A Portmap.io alternative with your own public IPv4

Portmap.io publishes a service through its shared server on ports it maps for you. GetAStatic gives your device its own static public IPv4 over WireGuard instead, so clients reach a fixed IP:port that you control. From $2/mo.

Not affiliated with Portmap.io. Prices as listed on their site, checked 2026-10-06.

Instant setup US-based IP

Updated

Compare

Portmap.io vs GetAStatic

Portmap.io's paid plan against ours.

FeaturePortmap.ioGetAStatic
PricePremium $3.99/moFrom $2/mo
TunnelOpenVPN or SSH, or its command-line clientWireGuard, with an AmneziaWG switch
Your own public IPv4No, a Portmap server address other users shareYes, one dedicated IPv4 per config
External port numbers1024 to 65535, if no other user holds the numberAny port from 1 to 65535 that you open
Ports 80 and 443Shared, for HTTP and HTTPS rules onlyYours, for any TCP or UDP service
Port inside vs outsideA mapping rule per port, remote to localThe same number on the IP and the device
RefundsNone, per its terms7-day money-back guarantee

Portmap.io facts from its home page, FAQ and terms, checked 2026-10-06. Its free plan allows one rule on a random external port.

The problem

How Portmap.io routes a connection

On Portmap.io you connect your PC to a Portmap server with OpenVPN or an SSH tunnel, then add a mapping rule. A rule names a remote port on Portmap's side, the port on your PC, and optionally a host header and an allowed IP. Visitors connect to yourname.portmap.io on the remote port, and Portmap passes the traffic down the tunnel to your machine.

That design is fine for publishing one service. The limits come from the address, which belongs to Portmap's server and is shared. The free plan gets one rule on a random external port. Premium, at $3.99/mo, lets you pick ports from 1024 to 65535, but only numbers no other user holds. Ports 80 and 443 TCP are shared between users and work only for HTTP and HTTPS rules.

So SSH on 22 or RTSP video on 554 cannot keep its usual port. A partner who wants one IP to allowlist gets a server address that other customers use too. And every client has to know the remote port the rule assigned, which often differs from the port the service listens on.

Pricing

Choose your plan

Plus for light use, Pro for most people, Ultra for full gigabit.

Plus
$2/mo

 

  • 1 dedicated IP address
  • 10 devices
  • 5 open ports
  • 100 GBbandwidth
  • 20 Mbpsspeed
Ultra
$10/mo

 

  • 2 dedicated IP addresses
  • Unlimited devices
  • Unlimited open ports
  • 5 TBbandwidth
  • 1 Gbpsspeed
  • Inbound + outbound access
  • Instant activation
  • 7-day money-back guarantee
  • Cancel anytime
Add-ons, per IP addressCustom hostname $5·Addtl. IP $2/mo (Ultra $7/mo)·Gigabit Speed (Plus & Pro) $5/mo·SMTP $25
Why use GetAStatic?

Why Portmap.io users move to GetAStatic

  • An IPv4 used by you alone, so a client, partner or firewall can allowlist one address
  • Ports below 1024, such as 22 for SSH or 554 for a camera, on their normal numbers
  • No mapping table to keep in sync: the port you open is the port the device answers on
  • A VPN too: the device's outbound traffic leaves from the same IP
How it works

Two designs, and when each one fits

Neither design is better for every job. If you only want to publish a service through a tunnel and do not mind which address or port it lands on, a Portmap mapping does that.

GetAStatic works at the address level instead. A dedicated public IPv4 is assigned to your WireGuard tunnel. Every port starts closed. When you open one in the dashboard, TCP or UDP, connections to that IP and port reach your device on the same number. There is no remote-to-local mapping, and the device's outbound traffic leaves from the same IP, so it works as a VPN too. This makes more sense when you want a stable IP:port endpoint that you control.

Some things move to your side. Portmap routes by host header on its shared 80 and 443, and Premium adds SSL certificates. With your own IP you run that yourself, for example a reverse proxy with a Let's Encrypt certificate. A custom domain becomes an A record that points at the IP, not a CNAME to a portmap.io name.

Setup

Move from Portmap.io in five steps

Keep the Portmap mapping running until the new address passes a test from outside.

  1. Connect GetAStatic: sign up, download the WireGuard config, import it into the WireGuard app on the PC that runs OpenVPN today (or on your router), and switch the tunnel on. Your IP is in the dashboard.
  2. Open the needed ports. For each Portmap rule, open the "Port on your PC" number in the dashboard, as TCP or UDP. Clients will now use that number, not the old remote port.
  3. Point your service, domain and clients at the new IP. Delete the CNAME to yourname.portmap.io and add an A record for the IP. Update the camera app, RDP shortcut or game client from the old host and port to YOUR-IP:port.
  4. Test from outside your network: use the port check, or connect from a phone on mobile data. The service must listen on all interfaces, not only 127.0.0.1.
  5. When it works, delete the Portmap mapping rule and remove the OpenVPN client from startup.
PortProtocolUsed for
22TCPSSH, on its usual port
3389TCP+UDPWindows Remote Desktop
5900TCPVNC remote support
554TCPRTSP video from an IP camera or NVR
Portmap.io
  client -> yourname.portmap.io:34567   (shared Portmap server)
         -> mapping rule 34567 -> 3389
         -> OpenVPN or SSH tunnel
         -> your PC :3389

GetAStatic
  client -> YOUR-IP:3389                (your dedicated IPv4)
         -> port 3389 open in the dashboard
         -> WireGuard tunnel
         -> your PC :3389

Plus allows 5 open ports; Pro and Ultra have unlimited open ports. A range counts as its size.

Good to know

Good to know

  • There is no free plan or trial. Plans start at $2/mo, with a 7-day money-back guarantee.
  • Portmap.io lists unlimited bandwidth. Our plans cap speed in both directions (20 Mbps on Plus, 100 Mbps on Pro, 1 Gbps on Ultra) and monthly data (100 GB on Plus).
  • Each IP is one WireGuard config, active on one device at a time. Run it on a router and every device behind it shares the IP; the plan card's device figure is a guide, not a cap.
  • There is no per-port allowed-IP field like Portmap's. Every open port is reachable by anyone, so filter on the device's own firewall and keep RDP and VNC behind strong passwords.
  • Two locations: Kansas City, Missouri and San Jose, California. Users far from the IP's city see some extra delay.
FAQ

Questions, answered.

01Can I keep the port numbers my Portmap rules used?

Yes, but the device must listen on that number, because traffic arrives on the same port it was sent to. If a rule mapped 34567 to 3389, either open 3389 and give clients the new port, or open 34567 and set the service to listen on 34567.

02Will my yourname.portmap.io address keep working?

Only while the Portmap rule exists, because that name points at Portmap's server. Use your own domain with an A record for the new IP, or share the IP itself. Remove the old rule once clients have moved.

03Do I still need the OpenVPN client?

No. The WireGuard app, or WireGuard on your router, replaces it. After the new address passes an outside test, stop OpenVPN and remove it from startup so the PC does not keep two tunnels.

04Can I host several websites on port 443, as Portmap does with host headers?

Yes. Open 443 TCP, point each domain's A record at your IP, and run a reverse proxy such as Caddy or nginx that routes by hostname. Port 443 on the IP is yours, so no other customer competes for it.

Have more questions? See the full FAQ →