
Overview

Product video
If you want to purchase licenses directly from AWS, we recommend our PAYG listing instead: https://aws.amazon.com/marketplace/pp/prodview-f5qcwyw2gy256
Access Server for AWS delivers the best-of-breed VPN solution for secure remote access, site-to-site VPN and secure SasS access for organizations of all sizes. Our award-winning open-source protocol is the industry standard for accessing private information securely, ensuring safe access to internal data and delivering zero-trust network access.
Access Server for AWS is a self-hosted VPN client software that provides rapid deployment for secure remote access with a built-in web-based user interface for ease of use. Access Server provides an extra layer of security, with end-to-end encryption and granular access control to limit the risk of exposed data for remote users, site-to-site connectivity, or securing SaaS access and IoT devices. Certificate PKI management provides simplified installation and configuration. Additional features include balancing traffic across a cluster of Access Servers with DNS round robin and tunneling only your private traffic, optimizing your network bandwidth and making your environment more secure.
Get started today with two free connections at https://myaccount.openvpn.com/signup/as . Access Server for AWS technical support and onboarding is available 24/7. Schedule a demo at https://hs.openvpn.net/request-demo .
OpenVPN client software accommodates Windows, macOS, Linux, Android, iOS, and ChromeOS environments. Includes a built-in local authentication system and support for authentication with Active Directory, PAM, LDAP, RADIUS, SAML, and even a custom Python3 authentication module is possible.
Our subscription model is based on the number of concurrent connected devices, so it's affordable for any size business and can easily grow with your company. Without a subscription key installed, OpenVPN Access Server will allow 2 concurrent connections at no additional cost (excepting AWS infrastructure costs).
Highlights
- This is our BYOL offering which accepts a license purchased from OpenVPN Inc at https://myaccount.openvpn.com/signup/as. If instead you prefer to buy the license directly through AWS, you can use our PAYG listing: https://aws.amazon.com/marketplace/pp/prodview-f5qcwyw2gy256
- A self-hosted scalable secure remote access, site-to-site VPN solution to give your employees the freedom to work securely with end-to-end encryption for accessing SaaS, the internet, and company resources. Essential security controls needed to evolve from a trusted-perimeter security model to an identity-based ZTNA approach.
- OpenVPN client software that accommodates Windows, macOS, Linux, Android, iOS, and ChromeOS environments. Includes a built-in local authentication system and support for authentication with Active Directory, PAM, LDAP, RADIUS, SAML, and even a custom Python3 authentication module is possible.
Details
Introducing multi-product solutions
You can now purchase comprehensive solutions tailored to use cases and industries.
Features and programs
Buyer guide

Financing for AWS Marketplace purchases
Pricing
Vendor refund policy
Refunds allowed up to 60 days after purchase, if license has not been activated.
Custom pricing options
How can we make this page better?
Legal
Vendor terms and conditions
Content disclaimer
Delivery details
64-bit (x86) Amazon Machine Image (AMI)
Amazon Machine Image (AMI)
An AMI is a virtual image that provides the information required to launch an instance. Amazon EC2 (Elastic Compute Cloud) instances are virtual servers on which you can run your applications and workloads, offering varying combinations of CPU, memory, storage, and networking resources. You can launch as many instances from as many different AMIs as you need.
Version release notes
Additional details
Usage instructions
For instructions on using the OpenVPN Access Server appliance on the AWS Marketplace, please visit https://openvpn.net/vpn-server-resources/amazon-web-services-ec2-byol-appliance-quick-start-guide/ .
Resources
Vendor resources
Support
Vendor support
For product activation to succeed your firewall and/or security group settings must allow connections to our online activation servers - details can be found in our FAQ section here: https://openvpn.net/aws-frequently-asked-questions/ . If you experience any problems, you can register for a free account on our website here: https://openvpn.net/support-for-aws/ and then open a support ticket so our technical team can assist you.
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
Similar products




Customer reviews
Secure remote access to private company resources has protected data but setup still needs simplification
What is our primary use case?
