Ploi Connect

Ploi Connect

Live

Bring servers behind firewalls to Ploi

Manage Ubuntu and Debian servers behind firewalls with Ploi. An outbound SSH tunnel gives each server an IPv6 address, with access restricted to Ploi.

About

Ploi Connect makes a server behind an unchangeable firewall manageable through Ploi. The server opens an outbound SSH connection to a relay over TCP 443. Ploi reaches it through a dedicated IPv6 address on the relay, without opening inbound ports on the server’s network.

Run the installer on an Ubuntu or Debian server, then add the resulting IPv6 address to Ploi on port 22. The address is derived from the server’s SSH key, so it stays the same across reconnects. A systemd service keeps the tunnel running and reconnects automatically.

Built with Bash, OpenSSH, and systemd. No Ploi Connect account or VPN client is needed. Connections to the forwarded SSH port are restricted to Ploi’s IP addresses.

The tunnel forwards SSH only. Websites and HTTPS traffic on the server are not exposed through it.

Setup instructions and the installer are available at ploi.apptory.eu.

#ploi#ssh#linux#self-hosting