Netbird - an Open Source, Self Hosted Wireguard based VPN system. Server GUI and client setup ease!

  Рет қаралды 54,607

Awesome Open Source

Awesome Open Source

Күн бұрын

Пікірлер: 185
@AwesomeOpenSource
@AwesomeOpenSource 10 ай бұрын
Just an FYI - Netbird reached out, and I didn't realize it, but the Linux Client install does install a small GUI application. It's still being developed, but has some good functionality, so make sure to check your application menu to find it. I didn't notice it, but when I run it on KDE it gives me a tray icon with settings for the Management URL, Admin URL, Connect / Disconnect, and other info as well.
@broph3n
@broph3n 7 ай бұрын
Would love to see more about this, doesn't seem to be a whole lot of info out there yet on youtube
@AwesomeOpenSource
@AwesomeOpenSource 7 ай бұрын
It's really a great setup. I have setup a bunch of machines, have my own Authentik IdP setup, and it is working quite well. I did have to uninstall the tailscale client on a couple of machines as they appear to interfere with each other. Not sure why though.
@kamerakindmichel
@kamerakindmichel 10 ай бұрын
Thats funny I had found this Product yesterday and now this Video comes Online 😂
@AwesomeOpenSource
@AwesomeOpenSource 10 ай бұрын
Awesome Timing!
@Darkk6969
@Darkk6969 10 ай бұрын
This is pretty cool in terms of simple wireguard self-hosting solution. I can't find anywhere if there is a user / peer limit when self-hosted. I can see that if you use their cloud solution.
@AwesomeOpenSource
@AwesomeOpenSource 10 ай бұрын
Don't believe there is a limit via the software stopping you, but only what your hardware may can handle.
@magog6852
@magog6852 10 ай бұрын
Is there a better answer on this? This is SUPER important
@AwesomeOpenSource
@AwesomeOpenSource 10 ай бұрын
I would have to refer you to the Netbird team for that. I don't have a good answer based on what's on their site. I was looking at a question on Reddit from last year to them about them ever changing the self hosted model. They didn't answer, and honestly, as a business I understand why. They want to make money. As a business that makes their software open source, I appreciate that about them.
@Darkk6969
@Darkk6969 10 ай бұрын
@@AwesomeOpenSource Yep, I totally agree. If there is a limit say 10 peers for self hosted without some sort of a license or support subscription I'm perfectly fine with that for home use. If there is no limit then that is even better. If used in a business to support large number of peers and is self hosting I would expect them to get a business support subscription. That's what I did with ProxMox servers for work.
@andruy
@andruy 10 ай бұрын
That’s a great! Would you show an OpenWrt setup like the one you mentioned where the whole network is the client?
@AwesomeOpenSource
@AwesomeOpenSource 10 ай бұрын
Let me see if I can get something setup. I'll add it to my list.
@mlsmaycon
@mlsmaycon 10 ай бұрын
Netbird is being released in the official Openwrt repository
@AwesomeOpenSource
@AwesomeOpenSource 10 ай бұрын
That's awesome
@BlueBearOne
@BlueBearOne 2 ай бұрын
You are amazing as always and the best teacher on KZbin! Thank you. I'm new to this and I'm starting to buy hardware. The reason I'm doing this is I need to remote access to a lot of my files and applications. So one thing I am confused on is this. Why did you need to create a virtual private server in the cloud? I thought the whole point was to be able to use your real private servers safely at home by protecting them with a VPN using secure, encrypted transfer protocols. What am I missing in my conceptual foundation? Thank you very much.
@AwesomeOpenSource
@AwesomeOpenSource 2 ай бұрын
My pleasure.
@haraldwolte3745
@haraldwolte3745 10 ай бұрын
Great video, great channel, thanks! What i didn't get from this video is why this wireguard implementation might be preferred to other implementations? It seems to have a bigger attack surface, you need to trust that netbird is doing things right in the background plus theres multiple web guis and other additional logic which could be faulty. This is not a criticism, i just didn't manage to answer those questions from the video
@AwesomeOpenSource
@AwesomeOpenSource 10 ай бұрын
