Equal Aqua · IT Operations

Connect to the Equal Aqua VPN

Our network runs on NetBird, a self-hosted WireGuard mesh — every device connects directly and encrypted, with no traffic routed through an office server. Setup follows the same shape on any device: install, point it at our management server, connect, and sign in with your Equal Aqua account. The Android tab below walks through every screen.

Management URL
https://netbird.equalaqua.org:443

Enter this exactly, port included, when the client asks for a self-hosted management server. On the sign-in screen, choose Continue with Microsoft Entra (not “Continue with Email”) and use your normal Equal Aqua email and password — there's no separate NetBird password to set.

  1. 1

    Download NetBird

    Get the 64-bit Windows installer from the NetBird download page and run it.

  2. 2

    Choose “Self-hosted”

    On first launch, NetBird asks where to connect. Select Self-hosted to reveal the management server field.

    Already past that screen? Right-click the NetBird icon in the system tray → SettingsGeneral → set Management Server to Self-hosted.

  3. 3

    Paste the server address

    Enter https://netbird.equalaqua.org:443 as the management server URL.

  4. 4

    Connect

    Click the NetBird icon in the system tray, then Connect.

  5. 5

    Sign in with SSO

    A browser window opens. Choose Continue with Microsoft Entra, then sign in with your Equal Aqua email (approve the MFA prompt if you get one).

  1. 1

    Download NetBird

    Get the macOS installer from the NetBird download page and run it. (Admins can instead install via Terminal or Homebrew, also on the download page.)

  2. 2

    Choose “Self-hosted”

    On first launch, NetBird asks where to connect. Select Self-hosted to reveal the management server field.

    Already past that screen? Click the NetBird icon in the menu bar → SettingsGeneral → set Management Server to Self-hosted.

  3. 3

    Paste the server address

    Enter https://netbird.equalaqua.org:443 as the management server URL.

  4. 4

    Connect

    Click the NetBird icon in the menu bar, then Connect.

  5. 5

    Sign in with SSO

    A browser window opens. Choose Continue with Microsoft Entra, then sign in with your Equal Aqua email (approve the MFA prompt if you get one).

  1. 1

    Install the client

    Use the package for your distribution from the NetBird download page (apt, yum, pacman, or the install script all work).

  2. 2–3

    Point it at our server

    From a terminal:

    netbird up --management-url https://netbird.equalaqua.org:443

  3. 4

    Connect

    The command above both sets the server and brings the connection up in one step — there's no separate tray icon to click.

  4. 5

    Sign in with SSO

    NetBird prints a login URL in the terminal (or opens a browser automatically). Open it, choose Continue with Microsoft Entra, and sign in with your Equal Aqua email.

  1. 1

    Install the app

    Get NetBird from the App Store.

    ▶ Open on the App Store
  2. 2

    Continue past the welcome screen

    On first launch NetBird explains it defaults to its own cloud servers — that's fine, you'll point it at ours next. Tap Continue.

    First launch screen explaining the default cloud server, with a Continue button

    Screens below are from the Android app, shown for reference — NetBird's iOS layout is nearly identical.

  3. 3

    Open the menu

    From the Disconnected home screen, tap the menu icon in the top-left corner.

    Disconnected home screen with the top-left menu icon highlighted
  4. 4

    Tap “Change Server”

    In the menu that slides out, select Change Server.

    Side menu with Change Server highlighted

    If the app already has an account set up, it'll warn you that this erases the local config and disconnects the current one — confirm to continue.

    Confirmation dialog warning that changing the server erases local config
  5. 5

    Enter the server address

    Type https://netbird.equalaqua.org:443 into the Server field and confirm the change.

    Server field with https://netbird.equalaqua.org:443 entered and a Change button

    You'll see a confirmation — tap OK.

    Server was changed confirmation dialog
  6. 6

    Connect

    Back on the main screen, tap the large circular button.

    Disconnected home screen, ready to connect
  7. 7

    Sign in with SSO

    On the sign-in page, choose Continue with Microsoft Entra — not “Continue with Email.”

    Sign-in method screen with Continue with Microsoft Entra highlighted

    Then sign in with your Equal Aqua email and password.

    Microsoft sign-in page asking for email, phone, or Skype
  8. 8

    You're connected

    The button turns solid and the screen shows Connected along with your device's NetBird address.

    Connected screen showing IP addresses and hostname
  1. 1

    Install the app

    Get NetBird from the Google Play Store.

    ▶ Open on Google Play
    NetBird P2P VPN listing in the Google Play Store
  2. 2

    Continue past the welcome screen

    On first launch NetBird explains it defaults to its own cloud servers — that's fine, you'll point it at ours next. Tap Continue.

    First launch screen explaining the default cloud server, with a Continue button
  3. 3

    Open the menu

    From the Disconnected home screen, tap the menu icon in the top-left corner.

    Disconnected home screen with the top-left menu icon highlighted
  4. 4

    Tap “Change Server”

    In the menu that slides out, select Change Server.

    Side menu with Change Server highlighted

    If the app already has an account set up, it'll warn you that this erases the local config and disconnects the current one — tap Yes to continue.

    Confirmation dialog warning that changing the server erases local config
  5. 5

    Enter the server address

    Type https://netbird.equalaqua.org:443 into the Server field and tap Change.

    Server field with https://netbird.equalaqua.org:443 entered and a Change button

    You'll see a confirmation — tap OK.

    Server was changed confirmation dialog
  6. 6

    Connect

    Back on the main screen, tap the large circular button.

    Disconnected home screen, ready to connect
  7. 7

    Sign in with SSO

    On the sign-in page, choose Continue with Microsoft Entra — not “Continue with Email.”

    Sign-in method screen with Continue with Microsoft Entra highlighted

    Then sign in with your Equal Aqua email and password.

    Microsoft sign-in page asking for email, phone, or Skype
  8. 8

    You're connected

    The button turns solid and the screen shows Connected along with your device's NetBird address.

    Connected screen showing IP addresses and hostname

How to tell it worked

The NetBird icon shows Connected, and your device appears as a new peer in the admin panel. If it hangs on “Connecting,” a new peer may need approval — ping IT.

Need a hand?

Stuck on any step, or unsure which account to use? Reach out to your IT administrator with a screenshot of where you're stuck.