26 Jan 2025 |
hexa (clat on linux when) | the throughput doesn't scale anything like wireguard | 14:04:25 |
hexa (clat on linux when) | the multiple reachability strategies however work quite well | 14:04:51 |
alina🏳️⚧️🐾 | interesting, thanks | 14:12:17 |
toonn | Does Wireguard have more than point to point links? | 14:17:13 |
raitobezarius | yes | 14:17:22 |
raitobezarius | it has mesh | 14:17:25 |
toonn | What would I miss switching from Tailscale to plain Wireguard at this point? | 14:23:11 |
f0x | In reply to @toonn:matrix.org What would I miss switching from Tailscale to plain Wireguard at this point? NAT traversal, and ease of configurability with non-nixos hosts | 14:24:15 |
f0x | wireguard mesh does rely on configuring connections for all peers on all peers, which is easy enough with a shared nix declaration, but a pain to do manually | 14:25:05 |
K900 | Wireguard itself doesn't really mesh | 14:25:07 |
K900 | As in it won't route things to unreachable nodes through other nodes in the mesh | 14:25:22 |
K900 | (by default, anyway) | 14:25:25 |
K900 | But there are non-tailscale options for that | 14:25:43 |
K900 | If you really want it | 14:25:47 |
magic_rb | Has there been any progress on a mesh net which isnt tailscale and works on android? | 14:26:09 |
f0x | headscale as a replacement for the tailscale server? | 14:26:42 |
K900 | In reply to@magic_rb:matrix.redalder.org Has there been any progress on a mesh net which isnt tailscale and works on android? Netbird has a mobile app now | 14:27:14 |
magic_rb | In reply to @f0x:pixie.town headscale as a replacement for the tailscale server? Ill 100% need separate tailnets and i dont really lile tailscale as a company much | 14:27:43 |
magic_rb | Theyre weird | 14:27:48 |
K900 | I think Headscale can do multi-tenancy now? | 14:28:30 |
K900 | But even if it can't you can probably get what you want with just ACLs | 14:28:41 |
f0x | oh I visited their repo before apparently, looks really solid | 14:31:34 |
K900 | I've been keeping an eye on it because they said they were open to implementing DPI bypass techniques | 14:32:32 |
K900 | And then they never did | 14:32:35 |
magic_rb | In reply to @k900:0upti.me I think Headscale can do multi-tenancy now? Still not multiple tailnets. I want multiple so that there is no way to cross between them, strict security boundaries and all | 14:32:43 |
f0x | if it's multi-tenant i would assume each user gets their own tailnet? | 14:35:04 |
magic_rb | From what i can tell headscale is still "single tailnet only" | 14:38:08 |
adamcstephens | I've not seen anything in my use of headscale to imply it has multi-tenancy | 14:38:23 |
magic_rb | And netbirds android app is only published on google play. Right so that disqualifies netbird immediately | 14:38:34 |
magic_rb | Well, ill try in another year | 14:38:45 |