acme.sh vs BunkerWeb
A side-by-side comparison of two self-hosted reverse proxy & gateways options — licensing, setup difficulty, resource needs, and what each one replaces.
Not the right match-up?
acme.sh
Pure shell ACME client for TLS certificates
VS
BunkerWeb
Next-gen Web Application Firewall (WAF) that will protect your web
| Feature | acme.sh | BunkerWeb |
|---|---|---|
| Category | Reverse Proxy & Gateways | Reverse Proxy & Gateways |
| License | GPL-3.0 | AGPL-3.0 |
| Language | Shell | Python |
| Setup difficulty | Easy | Medium |
| Min. RAM | 32 MB | 512 MB |
| Deployment | binary, source | docker, kubernetes |
| GitHub stars | ★ 47,426 | ★ 10,784 |
| First released | 2016 | 2026 |
| Replaces | Certbot | — |
Why pick each one
Choose acme.sh if…
- Released under the GPL-3.0 license
- Easy to set up — beginner-friendly
- Mature project with 47.4k GitHub stars
- Written in Shell
Choose BunkerWeb if…
- Released under the AGPL-3.0 license
- First-class Docker support for quick deployment
- Kubernetes-ready with Helm charts available
- Mature project with 10.8k GitHub stars
Frequently asked questions
Is acme.sh or BunkerWeb better?
acme.sh is the stronger all-round pick: it has both the larger community and the simpler easy setup. Consider BunkerWeb if its specific feature set fits your needs better.
Are acme.sh and BunkerWeb free and open-source?
Yes. acme.sh is licensed under GPL-3.0 and BunkerWeb under AGPL-3.0. Both can be self-hosted at no software cost.
Can I run acme.sh and BunkerWeb with Docker?
acme.sh: check the project docs for container support. BunkerWeb: yes.