It's the open source way of thinking really. You have the opportunity to see exactly how things are being implemented by Netbird because it's open source. If you find faults, you have the options to help them address the issues. As for whether it's better or worse, I think it's simply another option. We all want options, and I try to let you all know about various options. Tailscale is cool, Headscale makes it self hostable, and with some work you can even setup IdP with it, but Netbird does that for you much easier. So it's another option. Just depends on what you need at the end of the day.
@sagarsriva
@sagarsriva 10 ай бұрын
Great video, thanks
@AwesomeOpenSource
@AwesomeOpenSource 10 ай бұрын
No problem 👍
@mehdighazanfari5871
@mehdighazanfari5871 10 ай бұрын
I like your videos, they are excellent. openvpn and wireguard protocols can be identify and therefor neutralize by ISP. openconnect does not have that vulnerability. i like something like this based on openconnect.
@AwesomeOpenSource
@AwesomeOpenSource 10 ай бұрын
Indeed, and that could happen, but good to know there are alternatives out there.
@ronschh
@ronschh 10 ай бұрын
Thanks for this
@AwesomeOpenSource
@AwesomeOpenSource 10 ай бұрын
My pleasure!
@mr.architect3464
@mr.architect3464 4 ай бұрын
I was having so much problems setting up netbird and at the end my problem was that I had installed and running in Proxmox VM with wireguard....As soon as I turn it off (and setup everything like in this video) everything started to work!
@AwesomeOpenSource
@AwesomeOpenSource 4 ай бұрын
Glad my video helped.
@mattiavadala7870
@mattiavadala7870 10 ай бұрын
Awesome Project! I was looking for something similar. I'm just stuked into the last step: you add a peer in linux by installing with the oneline command and then log in within the brower, but how about linux VM machine with no desktop enviorment? Thanks so much!
@AwesomeOpenSource
@AwesomeOpenSource 10 ай бұрын
On your management page, you will create a setup key, then copy that key immediately. You can set how many times that key can be used (so if you have 5 machines, you can use it 5 times). Next, use that key on each machine you're adding to the network with the command 'netbird up --management-url netbird.yourgreatdomain.com:443 --setup-key your-key'. I have this in my show notes link in the description as well.
@TatePictures
@TatePictures 8 ай бұрын
Hey is it possible to setup Netbird server togther with a client and nginx proxy manager on one VPS (2core 4gb ram) So i can point my domain to the proxy manager which then routes all traffic over the client to the sever which is connected to another client installed on my (unraid)homesever so i can access my services from every where without installing the client on every system? and would u use headscale, netbird or netmaker for this use case?
@AwesomeOpenSource
@AwesomeOpenSource 8 ай бұрын
Maybe, you'd need to make sure you are using their advanced setup, and change the ports that netbird dashboard is using so you can have 80 adn 443 used in NGinX Proxy Manager.
@haraldwolte3745
@haraldwolte3745 10 ай бұрын
The vps setup mentioned opening ports 80, 443 and one other. A comment was made that this would be a bad idea on your home network. Why is this? Isn't it this what would be necessary to self host this stuff?
@geogmz8277
@geogmz8277 10 ай бұрын
80 and 443 are attractive for botnets as they're well known ports and there are plenty! Of misconfigured Web Servers out there. Plus you can't trust the software you're running isn't vulnerable to any exploit... For a home lab environment you usually don't follow all the good practices and security policies you'll normally follow on an enterprise/professional level. In other words because we tend to neglect things and because there are bad actors out better expose the least amount of ports possible especially! Well known ports when you can.
@haraldwolte3745
@haraldwolte3745 10 ай бұрын
@@geogmz8277 thanks but how can you do anything without those ports exposed? He says to do it on a VPS rather than your home network but what is the difference? You still have to secure it somewhere
@PopularWebz
@PopularWebz 10 ай бұрын
Netbird offers their SaaS for free. For home use, you are better off using it than hosting the control server yourself. If you do self-host, you are better off using a VPS so you are not messing with NAT
