Zoraxy: A Reverse Proxy With a Web UI, Stream Proxying, and GeoIP Blocking

Zoraxy: A Reverse Proxy With a Web UI, Stream Proxying, and GeoIP Blocking

Zoraxy is a reverse proxy you manage entirely from a web interface. It sits in front of your self-hosted apps, gives each one a hostname and an HTTPS certificate, and routes traffic to the right container, the job Nginx Proxy Manager popularised, with a longer feature list.

If reverse proxies are new to you, start with reverse proxies explained.

Features

  • Automatic TLS through ACME (Let’s Encrypt and others), with renewal and DNS challenge support for wildcard certificates
  • Stream proxy for raw TCP and UDP, useful for game servers, databases, or anything that is not HTTP
  • GeoIP filtering: allow or block visitors by country
  • WebSocket proxying, load balancing, and virtual directories
  • Built-in uptime monitoring of your backends
  • A web SSH terminal
  • A plugin system, with community plugins for forward auth, OAuth2, and CAPTCHA

Deployment

Zoraxy is a single Go binary with builds for Linux (amd64 and arm64, including Raspberry Pi) and Windows, or a Docker container. It needs ports 80 and 443, plus its management port, which you should keep off the public internet:

sudo ./zoraxy -port=:8000
# then open http://<server>:8000 and create the admin account

Firewall the management port, or bind it to localhost and reach it over SSH or a VPN. The ufw rule builder helps.

How it compares

ZoraxyNginx Proxy ManagerCaddyTraefik
Web UIYesYesNoDashboard only
TCP/UDP streamsYesYesVia pluginYes
GeoIP blockingBuilt inNoVia pluginVia plugin
Config as codeNoNoCaddyfileLabels / files

If you prefer configuration in files, Caddy and Traefik are better fits; our nginx vs Apache vs Caddy comparison and reverse proxy builder cover them. If you want a friendly UI with more features than Nginx Proxy Manager, Zoraxy is the one to try.

License

AGPL-3.0.