!tCyGickeVqkHsYjWnh:nixos.org

NixOS Networking

795 Members
Declaratively manage your switching, routing, wireless, tunneling and more. | Don't rely on `networking.*` use systemd-networkd and NetworkManager instead. | Set `SYSTEMD_LOG_LEVEL=debug` to debug networking issues with networkd | No bad nft puns, please. | Room recommendations: #sysops:nixos.org231 Servers

Load older messages


SenderMessageTime
26 Jan 2025
@hexa:lossy.networkhexa (clat on linux when)the throughput doesn't scale anything like wireguard14:04:25
@hexa:lossy.networkhexa (clat on linux when)the multiple reachability strategies however work quite well14:04:51
@alina:kescher.atalina🏳️‍⚧️🐾interesting, thanks14:12:17
@toonn:matrix.orgtoonn Does Wireguard have more than point to point links? 14:17:13
@raitobezarius:matrix.orgraitobezariusyes14:17:22
@raitobezarius:matrix.orgraitobezariusit has mesh14:17:25
@toonn:matrix.orgtoonn What would I miss switching from Tailscale to plain Wireguard at this point? 14:23:11
@f0x:pixie.townf0x
In reply to @toonn:matrix.org
What would I miss switching from Tailscale to plain Wireguard at this point?
NAT traversal, and ease of configurability with non-nixos hosts
14:24:15
@f0x:pixie.townf0x wireguard mesh does rely on configuring connections for all peers on all peers, which is easy enough with a shared nix declaration, but a pain to do manually 14:25:05
@k900:0upti.meK900Wireguard itself doesn't really mesh14:25:07
@k900:0upti.meK900As in it won't route things to unreachable nodes through other nodes in the mesh14:25:22
@k900:0upti.meK900(by default, anyway)14:25:25
@k900:0upti.meK900But there are non-tailscale options for that14:25:43
@k900:0upti.meK900If you really want it14:25:47
@magic_rb:matrix.redalder.orgmagic_rbHas there been any progress on a mesh net which isnt tailscale and works on android?14:26:09
@f0x:pixie.townf0x headscale as a replacement for the tailscale server? 14:26:42
@k900:0upti.meK900
In reply to@magic_rb:matrix.redalder.org
Has there been any progress on a mesh net which isnt tailscale and works on android?
Netbird has a mobile app now
14:27:14
@magic_rb:matrix.redalder.orgmagic_rb
In reply to @f0x:pixie.town
headscale as a replacement for the tailscale server?
Ill 100% need separate tailnets and i dont really lile tailscale as a company much
14:27:43
@magic_rb:matrix.redalder.orgmagic_rbTheyre weird14:27:48
@k900:0upti.meK900I think Headscale can do multi-tenancy now?14:28:30
@k900:0upti.meK900But even if it can't you can probably get what you want with just ACLs14:28:41
@f0x:pixie.townf0xoh I visited their repo before apparently, looks really solid14:31:34
@k900:0upti.meK900I've been keeping an eye on it because they said they were open to implementing DPI bypass techniques14:32:32
@k900:0upti.meK900And then they never did14:32:35
@magic_rb:matrix.redalder.orgmagic_rb
In reply to @k900:0upti.me
I think Headscale can do multi-tenancy now?
Still not multiple tailnets. I want multiple so that there is no way to cross between them, strict security boundaries and all
14:32:43
@f0x:pixie.townf0xif it's multi-tenant i would assume each user gets their own tailnet?14:35:04
@magic_rb:matrix.redalder.orgmagic_rbFrom what i can tell headscale is still "single tailnet only"14:38:08
@adam:robins.wtfadamcstephensI've not seen anything in my use of headscale to imply it has multi-tenancy14:38:23
@magic_rb:matrix.redalder.orgmagic_rb And netbirds android app is only published on google play. Right so that disqualifies netbird immediately 14:38:34
@magic_rb:matrix.redalder.orgmagic_rbWell, ill try in another year14:38:45

Show newer messages


Back to Room ListRoom Version: 6