NetSeed App
People sign in, select a Space, view authorized Nodes and Services, choose an Exit and connect from iPhone, Android, macOS or Windows.
Download the App →People connect with the NetSeed App, servers and automation use ns, administrators manage access in NSD, and NSGW provides the gateway roles a Network needs. Everything is scoped to one active Organization and Network Space.
The same names and access decisions carry across the App, terminal, console and gateway.
People sign in, select a Space, view authorized Nodes and Services, choose an Exit and connect from iPhone, Android, macOS or Windows.
Download the App →nsServers and terminal users join a Network, inspect status, expose a Node or declared Service, and support repeatable automation.
Open CLI reference →Administrators manage Organizations, Networks, members, resources, Grants, gateway configuration, public ingress and activity.
Open NSD →A gateway reports Relay, Service Egress, Internet Exit and Public Ingress readiness separately. Online does not mean every role is ready.
Read the NSGW guide →An Organization contains people and administrative ownership. A Network contains the Nodes, Services, gateways and access rules they use together. Their selected pair is the active Space.
Who owns and administers the environment.
Which resources and access configuration are in view.
The active Organization and Network pair used by the App or ns.
Changing Space stops the current runtime, commits the newly selected context, and remains disconnected until the user explicitly connects; two Spaces are not active at once.
Each choice solves a different problem. Authorization is explicit and always belongs to the active Space.
Cross-account sharing uses a directional Grant for the whole Node. Same-account access to its own resources remains system-managed, and the destination firewall stays final.
Explore Node access →Cross-account sharing can select users, groups, or source Nodes for an exact protocol, host and port instead of the complete Node.
Explore Service access →Select an authorized Exit for the IPv4 default route or configured IPv4 CIDRs, with automatic usable WG/WSS transport selection and fail-closed behavior. IPv6 is not routed through NSGW.
Explore company Exit →NSD handles sign-in, Organization and Network state, resource metadata and Grants. The App or ns then connects within that active context, using an NSGW role where the selected path requires one.
Cross-account sharing uses explicit Grants; same-account access to its own Nodes and private Services remains system-managed. Current availability still applies.
Relay, Service Egress, Internet Exit and Public Ingress are independent capabilities, not one combined status.
Every L7 path pairs its authentication or explicit anonymous mode with a compatible Grant; source-IP rules can add a narrower boundary.
Public L4 ingress uses source-IP allow and deny rules; it does not inherit identity-aware L7 authentication.
Install NetSeed to connect, or open the complete guide for setup, access models and operational details.
人员使用 NetSeed App 连接,服务器和自动化使用 ns,管理员在 NSD 中管理访问,NSGW 为网络提供所需的网关能力。一切都属于一个当前组织与网络空间。
App、终端、控制台与网关使用一致的对象名称和访问决定。
人员登录并选择空间,查看已授权节点与服务,选择出口,再从 iPhone、Android、macOS 或 Windows 连接。
下载 App →ns服务器和终端用户加入网络、检查状态、提供节点或已声明服务,并支持可重复的自动化操作。
查看命令参考 →管理员管理组织、网络、成员、资源、授权、网关配置、公网入口与活动记录。
打开 NSD →中继、服务出网、互联网出口与公网入口分别报告就绪状态;在线不代表所有能力都已就绪。
阅读 NSGW 指南 →组织承载成员与管理归属;网络承载一起使用的节点、服务、网关和访问规则。当前选中的组织与网络组合就是空间。
谁拥有和管理这套环境。
当前查看哪些资源与访问配置。
App 或 ns 正在使用的组织与网络组合。
切换空间会停止当前运行状态并提交新上下文;切换完成后保持断开,直到用户主动连接。两个空间不会同时处于活动状态。
NSD 处理登录、组织与网络状态、资源元数据和授权;App 或 ns 再在该当前上下文中连接,并在所选路径需要时使用对应 NSGW 能力。
跨账号共享使用显式授权;同账号对自有节点和私有服务的访问由系统管理。当前可用性仍然适用。
中继、服务出网、互联网出口与公网入口是独立能力,而不是一个合并状态。
每条 L7 路径都把身份验证或显式匿名模式与兼容授权配套使用;来源 IP 规则可以进一步缩小范围。
公网 L4 入口使用来源 IP 允许与拒绝规则,不继承面向 L7 的身份认证。
安装 NetSeed 开始连接,或打开完整文档了解配置、访问模型与运行细节。