# 使用 Homebrew, apk, apt, dnf, MacPorts, Nix, pacman, zypper 安装 nebula

查看 nebula 的安装路径、可执行文件、元数据以及面向 AI 代理工作流的安全说明。

## 安装

```sh
sudo av install brew:nebula
```

其他安装命令:

### macOS

- Homebrew (100%):

```sh
brew install nebula
```

  证据: local Homebrew formula metadata

- MacPorts (94%):

```sh
sudo port install nebula
```

  证据: MacPorts ports tree: net/nebula/Portfile from https://api.github.com/repos/macports/macports-ports/git/trees/master?recursive=1

### Linux

- apk (92%):

```sh
sudo apk add nebula
```

  证据: Alpine Linux edge package indexes: nebula from https://dl-cdn.alpinelinux.org/alpine/edge/community/x86_64/APKINDEX.tar.gz

- Debian apt (92%):

```sh
sudo apt install nebula
```

  证据: Debian stable package indexes: nebula from https://deb.debian.org/debian/dists/stable/main/binary-amd64/Packages.xz

- dnf (92%):

```sh
sudo dnf install nebula
```

  证据: Fedora Rawhide package metadata: nebula from https://dl.fedoraproject.org/pub/fedora/linux/development/rawhide/Everything/x86_64/os/repodata/07190dc5ae9f35ae73866675fed6d95fe6e8d9fe22c9d7cdf85862cb2ed24a4c-primary.xml.zst

- Nix (92%):

```sh
nix profile install nixpkgs#nebula
```

  证据: nixpkgs package indexes: pkgs/by-name/ne/nebula/package.nix from https://api.github.com/repos/NixOS/nixpkgs/git/trees/master?recursive=1

- pacman (92%):

```sh
sudo pacman -S nebula
```

  证据: Arch Linux sync databases: nebula from https://geo.mirror.pkgbuild.com/extra/os/x86_64/extra.db.tar.gz

- zypper (92%):

```sh
sudo zypper install nebula
```

  证据: openSUSE Tumbleweed package metadata: nebula from https://download.opensuse.org/tumbleweed/repo/oss/repodata/50b07339cb64c8ed4091bdbabddadc1ff5737b090e478818a195b40d8a3292861a879139b4a3987c31109699fde9fbf4a716367ddf4eef77da75f96e3193d6ed-primary.xml.zst

## 软件包事实

- **软件包键:** brew:nebula
- **软件包管理器:** Homebrew
- **版本:** 1.11.0
- **来源摘要:** Scalable overlay networking tool for connecting computers anywhere
- **主页:** <https://github.com/slackhq/nebula>
- **仓库:** <https://github.com/slackhq/nebula>
- **最后更新:** 2026-07-23T21:07:08Z
- **已生成:** 2026-08-03T19:37:03+00:00

## 可执行文件

- nebula (别名)
- nebula-cert (别名)

## 安装行为

- Bottle: 不可用

## 版本和新鲜度

- 页面生成时间: 2026-08-03
- 管理器版本: 1.11.0
## 项目历史与用法

Nebula is Slack's open-source overlay networking system for connecting machines across clouds, data centers, and less predictable networks with encrypted peer-to-peer tunnels. Slack announced it on 2019-11-19 after more than two years of internal use, describing it as the answer to connecting tens of thousands of computers across many locations.

### 项目历史

The project came out of Slack's attempt to replace IPSec for inter-region encrypted connectivity. Slack's engineering post says IPSec initially worked but became an operational burden and added routing hops through tunnel hosts, so Slack built a system that combined certificates, encryption, security groups, peer discovery, and tunneling into one operational model.

The public GitHub repository was created on 2019-11-16. The README credits Nebula to Slack Technologies, Inc. by Nate Brown and Ryan Huber, with additional contributors, and describes the design as a mutually authenticated peer-to-peer software-defined network based on the Noise Protocol Framework.

### 采用历史

Nebula's adoption signal is unusually strong for a Homebrew networking package because it was production-proven before release: Slack said in 2019 that Nebula ran on every server at Slack. The GitHub repository showed 17,472 stars and 1,157 forks via the GitHub API on 2026-07-01, reflecting durable open-source visibility in the mesh-VPN and overlay-networking space.

Homebrew's formula page listed stable version 1.10.3 and showed 1,724 installs over 365 days, 171 over 90 days, and 60 over 30 days when checked on 2026-07-01. That is modest compared with mainstream CLIs but healthy for self-hosted network infrastructure.

### 使用方式

Package users install the `nebula` daemon and `nebula-cert` helper, generate a CA plus host certificates, designate one or more lighthouse nodes for discovery, then run hosts from YAML configuration files. Practical usage centers on private service networks, remote admin access, multi-cloud host reachability, and replacing static VPN concentrator patterns with direct encrypted peer paths where NAT traversal works.

The official docs make the operational shape clear: configuration covers PKI, static host maps, lighthouse discovery, UDP listening, NAT keepalives, relay fallback, TUN setup, firewall rules, logging, and metrics. Package nerds tend to compare Nebula with Tailscale, WireGuard mesh tooling, and classic IPSec/OpenVPN, valuing its self-hosted CA and explicit group-based firewall model.

### 为什么软件包爱好者会关心

Nebula matters because it is not just another VPN wrapper: it packages Slack's internal overlay-network design as a small Go tool with cross-platform release artifacts and distro packages. In package indexes it sits at the intersection of VPN, mesh networking, zero-trust-ish host identity, and SRE-friendly private networking.

### 时间线

- 2017-2019: Slack operated Nebula internally before public release.
- 2019-11-16: Public GitHub repository created.
- 2019-11-19: Slack announced Nebula as an open-source global overlay network.
- 2026-07-01: Homebrew formula stable version observed as 1.10.3.

