A zero-install, web-based remote access client for HashiCorp Boundary.
Note on Naming: This project is named after the Comet programming technique, an umbrella term for long-held HTTP requests allowing a web server to push data to a browser. This project is a proactive community contribution, and feedback is highly welcomed!
In enterprise environments with highly restricted laptops, end users often cannot install native desktop clients like the Boundary Desktop app. Comet Boundary solves this by providing secure SSH (and soon RDP) access directly from the browser. It acts as a trusted intermediary, seamlessly translating web traffic into Boundary's native protocols without requiring heavy operators or custom local installations.
Terraform Module ──(outputs)──> Helm Chart values.yaml ──(deploys)──> Comet Container
│ configures │
v v
Boundary Cluster (existing) <──────(boundary connect subprocess)───── Comet Container
│
v
SSH Targets (existing)
Before getting started, ensure you have the following installed:
- Docker: Docker Desktop, OrbStack, or a running Docker daemon.
- jq: For JSON processing in setup scripts.
- Node.js: For frontend dependencies.
- Go 1.26+: For backend compilation.
Deploy the unified container into your Kubernetes cluster via Helm:
helm install comet-boundary oci://ghcr.io/arsenyspb/charts/comet-boundary --version 0.1.0See the Terraform Module README for instructions on provisioning Boundary resources for the Comet container.
To quickly spin up a fully hermetic demo environment (includes Boundary, OpenLDAP, Postgres, and the Comet App) on macOS:
make replayThis command installs dependencies, bootstraps infrastructure, seeds LDAP test users (alice, bob, chris), and spins up the web UI at http://localhost:5173.
Want to test Kubernetes locally? Check out the Interactive Minikube Demo (a Jupyter Notebook) to explore bridging this local setup into a local cluster.
- Architecture & Build Modes: Technical deep dives are available in the Architecture Guide and AGENTS.md.
- HVD Alignment: Built strictly according to HashiCorp Validated Designs.
Interested in contributing, tracking known technical debt, or viewing the project roadmap? Please read our Contributing Guide to get started!