. Deploy the private control point that helps your team connect AI applications to approved tools with separate client tokens, controlled tool access, trusted HTTPS, and a clean AWS foundation for future MCP growth.
This is a repackaged open source software product wherein additional charges apply for Code Creator automated first boot provisioning, trusted HTTPS configuration, scoped client token management, restricted MCP tool access, readiness testing, operational helper tooling, and AWS Marketplace AMI engineering.
Private AI inference gateway with Open WebUI, Ollama, LiteLLM, local CPU model serving, and an OpenAI compatible API endpoint on Ubuntu 24.04. This is a repackaged open source software product wherein additional charges apply for Code Creator integration of Open WebUI, Ollama, LiteLLM, PostgreSQL, Redis and Nginx, automated first boot configuration, local model serving, API gateway setup, helper tooling, and AWS Marketplace AMI engineering.
AI Developer API Gateway by Code Creator gives developers and teams a ready to launch self hosted AI gateway for OpenAI compatible API access, provider routing, virtual keys, spend tracking, and secure application integration. Built on Ubuntu 24.04 with LiteLLM, PostgreSQL, Redis, Docker, and Nginx, this server helps customers centralize AI API access from their own AWS instance. This product is also known as Private AI Developer Gateway by Code Creator. This is a repackaged open source software product wherein additional charges apply for Code Creator integration of LiteLLM, PostgreSQL, Redis, Docker and Nginx, automated first boot provisioning, fresh credential generation, public IP configuration, virtual key management, spend visibility, and AWS Marketplace AMI engineering.
Be the first to review this product. We've partnered with PeerSpot to gather customer feedback. You can share your experience by writing or recording a review, or scheduling a call with a PeerSpot analyst.