### Related projects

- Noise Protocol Framework
- WireGuard
- Tailscale
- Defined Networking

### 来源

- <https://api.github.com/repos/slackhq/nebula>
- <https://formulae.brew.sh/formula/nebula>
- <https://github.com/slackhq/nebula>
- <https://nebula.defined.net/docs/config/>
- <https://slack.engineering/introducing-nebula-the-open-source-global-overlay-network-from-slack/>


## 安全说明

broad file, network, media, or database tool signal. formula declares a Homebrew service.

- **Geiger 风险:** orange / 中
- broad file, network, media, or database tool signal
- formula declares a Homebrew service


## Configuration and credential file locations

These source-backed paths show where this package keeps local settings or durable credentials. Automic Vault can use them as review targets for secret scanning, migration, and command approval.


## Configuration files

- Unix: config.yml, /path/to/config.yml

## Credential files

- Unix: ca.key, ca.crt, {host}.crt, {host}.key
## 其他软件包管理器记录

- Debian apt - golang-github-slackhq-nebula-dev - 1.9.3+dfsg-6: normalized package name match | Debian stable package indexes: golang-github-slackhq-nebula-dev from https://deb.debian.org/debian/dists/stable/main/binary-amd64/Packages.xz | performant, scalable network overlay (Go library) | https://github.com/slackhq/nebula
- Debian apt - nebula - 1.9.3+dfsg-6+b2: normalized package name match | Debian stable package indexes: nebula from https://deb.debian.org/debian/dists/stable/main/binary-amd64/Packages.xz | performant, scalable network overlay | https://github.com/slackhq/nebula
- Nix - nebula: normalized package name match | nixpkgs package indexes: pkgs/by-name/ne/nebula/package.nix from https://api.github.com/repos/NixOS/nixpkgs/git/trees/master?recursive=1
- Ubuntu apt - golang-github-slackhq-nebula-dev - 1.6.1+dfsg-3build1: normalized package name match | Ubuntu 24.04 LTS package indexes: golang-github-slackhq-nebula-dev from https://archive.ubuntu.com/ubuntu/dists/noble/universe/binary-amd64/Packages.gz | performant, scalable network overlay (Go library) | https://github.com/slackhq/nebula
- Ubuntu apt - nebula - 1.6.1+dfsg-3build1: normalized package name match | Ubuntu 24.04 LTS package indexes: nebula from https://archive.ubuntu.com/ubuntu/dists/noble/universe/binary-amd64/Packages.gz | performant, scalable network overlay | https://github.com/slackhq/nebula
- apk - nebula - 1.11.0-r0: normalized package name match | Alpine Linux edge package indexes: nebula from https://dl-cdn.alpinelinux.org/alpine/edge/community/x86_64/APKINDEX.tar.gz | Scalable overlay networking tool with a focus on performance, simplicity and security | https://github.com/slackhq/nebula
- apk - nebula-openrc - 1.11.0-r0: normalized package name match | Alpine Linux edge package indexes: nebula-openrc from https://dl-cdn.alpinelinux.org/alpine/edge/community/x86_64/APKINDEX.tar.gz | Scalable overlay networking tool with a focus on performance, simplicity and security (OpenRC init scripts) | https://github.com/slackhq/nebula
- dnf - nebula - 1.11.0-1.fc45: normalized package name match | Fedora Rawhide package metadata: nebula from https://dl.fedoraproject.org/pub/fedora/linux/development/rawhide/Everything/x86_64/os/repodata/07190dc5ae9f35ae73866675fed6d95fe6e8d9fe22c9d7cdf85862cb2ed24a4c-primary.xml.zst | A scalable overlay networking tool with a focus on performance, simplicity and security | https://github.com/slackhq/nebula
- pacman - nebula - 1.11.0-1: normalized package name match | Arch Linux sync databases: nebula from https://geo.mirror.pkgbuild.com/extra/os/x86_64/extra.db.tar.gz | A scalable overlay networking tool with a focus on performance, simplicity and security | https://github.com/slackhq/nebula
- zypper - nebula - 1.11.0-1.1: normalized package name match | openSUSE Tumbleweed package metadata: nebula from https://download.opensuse.org/tumbleweed/repo/oss/repodata/50b07339cb64c8ed4091bdbabddadc1ff5737b090e478818a195b40d8a3292861a879139b4a3987c31109699fde9fbf4a716367ddf4eef77da75f96e3193d6ed-primary.xml.zst | A scalable overlay networking tool | https://github.com/slackhq/nebula
- zypper - nebula-cert - 1.11.0-1.1: normalized package name match | openSUSE Tumbleweed package metadata: nebula-cert from https://download.opensuse.org/tumbleweed/repo/oss/repodata/50b07339cb64c8ed4091bdbabddadc1ff5737b090e478818a195b40d8a3292861a879139b4a3987c31109699fde9fbf4a716367ddf4eef77da75f96e3193d6ed-primary.xml.zst | Seperate nebula-cert package | https://github.com/slackhq/nebula
- MacPorts - nebula: normalized package name match | MacPorts ports tree: net/nebula/Portfile from https://api.github.com/repos/macports/macports-ports/git/trees/master?recursive=1


## Combined YAML source

View the package source record on GitHub. [combined/nebula.yml](https://github.com/mxcl/pkgdb/blob/main/combined/nebula.yml)


## 来源

- pkg.so package database
- Geiger risk classifier
- curated configuration and credential file locations
- curated package history
- pkgdb category and tag curation
- external package-manager database matches
- cross-ecosystem install command graph