My main use case for OpenVPN Access Server is setting up security in a company where some private resources are not accessible, and some remote employees can use it as well.
A specific example of how I use OpenVPN Access Server for this purpose is that we gave OpenVPN Access Server access to every employee and put a firewall behind our database, which is only accessible by the VPN.
What is most valuable?
The best features OpenVPN Access Server offers are ease of setup, and it is just easy. The ease of setup helps my team day-to-day because you set it up once and then you forget about it.
OpenVPN Access Server has a significant positive impact on my organization for security, as it helps a lot.
What needs improvement?
I think OpenVPN Access Server's setup can be just one click; currently, it takes multiple steps, and when you forget the admin password, you are locked in.
For how long have I used the solution?
I have been using OpenVPN Access Server for the last five years.
What do I think about the stability of the solution?
OpenVPN Access Server is stable, definitely.
What do I think about the scalability of the solution?
I don't know how OpenVPN Access Server's scalability is; we only have one instance.
How are customer service and support?
We haven't used customer support for OpenVPN Access Server.
Which solution did I use previously and why did I switch?
We had another solution, but I cannot share which solution we used before switching to OpenVPN Access Server.
How was the initial setup?
It is easy to install and set up OpenVPN Access Server within my organization, but it could be easier. You just need to set up the application itself, then configure it for your needs. After that, you configure the firewall and distribute it to all the team members, and you're done.
What about the implementation team?
I am not the one who procured this product, as another team is handling it, so I cannot comment on pricing, setup cost, and licensing.
What was our ROI?
I have seen a return on investment, definitely for security, but I cannot share any metrics.
What's my experience with pricing, setup cost, and licensing?
I am not the one who procured this product, as another team is handling it, so I cannot comment on pricing, setup cost, and licensing.
Which other solutions did I evaluate?
I did not evaluate other options before choosing OpenVPN Access Server.
What other advice do I have?
My advice to others looking into using OpenVPN Access Server is to just try it. If you don't like it, you don't like it.
I don't know if I am using local, LDAP, RADIUS, PAM, or SAML authentication integration with OpenVPN Access Server.
I don't know if we have utilized the Access Controls feature of OpenVPN Access Server; another team is handling that.
I would describe the user interface of OpenVPN Access Server as not modern, but it works. The user experience could be better with all the statistics and everything.
My impression of the connection speed when using OpenVPN Access Server compared to other VPN solutions is that it is solid compared to others.
I would rate this review seven out of ten.
Which deployment model are you using for this solution?
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Remote access has become smoother and security has improved, but availability needs work
What is our primary use case?
My main use case for OpenVPN Access Server is that we have our VPN solution centered around this, and we use it for connecting to different VPNs, whether they be internal private subnets that we configured for specific environments. For accessing those, we specifically use OpenVPN Access Server for connecting to VPN, then accessing those boxes and other resources, so it basically provides remote access to private networks over the Internet.
A quick specific example of how my team uses OpenVPN Access Server in a day-to-day scenario is that we have a public IP, which is basically our OpenVPN Access Server, over the Internet. Via that, we connect to the VPN tunnel service through the UI agent they provide, and from there, users connect and have access to different private sub-networks, whether they be databases, servers, or Kubernetes clusters, all of which are behind the VPN. To access those, we connect via OpenVPN Access Server.
I extensively use OpenVPN Access Server for authentication of our backend services, where how it works is when the token generates, we always validate via the correct VPN route. The encryption engine is also very helpful, and as an SRE, I have set this up, so based on that information, I can say that we have used certain protocols to ensure smooth communication between the client and server. It was easier to set up; it is not that difficult, as we just have to provide proper IPs and addresses and proper permissions to use it.
I have utilized the access controls feature of OpenVPN Access Server, which effectively allows us to know who is currently connected, a valuable asset for database-related inquiries in our production environments. The user controls significantly aid in maintaining this oversight.
I have used role-defining features within OpenVPN Access Server, which creates a secure approach to enforcing least privilege effortlessly. Currently, we maintain around four roles: help desk, read-only auditors, administrators, and a VP of Engineering who serves as the super administrator. This setup minimizes the risk of unauthorized access or malpractices, allowing for easy group management whereby adding a new person to a group grants them access to all environments.
