# boringtun mit Homebrew, Nix installieren

Prüfe Installationswege, Executables, Metadaten und Sicherheitshinweise für boringtun in AI-Agent-Workflows.

## Installation

```sh
sudo av install brew:boringtun
```

Weitere Installationsbefehle:

### macOS

- Homebrew (100%):

```sh
brew install boringtun
```

  Evidenz: local Homebrew formula metadata

### Linux

- Nix (92%):

```sh
nix profile install nixpkgs#boringtun
```

  Evidenz: nixpkgs package indexes: pkgs/by-name/bo/boringtun/package.nix from https://api.github.com/repos/NixOS/nixpkgs/git/trees/master?recursive=1

## Paketfakten

- **Paketschlüssel:** brew:boringtun
- **Paketmanager:** Homebrew
- **Paketmanager-Seite:** <https://formulae.brew.sh/formula/boringtun>
- **Version:** 0.7.1
- **Quellzusammenfassung:** Userspace WireGuard implementation in Rust
- **Homepage:** <https://github.com/cloudflare/boringtun>
- **Repository:** <https://github.com/cloudflare/boringtun>
- **Lizenz:** BSD-3-Clause
- **Quellarchiv:** <https://github.com/cloudflare/boringtun/archive/refs/tags/boringtun-0.7.1.tar.gz>
- **Generiert:** 2026-08-04T22:13:35+00:00

## Executables

- boringtun-cli (cli)
- boringtun-cli (Alias)

## Build-Abhängigkeiten

- rust

## Installationsverhalten

- Post-install-Hook: nicht definiert
- Einschränkungen: boringtun-cli requires root privileges so you will need to run `sudo boringtun-cli utun`. You should be certain that you trust any software you grant root privileges.
- Bottle: verfügbar auf arm64_linux, arm64_sequoia, arm64_sonoma, arm64_tahoe, sonoma, x86_64_linux

## Version und Aktualität

- Seite generiert: 2026-08-04
- Manager-Version: 0.7.1
- lokale Daten: OK
- Upstream-Repository: https://github.com/cloudflare/boringtun
- neueste erkannte Version: boringtun-0.7.1 (aktuell)
- Info: No package-manager update timestamp was available.
## Projektgeschichte und Nutzung

BoringTun is Cloudflare's Rust userspace implementation of the WireGuard protocol, distributed as both a library and the boringtun-cli command-line tool.

### Projektgeschichte

Cloudflare announced BoringTun publicly on March 27, 2019 after evaluating existing WireGuard implementations and choosing Rust for a portable, memory-safe, high-performance userspace implementation. The repository itself was created in October 2018, matching the blog's account that the project had been under development before the source release.

The README describes two deliverables: boringtun-cli for Linux and macOS userspace tunnels, and the boringtun library for client applications that supply their own platform-specific tunnel and network stacks.

### Adoptionsgeschichte

BoringTun's adoption story is unusually concrete for a low-level networking library: Cloudflare's README says it is deployed on millions of iOS and Android consumer devices and thousands of Cloudflare Linux servers.

Cloudflare's WARP posts tie BoringTun to the 1.1.1.1/WARP client stack, making it part of a large production VPN deployment rather than only a reference implementation.

### Wie es verwendet wird

As a CLI, boringtun-cli starts a userspace WireGuard tunnel for an interface and can be used with wg and wg-quick through WG_QUICK_USERSPACE_IMPLEMENTATION. As a library, it exposes the WireGuard protocol machinery for clients that implement their own transport and tunnel integration.

Because it is userspace and permissively licensed, BoringTun is useful where the Linux kernel WireGuard module is unavailable or where client apps need portable WireGuard behavior across mobile and desktop platforms.

### Warum Paket-Nerds sich dafür interessieren

BoringTun matters to package nerds because it is a Rust networking primitive with a real production pedigree, a split library/CLI shape, and a clear relationship to the broader WireGuard ecosystem.

It also illustrates the packaging distinction between protocol implementation, command-line frontend, and OS integration: installing boringtun-cli gives a binary, but useful operation still depends on TUN devices, WireGuard tooling, and platform networking permissions.

