sshuttle
Transparent proxy server that works as a poor man's VPN. Forwards over ssh. Doesn't require admin. Works with Linux and MacOS. Supports DNS tunneling.
Decision gist · record as of 2026-08-14
Yes, if you need transparent SSH-based network access and have direct SSH connectivity to a remote host. The low install friction, no runtime dependencies, and stable codebase make it a practical choice for its specific use case. The 369-day release gap warrants checking recent activity before relying on it for critical infrastructure, but the Production/Stable classification and current Python support suggest it remains viable.AI-flagged interpretation of the facts on this page — verify before relying
Before you install
- Requires SSH access to a remote host and appropriate system-level networking capabilities (iptables on Linux, pfctl on macOS, or equivalent on other platforms).
- Low install friction with no runtime dependencies.
- Marked as aging (369 days since last release), but classified as Production/Stable and supports current Python versions (3.9–3.12).
License · maintenance · safety
LGPL-2.1 (copyleft) — Licensed under LGPL-2.1 (copyleft). You may use and modify sshuttle freely, but derivative works must also be distributed under LGPL-2.1 or compatible terms.
last release 2025-08-10 (369 days)
0 known vulnerabilities (OSV.dev, 2026-08-14) · 151,449 downloads/mo, #10,932 on PyPI
Alternatives
Verify before relying
pip install sshuttle
sshuttle -r user@remote_host 0/0- Whether the 369-day gap since last release reflects active maintenance or dormancy beyond the 'aging' classification.
- Current state of Windows support mentioned in the description excerpt.
- Performance characteristics and stability in production use at scale.
What it is and what it does
sshuttle is a transparent proxy that tunnels all or part of your network traffic over an SSH connection to a remote host, functioning as a lightweight VPN without requiring admin privileges on the remote network or complex VPN infrastructure. It avoids the overhead of TCP-over-TCP tunneling and eliminates the need to manually forward individual ports.
The tool works on Linux, FreeBSD, and macOS by intercepting traffic at the system level and routing it through SSH. It has no runtime dependencies beyond Python 3.9+, making it straightforward to install. It's useful when you need transparent access to a remote network but lack VPN setup capability or want to avoid the complexity of traditional VPN protocols.
Use it for
- Access a remote corporate network over SSH when VPN is unavailable or disabled.
- Tunnel DNS queries and all traffic to a remote network without per-port configuration.
- Provide transparent network access from a router or gateway machine to a remote subnet.
- Avoid openssh port-forwarding overhead by proxying entire subnets transparently.
- Set up ad-hoc network access for development or testing without VPN infrastructure.
Worth the install?
AI-flagged interpretation of the facts on this page. Verify before relying on it.
Yes, if you need transparent SSH-based network access and have direct SSH connectivity to a remote host.
The low install friction, no runtime dependencies, and stable codebase make it a practical choice for its specific use case. The 369-day release gap warrants checking recent activity before relying on it for critical infrastructure, but the Production/Stable classification and current Python support suggest it remains viable.
Install
sshuttle on PyPI
Before you install
Low install friction with no runtime dependencies. Marked as aging (369 days since last release), but classified as Production/Stable and supports current Python versions (3.9–3.12).
Requires SSH access to a remote host and appropriate system-level networking capabilities (iptables on Linux, pfctl on macOS, or equivalent on other platforms).
License in practice
Licensed under LGPL-2.1 (copyleft). You may use and modify sshuttle freely, but derivative works must also be distributed under LGPL-2.1 or compatible terms.
Quickstart
pip install sshuttle
sshuttle -r user@remote_host 0/0
Verify before relying
- Whether the 369-day gap since last release reflects active maintenance or dormancy beyond the 'aging' classification.
- Current state of Windows support mentioned in the description excerpt.
- Performance characteristics and stability in production use at scale.
Package facts
| License | LGPL-2.1 copyleft |
| Python support | Supports the current Python release <4.0,>=3.9 |
| Install friction | Low. Pure-Python wheel |
| Runtime dependencies | None |
| Maintenance | Aging 369 days since the last release |
| First released | |
| Downloads | 151,449 / month, #10,932 on PyPI 30-day window, as of 2026-08-14 |
| Known vulnerabilities | None known OSV.dev, checked 2026-08-14 |
| Classifiers | Development Status :: 5 - Production/StableIntended Audience :: DevelopersIntended Audience :: End Users/DesktopLicense :: OSI Approved :: GNU Lesser General Public License v2 or later (LGPLv2+)Operating System :: OS IndependentProgramming Language :: Python :: 3.10Programming Language :: Python :: 3.11Programming Language :: Python :: 3.12Programming Language :: Python :: 3.9Topic :: System :: Networking |
Evidence: sshuttle-1.3.2-py3-none-any.whl
Tags
Let your AI agent find packages like this
Example. Real query, live index.
You found this page by searching. An agent finds it by wishing: SkillFed indexes 14,416 PyPI packages by what they can do, searchable in plain language.
wish › “ssh tunnel transparent proxy”
- sshuttlesshuttle creates a transparent proxy that tunnels traffic over SSH to…
- pproxypproxy is an asynchronous proxy server that tunnels TCP and UDP…
- sshtunnelEstablishes SSH tunnels to forward local ports to remote services,…
Give your agent the search over MCP, or paste the wish link into any chat.
More Networking packages
h11 is a pure-Python HTTP/1.1 protocol implementation that handles parsing and serializing HTTP messages without any built-in I/O, letting you integrate it with any network layer you choose.
psutil retrieves real-time information about running processes and system resources (CPU, memory, disks, network, sensors) across multiple operating systems, enabling system monitoring, process profiling, and resource management.
pyOpenSSL wraps OpenSSL's SSL/TLS functionality for Python, providing high-level connection objects and certificate handling through a Python-friendly interface around OpenSSL's cryptographic operations.
uvloop is a drop-in replacement for Python's built-in asyncio event loop, implemented in Cython and using libuv, that accelerates async I/O operations.
execnet lets you spawn and communicate with Python interpreters across local processes, remote hosts, and different platforms, using a simple API for task distribution and inter-process messaging.
However, the aging maintenance status (275 days since last release) means you should verify it meets your concurrency and performance needs before committing to a…
PyZMQ provides Python bindings for ZeroMQ (ØMQ), a lightweight messaging library that enables fast, asynchronous communication between distributed processes and applications.
See also proxmoxer · sshtunnel · mitmproxy-windows · pproxy · PySocks · mitmproxy-wireguard · mock-ssh-server · asyncssh · paramiko · pytun-pmd3