What is most valuable?
The best features OpenVPN Access Server offers include using a protocol called UDP over TCP, which gives comparatively lower latency and overall faster throughput. Once you are in a network, you will not see many bandwidth issues because it uses UDP for broadcasting or routing our request, making it better for streaming. The SSH access is also easier, requiring fewer configurations. The authentication methods are really good, allowing for local level authentication or LDAP, and we have also configured it with Okta for SSO login, providing a better edge as it allows users to log in without entering usernames and credentials each time.
OpenVPN Access Server has positively impacted our organization by moving from TLS 1.1 to TLS 1.3, which has significantly improved our security constraints. The performance metrics demonstrate that previously used solutions were not optimal; with OpenVPN Access Server, we experience much less latency, making it easier to deploy, and it works well with firewalls. OpenVPN Access Server supports various authentication methods, reducing the need for manual username and password entry each time users connect, thereby creating less friction for those managing the VPN, resulting in a good impact overall.
What needs improvement?
OpenVPN Access Server can be improved by addressing the issue we faced with a single VPN server since it does not allow the creation of replicas without a load balancer, which we found to be an availability issue that could be easily fixed. Additionally, the certificate management—renewal and issuance for new certificates—is currently manual, which creates some friction. While it is not overly complex, it requires a subject matter expert to manage effectively.
Regarding needed improvements, I think they are doing a good job overall. My main concern relates to user experience; there are common complaints about not being able to manually download a profile to access the VPN. Connections and setups can be a bit confusing on the UI, which some of my team members have reported. Currently, the portal is not self-service; it could benefit from a one-click configuration setup to make deployment and management easier since we are paying for these services.
For how long have I used the solution?
I have been using OpenVPN Access Server for almost two years now in Cloud Bold.
What do I think about the stability of the solution?
OpenVPN Access Server is stable.
What do I think about the scalability of the solution?
OpenVPN Access Server's scalability is good; I have not faced significant issues in that regard.
Which solution did I use previously and why did I switch?
We previously used Palo Alto GlobalProtect , primarily for the frustration it caused due to its inability to close properly. I suggested a switch because OpenVPN Access Server provides better visibility and a cleaner interface that does not annoy users the way GlobalProtect did, which constantly notified users when disconnected and lacks a straightforward closure method.
How was the initial setup?
The installation and setup of OpenVPN Access Server within my organization is straightforward as we need to open specific ports, namely 443 for TCP and 1194 for UDP. After opening these ports, we install the OpenVPN Access Server package in AWS , set the initial admin password, and usernames. The UI becomes accessible shortly thereafter, enabling us to manage other aspects.
What was our ROI?
We have seen a return on investment with OpenVPN Access Server, as the overall cost of management has decreased; one engineer can now handle what previously required more personnel, equating to a 66% reduction in engineering hours. Additionally, infrastructure costs have significantly dropped, thanks to the efficient SSO login process which minimizes user input. The integration with our existing services, such as Okta for MFA, has further enriched user experience while centralizing administration.
What other advice do I have?
Regarding the accuracy and reliability of OpenVPN Access Server's output, I have not encountered any major issues aside from a singular incident where availability was compromised due to a deployment issue. The accuracy has consistently been good; we have no trouble connecting to the VPN or accessing servers.
My impression of the connection speed using OpenVPN Access Server is good; we switched due to previous performance issues with another vendor. OpenVPN Access Server has effectively managed enterprise-level workloads, with minimal resource consumption.
The advice I would give to others looking into using OpenVPN Access Server is that it is suitable for companies with fewer than 10,000 employees. It works as claimed and the setup is easier, though for very large organizations with extensive user numbers, the scalability might need validation. I would rate this solution a 7 out of 10.
Which deployment model are you using for this solution?
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Secure remote access has simplified cloud projects and now supports flexible role-based controls
What is our primary use case?
My main use case for OpenVPN Access Server is that on some of the projects, we are allowing some of the users to access their resources through it.
