# bivlked/amneziawg-installer

One-command AmneziaWG 2.0 / 3.x installer for a self-hosted VPN server on Ubuntu and Debian: DPI bypass, traffic obfuscation, split tunneling, auto-hardening, client management. Includes a VPN cascade guide.

Repository: https://github.com/bivlked/amneziawg-installer
Canonical: https://ross.abutalabs.com/products/amneziawg-installer
Homepage: https://bivlked.github.io/amneziawg-installer/
Language: Shell
License: MIT
License Family: permissive
Topics: amneziawg, bash, privacy, ubuntu, vpn, wireguard, installer, security, anti-censorship, dpi-bypass, debian, linux, self-hosted, vpn-server, arm64, automation, raspberry-pi, traffic-obfuscation, double-vpn, split-tunneling
Last push: 2026-09-02T17:18:19+00:00

## Health v2 (maintenance only)
Score: 83/100 (v2, computed 2026-09-03T02:39:23.370411+00:00)
- activity 100, release rhythm 88, longevity 36
- inputs: {"age_days": 507, "days_push": 0, "days_rel": 0, "gap_med": 1.0, "n_releases_24m": 81}
- flags: none
- formula: round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10)

## Adoption (not part of the score)
Stars 1207, forks 96 (observed 2026-09-03T02:15:09.615028+00:00)

## What it is
A one-command Bash installer that turns a fresh Ubuntu or Debian VPS (x86_64, ARM64, Raspberry Pi) into a self-hosted AmneziaWG 2.0/3.x VPN server with kernel-native DKMS module, no Docker or web panel. It handles firewall hardening, Fail2Ban, sysctl tuning, client management with QR codes and vpn:// links, split tunneling, and DPI-resistant traffic obfuscation.

## Use cases
- set up a self-hosted VPN server on a cheap VPS
- bypass DPI-based VPN blocking with obfuscated WireGuard
- install AmneziaWG on Ubuntu or Debian in one command
- manage VPN clients with QR codes and guest configs
- harden a VPS firewall for a single-purpose VPN box
- run a VPN on a Raspberry Pi or ARM64 server
- chain VPNs with a cascade/double-VPN setup

## When to choose
- you want a DPI-resistant self-hosted VPN without Linux expertise
- you prefer a kernel-native setup with no Docker or web panel overhead
- you need quick client onboarding via QR codes or vpn:// links
- you run Ubuntu 24.04+, Debian 12/13, or ARM/Raspberry Pi hardware

## When to avoid
- you need a GUI or web dashboard for VPN management
- your server runs an OS other than Ubuntu or Debian
- you need a multi-purpose server, since the script tunes the box as a dedicated VPN host
- you want a managed VPN service rather than self-hosting

## Facets
- artifact type: cli-tool
- maturity: active
- function: vpn, security, cli, workflow-automation, self-hosted
- domain: privacy, security, censorship-circumvention, self-hosted, networking
- platform: cli, self-hosted
- tags: amneziawg, wireguard, dpi-bypass, traffic-obfuscation, installer-script, bash, split-tunneling, raspberry-pi, arm64, vps, double-vpn, fail2ban, ufw, command-line, linux

## Member repositories
- bivlked/amneziawg-installer (main) score 83

## Provenance
- Observed fields: from GitHub, fetched 2026-09-03T02:15:09.615028+00:00.
- Health v2: computed from the inputs above; adoption is never an input.
- Inferred fields (summary, facets, guidance): AI-extracted, prompt v1, taxonomy v1, on 2026-08-30T06:25:31.532400+00:00, confidence not recorded.
  - readme: https://github.com/bivlked/amneziawg-installer (fetched 2026-09-03T02:15:09.615028+00:00, sha 146be5051d09)
  - homepage: https://bivlked.github.io/amneziawg-installer/ (fetched 2026-08-29T12:32:20.179403+00:00, sha a00e90a5a0f2)
- Data as of 2026-08-30T08:39:29.467469+00:00.