### Zeitleiste

- 2018-10: Official GitHub repository metadata shows the repository created.
- 2019-03: Cloudflare announced and open sourced BoringTun.
- 2021: Cloudflare described WARP for Linux using BoringTun as its WireGuard implementation.
- 2022: GitHub release metadata shows v0.4.0 in the public release feed.
- 2026: Repository metadata shows continued activity.

### Related projects

- WireGuard is the VPN protocol BoringTun implements.
- wireguard-go is the userspace implementation Cloudflare compared against when explaining why BoringTun was created.
- Cloudflare WARP is the large-scale client product that uses BoringTun.

### Quellen

- <https://api.github.com/repos/cloudflare/boringtun>
- <https://api.github.com/repos/cloudflare/boringtun/releases?per_page=100>
- <https://blog.cloudflare.com/announcing-warp-for-linux-and-proxy-mode/>
- <https://blog.cloudflare.com/boringtun-userspace-wireguard-rust/>
- <https://github.com/cloudflare/boringtun>


## Sicherheitshinweise

narrow executable package without higher-risk signals.

- **Geiger-Risiko:** grün / niedrig
- narrow executable package without higher-risk signals

## Details aus der Quelldatenbank

- **Source Database:** Homebrew formula API
- **Tap:** homebrew/core
- **Full Name:** boringtun
- **Version Scheme:** 0
- **Revision:** 0
- **Head Version:** HEAD
- **Bottle Stable Root URL:** <https://ghcr.io/v2/homebrew/core>
- **Deprecated:** no
- **Disabled:** no
- **Keg Only:** no
- **URL Keys:** head, stable

## Andere Paketmanager-Einträge

- Nix - boringtun: normalized package name match | nixpkgs package indexes: pkgs/by-name/bo/boringtun/package.nix from https://api.github.com/repos/NixOS/nixpkgs/git/trees/master?recursive=1


## Verwandte Links

- [Cloud CLI packages](https://pkg.so/de/cloud-clis/) - Belongs to a cloud or infrastructure command family.
- [Source-control packages](https://pkg.so/de/source-control-tools/) - Belongs to a source-control command family.
- [Terminal utility packages](https://pkg.so/de/terminal-utilities/) - Matched terminal and command-line workflow metadata.
- [Language runtime packages](https://pkg.so/de/language-runtime-packages/) - Matched language runtime, compiler, or interpreter metadata.
- [rust](https://pkg.so/de/brew/rust/) - Build dependency declared by Homebrew.
- [openvpn](https://pkg.so/de/brew/openvpn/) - Shares pkgdb curated category or tags: cli, networking, vpn.
- [openfortivpn](https://pkg.so/de/brew/openfortivpn/) - Shares pkgdb curated category or tags: cli, networking, vpn.
- [nebula](https://pkg.so/de/brew/nebula/) - Shares pkgdb curated category or tags: cli, networking, vpn.
- [edgevpn](https://pkg.so/de/brew/edgevpn/) - Shares pkgdb curated category or tags: cli, networking, vpn.
- [macosvpn](https://pkg.so/de/brew/macosvpn/) - Shares pkgdb curated category or tags: cli, networking, vpn.
- [fastd](https://pkg.so/de/brew/fastd/) - Shares pkgdb curated category or tags: cli, networking, vpn.
- [dsvpn](https://pkg.so/de/brew/dsvpn/) - Shares pkgdb curated category or tags: cli, networking, vpn.
- [onioncat](https://pkg.so/de/brew/onioncat/) - Shares pkgdb curated category or tags: cli, networking, vpn.
- [headscale-cli](https://pkg.so/de/brew/headscale-cli/) - Local package facts share a topical domain. Shared terms: cli, implementation, networking, vpn, wireguard.

## Combined YAML source

View the package source record on GitHub. [combined/boringtun.yml](https://github.com/mxcl/pkgdb/blob/main/combined/boringtun.yml)


## Quellen

- pkg.so package database
- Geiger risk classifier
- package-page enrichment
- curated package history
- package version freshness
- pkgdb category and tag curation
- package relationship graph
- external package-manager database matches
- cross-ecosystem install command graph