For one of our projects using OpenVPN Access Server , we have given some of the VMs on cloud to access those from the remote locations or from outside the working locations from the office, so the customers use OpenVPN Access Server and then access their resources, and then they can work on those VMs anytime.
Another example of my main use case for OpenVPN Access Server would be that it could be for those customers that they are giving their access to their vendors and customers as well, in turn, so they can also access it based on their security elongated or extended to them.
What is most valuable?
The best features of OpenVPN Access Server are that it can integrate with any software and it can work on any platform.
Regarding the integration part of OpenVPN Access Server, we have used Microsoft Outlook and SharePoint wherein it is integrated with single sign-on features of Microsoft, and in terms of platforms, we have used it on different types of operating systems and it has worked beautifully on it.
OpenVPN Access Server has positively impacted my organization by allowing many security or SSL use cases to comply in the right manner, so the organization has benefited from the usage of it.
What needs improvement?
OpenVPN Access Server has all the good features, and I don't find any improvement areas.
Regarding OpenVPN Access Server's AI capabilities, it doesn't have any kind of AI capabilities since it is working on a fixed model, so I don't feel that it has anything to do with AI capabilities.
For how long have I used the solution?
I have been using OpenVPN Access Server for around a year.
What do I think about the stability of the solution?
OpenVPN Access Server is stable.
What do I think about the scalability of the solution?
OpenVPN Access Server's scalability is very good; it can scale up to 100 connections, so it's very scalable and robust.
How are customer service and support?
The customer support for OpenVPN Access Server is good.
Which solution did I use previously and why did I switch?
We didn't use any other solution before; we directly took up OpenVPN Access Server only.
How was the initial setup?
It was easy to install and set up OpenVPN Access Server within my organization, just the other software, because it has pretty much preemptive steps, so it is very easy to use.
What about the implementation team?
We have utilized the access controls feature of OpenVPN Access Server, and it is very effective in providing the right access using the right roles at the right devices.
We have used role-defining features within OpenVPN Access Server, and it has positively impacted our organization's approach to enforcing least privilege securely and effortlessly; it is a very good feature.
What was our ROI?
My experience with OpenVPN Access Server's pricing setup is very good because it is very less in pricing, and while I haven't seen a return on investment that much, the relevant metrics show that it saves time in terms of implementation and adoption.
What's my experience with pricing, setup cost, and licensing?
In terms of specific outcomes or metrics with OpenVPN Access Server, we have saved time because otherwise, we need to purchase other software and their software takes a great deal of time in terms of integration with the platforms and the underlying software, so it was readily available and integrated well.
Which other solutions did I evaluate?
We didn't evaluate other options because OpenVPN Access Server was suggested by our CDO , and we took it up.
What other advice do I have?
You can add MFA in OpenVPN Access Server.
On a scale of one to ten, I would rate OpenVPN Access Server a 10.
I give OpenVPN Access Server the highest rating of 10 because it has all the good features wherein what is required to implement it, so it is rightly suitable for all kinds of integration and implementations.
Regarding OpenVPN Access Server's AI capabilities, I think its accuracy and reliability of output are good.
The connection speed when using OpenVPN Access Server is at par with other VPN solutions.
My advice for others looking into using OpenVPN Access Server would be that whoever is looking for a lean implementation and a quicker turnaround time should proceed with OpenVPN Access Server. I rate this product a 10 out of 10 overall.
Secure remote access has improved collaboration and simplified role-based user management
What is our primary use case?
I have used OpenVPN Access Server for around two to three months when I was dealing with client-related work where we needed to utilize this because they were also using the same. To connect with systems, this application was required.
Primarily, I was using OpenVPN Access Server for a secure VPN connection.
I used OpenVPN Access Server on a VPN for a client where they have a server deployed for the network connection, and it was configured and installed at our end also.
Basically, related to big enterprises where we need to work remotely and be secure by using a good VPN, that's why we utilize OpenVPN Access Server, and it was good.
What is most valuable?
