shouldiuse.io

Categories

VERDICT

Should I use Goteleport (Teleport)?

Cisco and Teleport Announce Strategic Partnership - goteleport.com

Depends. Buy if you run many servers, clusters, and databases and need audited, short-lived access with compliance trails — that's exactly Teleport's audience. Small teams and solo admins should skip it: plain SSH with SSO, Tailscale, or the free Community Edition covers them at a fraction of the operational cost.

Confidence

Medium. Based on 20+ public sources: G2, Gartner, GitHub, Hacker News, Reddit, Vendr, and vendor docs.

Ratings

  • Value for money
  • Ease of useInsufficient usability evidence in sources
  • Feature depth
  • Support qualitySupport hub exists; quality unverified
  • Security posture

Pricing

Free

Community Edition

ModelNot disclosed
Monthly feesNot disclosed
HardwareNot disclosed
Free tierYes
Team / CloudNot published
EnterpriseCustom quote

Best for

  • Engineering orgs with many SSH/K8s endpoints
  • SOC 2 / compliance-driven infra teams
  • Enterprises replacing VPNs and bastions
  • Teams needing short-lived, audited access

Not for

  • Solo devs or tiny teams — plain SSH or Tailscale suffices
  • Companies without dedicated DevOps/security staff to operate it
  • Buyers who need published, predictable pricing
  • Non-infrastructure teams wanting simple tool access

Gotchas - check before you buy

high

Community Edition adopted a commercial license (2024) — audit what's actually free before committing

high

CVE-2025-49825 auth bypass (patched June 2025) — pin and track releases carefully

medium

Paid pricing is sales-negotiated; no published per-seat numbers, so renewal costs can surprise

Pros and cons

Pros

  • 4.6/5 Gartner rating for its platform
  • One platform: SSH, Kubernetes, databases, apps, machine identity
  • Open-source Community Edition available for self-hosting
  • SOC 2 compliance guidance with short-lived certificates
  • Commissioned NCC cryptography audit; published vulnerability process

Cons

  • Community Edition moving to a commercial license
  • Pricing opaque; contracts negotiated via sales
  • June 2025 authentication-bypass CVE
  • Some teams replaced it entirely (active HN migration thread)
  • Learning curve debated in r/devops upskilling threads

Sources & method

Analyzed 9/25/2026 - 14 sources - Security-mature: NCC cryptography audit, vulnerability-management process; one recent patched auth-bypass CVE.

official x5review x5security x2news x2
  • CVE-2025-49825 — remote authentication bypass, Patched June 2025; vendor issued a separate advisory for Cloud customers.
  • CVE-2022-36633, Listed against the goteleport vendor in the OpenCVE database.
  • NCC audit critical finding, Two small bugs chained into a critical vulnerability; a CVE was assigned.

Key stats

  • Value for money: 3/5

    Rating

  • Free

    Starting price

  • 14

    Sources

  • Analyzed

  • Value for money: 3/5. Free OSS core; paid tiers are negotiated
  • Ease of use. Insufficient usability evidence in sources
  • Feature depth: 5/5. SSH, K8s, DBs, apps, workload identity, governance
  • Support quality. Support hub exists; quality unverified
  • Security posture: 4/5. NCC-audited, transparent vuln handling; recent patched CVE
  • 4.6/5 Gartner rating Teleport Infrastructure Identity Platform
  • 4.4/5 G2 rating 108 reviews across Teleport products
  • $1.1B Valuation $110M Series C, May 2022
  • 2015 Founded Founded as Gravitational

Pricing

Community Edition

Free

  • Self-hosted, open source
  • Core SSH/Kubernetes access
  • Commercial license change announced

Team / Cloud

Not published

  • Managed cloud option
  • Tiered per feature matrix

Enterprise

Not disclosed

  • Identity governance, SSO, audit
  • Support and onboarding services

Security

Security-mature: NCC cryptography audit, vulnerability-management process; one recent patched auth-bypass CVE.

  • CVE-2025-49825 — remote authentication bypassPatched June 2025; vendor issued a separate advisory for Cloud customers.⁷
  • CVE-2022-36633Listed against the goteleport vendor in the OpenCVE database.
  • NCC audit critical findingTwo small bugs chained into a critical vulnerability; a CVE was assigned.⁸

What users say

Ratings are strong (4.4–4.6/5) but practitioner threads show debate over necessity, learning curve, and how to replace it.

“Ask HN: How did you replace Teleport?”
Hacker News
“Strongdm just jacked our price by mo…”
Reddit, r/devops

Companies that use it

  • Exness11
  • ExtraHop12
  • Decisiv
Full analysis

Based on 20+ public sources: G2, Gartner, GitHub, Hacker News, Reddit, Vendr, and vendor docs.

Enterprise zero-trust access for SSH/K8s/DBs. Great at scale, overkill for small teams; free Community Edition softens cost.

Methodology

Based on 20+ public sources: G2, Gartner, GitHub, Hacker News, Reddit, Vendr, and vendor docs.

Sources

  1. Teleport homepagegoteleport.com
    official
  2. review
  3. review
  4. official
  5. Teleport pricinggoteleport.com
    official
  6. news
  7. security
  8. security
  9. review
  10. review
  11. Exness case studygoteleport.com
    official
  12. ExtraHop case studygoteleport.com
    official
  13. review
  14. news

Rate this review

Anonymous. You can change your vote.

Loading votes…

Comments

One queue. No nested comments. Give a display name first. Limit: 200 words per comment and 7 comments per day. You can edit or delete yours.

Save a name to write a comment.

0 / 200 words

No comments yet.