The deployment part of OpenVPN Access Server is quite easy, and it also provides a web interface for the admin panel and supports multi-factor authentication. We can also integrate with Active Directory and deploy on the cloud as well.
For me, the web admin UI part of OpenVPN Access Server is very good because I can directly manage from there what users to add, whom to deploy, and what rights I have to provide to each specific user, and I can manage them from an easy web interface.
An amazing feature of OpenVPN Access Server is compatibility with AWS and DigitalOcean-like service providers, and I think that's a great feature.
OpenVPN Access Server is strong and quite good, and the cross-platform support is excellent. The integration with enterprise-level authentication is very good, and the scalability part is quite strong. OpenVPN Access Server provided improved security, better than other tools in the market, and we can utilize it in different ways while integrating with other cloud platforms or on-premises, so in that field, it stands out from others and improved our security.
I have been using the LDAP RADIUS solution with OpenVPN Access Server, and it is quite effective and secure to use, with very good integration.
What needs improvement?
Some advanced networking of OpenVPN Access Server requires Linux network expertise for a person to work on.
I wish OpenVPN Access Server could also explain how a normal user can utilize it, and the subscription cost sometimes can be a little high compared to other tools in the market.
For how long have I used the solution?
I have been working in my field for three or more years and exploring the team in blue teaming parts and other aspects of the cybersecurity domain.
What do I think about the stability of the solution?
OpenVPN Access Server is very stable in nature and quite easy to work on.
What do I think about the scalability of the solution?
The scalability of OpenVPN Access Server is very high, as other tools have good scalability as well, so the scalability is high.
How are customer service and support?
OpenVPN Access Server provides good customer support, and if you are having any connection or any kind of issues, you can directly raise the queries, and they will get it resolved within two to three hours. I would give OpenVPN Access Server's customer support a perfect score as I do not have any issues with their customer support, and they are always willing to solve your queries.
How was the initial setup?
The deployment part of OpenVPN Access Server is quite easy, and it also provides a web interface for the admin panel and supports multi-factor authentication. We can also integrate with Active Directory and deploy on the cloud as well.
It was quite easy to install and set up OpenVPN Access Server; we did not take more than four to five hours to set up our team.
What was our ROI?
I have not calculated any return on investment with OpenVPN Access Server, but based on the time saved, its connectivity is automated, so when we connect to other VPN servers, it takes around ten to thirty minutes of setup and other tasks. With the setup part and automatic connection in this, we save around thirty minutes to one hour on a daily basis in connection setup and related activities.
What's my experience with pricing, setup cost, and licensing?
The cost of OpenVPN Access Server can be a little more for other teams if they have a low budget, but if you do not have a tight budget constraint, then it also offers a free tier for a small number of concurrent users, so it also offers a free tier that they can utilize.
Which other solutions did I evaluate?
I did not reevaluate options before choosing OpenVPN Access Server as our client was also using it, so we were required to use it, and we did not have a choice either, but it was a good experience while using it.
What other advice do I have?
OpenVPN Access Server works easily.
We have used the role-defining feature of OpenVPN Access Server because not all users are required to have admin-level privileges, so we define roles for what a particular user should have access to and what resources they should access, and based on that, we manage OpenVPN Access Server.
The user interface of OpenVPN Access Server is very good, and it is easy to navigate and handle the parts which are required to perform, including adding roles, adding users, and managing them via the web admin UI panel.
OpenVPN Access Server provides low latency and is much better than other VPN solutions, and providing low latency offers higher efficiency to the networks and getting connected and receiving the data in real time.
If a person is looking for secure connectivity based on a good admin UI, multi-factor authentication support, and multiple integration options, then they can definitely choose OpenVPN Access Server apart from traditional VPNs that come into the market. I would rate this product an eight out of ten.
OpenVPN Access Server is a highly Stable, Secure, and easily manages enterprise solution that significally reduces administarive overheadthrought its graphical interface, throught it is held back by r
What is our primary use case?
Our primary use case is enabling secure VPN access for remote employees. It ensures encrypted connections to internal systems and protects company data while users work from outside the office.
How has it helped my organization?
OpenVPN Access Server has improved our organization's security by providing reliable and encrypted remote access to internal resources. It has made remote work easier for employees, reduced connectivity issues, simplified VPN management, and helped ensure business continuity while maintaining secure access to company systems.
What is most valuable?
OpenVPN Access Server 's best features are its strong security, easy deployment, centralized management, and reliable remote connectivity. The web-based administration portal simplifies user and VPN management, while encrypted connections ensure secure access to internal resources. It also supports multiple operating systems, making it easy for employees to connect from different devices.
What needs improvement?
OpenVPN Access Server is a reliable solution, but it could be improved with a more modern and intuitive user interface, enhanced monitoring and reporting dashboards, more detailed audit logs, easier integration with cloud identity providers, and built-in high-availability and load-balancing features. Additional automation through APIs and improved troubleshooting tools would also make administration more efficient.
For how long have I used the solution?
We have been using OpenVPN Access Server for approximately one year. During this time, it has provided reliable and secure remote access while meeting our organization's connectivity and security requirements.
What do I think about the stability of the solution?
Yes, OpenVPN Access Server is a stable and reliable solution. It has provided consistent VPN connectivity with minimal downtime, making it dependable for secure remote access. With regular updates and maintenance, it continues to perform well and meet our business needs.
What do I think about the scalability of the solution?
The scalability of OpenVPN Access Server is highly effective structurally but limited by pricing configurations, as it scales exponentially and well by deploying multiple node instances in an active-active cluster to handle heavy concurrent user traffic, although the licensing model does not scale dynamically and requires manual integration to purchase fixed user blocks.
How are customer service and support?
The customer support for OpenVPN Access Server is highly reliable and helpful, the official ticket-based support team is responsive and technically knowledgeable when addressing complex configuration needs, and because OpenVPN is an industry standard, it is backed by extensive public knowledge, comprehensive documentation, and an active community forum that makes troubleshooting straightforward.
I would rate the customer support an eight out of ten, as the official ticket-based support team is highly responsive and technically proficient when handling complex challenges.
Which solution did I use previously and why did I switch?
Yes. We previously used a basic VPN solution but switched to OpenVPN Access Server for its stronger security, easier management, better reliability, and cross-platform support. It also provides a more user-friendly experience for both administrators and end users.
How was the initial setup?
It was very easy to install and set up OpenVPN Access Server; for example, launching it directly as a preconfigured virtual appliance from the cloud marketplace onto an AWS instance streamlined the configuration, allowing us to establish user management controls rapidly without manual support.
What about the implementation team?
We evaluated other options including standard cloud-native solutions such as AWS Client VPN and alternative protocols such as standalone WireGuard, but ultimately we chose OpenVPN Access Server because it provided the best balance of built-in SAML integration, user self-service protocols, and granular access rules out of the box.
What was our ROI?
While we don't have exact ROI metrics, OpenVPN Access Server has delivered value through improved security, reliable remote connectivity, reduced administrative effort, and better support for remote work. These benefits have contributed to increased operational efficiency and lower support costs over time
What's my experience with pricing, setup cost, and licensing?
The pricing and licensing are straightforward and scalable. Setup was simple with minimal deployment effort, and the overall cost has been reasonable for the features, security, and reliability provided.
Which other solutions did I evaluate?
Before choosing OpenVPN Access Server, we evaluated solutions such as Cisco AnyConnect, Fortinet FortiClient VPN, and WireGuard. OpenVPN Access Server stood out because it offers a good balance of security, ease of deployment, centralized management, and cross-platform compatibility. While some enterprise VPN solutions provide more advanced security and networking features, they are often more complex to deploy and manage. WireGuard offers excellent performance but requires additional configuration for centralized user management and enterprise-scale administration. Overall, OpenVPN Access Server provided the best combination of simplicity, reliability, and security for our needs.
What other advice do I have?
8/10. OpenVPN Access Server is a reliable, secure, and easy-to-manage VPN solution. I would recommend it to organizations looking for secure remote access with simple deployment, centralized management, and excellent cross-platform support.