@AwesomeOpenSource
@AwesomeOpenSource 10 ай бұрын
The idea behind services like these are that you run the server in a VPS, then the client on your home network machines. Those machines can reach out and connect through the encrypted tunnel, and no firewall ports are required to be opened on your home network. It's a more secure way to run, but nothing is perfect, so keep adding layers of security where you can.
@AwesomeOpenSource
@AwesomeOpenSource 10 ай бұрын
Great questions. but it's not just 80 and 443, there is a whole range of ports required for this to run properly, and opening that many ports on your home network really expands the attack surface.
@DawidKellerman
@DawidKellerman 9 ай бұрын
👍 on the gui
@AwesomeOpenSource
@AwesomeOpenSource 9 ай бұрын
Agree, it's super nice.
@randall_live
@randall_live 7 ай бұрын
Amazing video & wiki... Cheers
@AwesomeOpenSource
@AwesomeOpenSource 7 ай бұрын
Thank you!
@randall_live
@randall_live 7 ай бұрын
@@AwesomeOpenSource Do you think it is safe to use this Docker in production environments or would it be preferable to do a more secure installation of each component?
@marcelfotografie6046
@marcelfotografie6046 10 ай бұрын
You only used cloudflare to create a DNS entry that pointed directly to your droplet, without being proxied. It is not very clear why you had to enable this grpc option when you're not using something like a cloudflare tunnel.
@AwesomeOpenSource
@AwesomeOpenSource 10 ай бұрын
I was having issues getting the client to connect, and one of the things they said was it needs gRPC enabled if using cloudflare for DNS. They told me thins without me telling them I was using Cloudflare, so I enabled it, and it started working properly. You can ask them why it's required if you're looking for a more technical answer. I"m sure they'd be happy to explain.
@UltimateJiuJitsu
@UltimateJiuJitsu 10 ай бұрын
I got it setup through a cf tunnel. I just set the domain to http in cloudflare and everything is working perfectly
@ralph4370
@ralph4370 10 ай бұрын
When I had setup my DDNS and inturn VPN Access via Cloudflare. I had to disable the Cloudflare Proxy to make it work. If you read the Cloudflare documentation VPN does not work well with CLoud Flare's proxy enabled.
@dimitristsoutsouras2712
@dimitristsoutsouras2712 3 ай бұрын
At the pricing plan section I dont get why would you care about the different users since you only going to install the agent to the machines. So for less than 100 machines you re ok with the free plan. You only need one admin as an operator not many. Worst case scenario, maybe 2.
@AwesomeOpenSource
@AwesomeOpenSource 3 ай бұрын
You use user credentials to login to the netbird system. So 1 user could have 2 or 3 machines, you could have 20 machines between 5 users, but each user authenticates, and you can revoke their ability to be on the VPN. So, if you have, for instance, an employee who leaves for a new job, you can go in and disable their account, and thus their access to the VPN.
@dimitristsoutsouras2712
@dimitristsoutsouras2712 3 ай бұрын
@@AwesomeOpenSource lets say you need to give it a shot with the free plan / 100 machines. You have to split your users in 5 login creds. So 20 of them will have to login with user1 the other 20 with user2 ... etc. Not best practice I know, since you need to monitor what each user do, but I wanted to see if I understood the concept of users / machines correctly. As for revoking, ZeroTier does that on machine level directly, so it is more efficient this way (at least for me).
@UltimateJiuJitsu
@UltimateJiuJitsu 10 ай бұрын
Thank you Brian for your continued help with using open source. Videos are looking very professional now. Could this be used with opensense like tailscale?
@AwesomeOpenSource
@AwesomeOpenSource 10 ай бұрын
I don't knwo if they officially support OPNSense yet, but maybe in the future. Definitely worth a request on their project pages on github.
@netbirdio
@netbirdio 9 ай бұрын
NetBird doesn't yet support OPNSense but we will add the support
@raimundweiss
@raimundweiss 24 күн бұрын
Hi, can you add the relay function added in version 0.29.0 to the instructions? Thank you.
@AwesomeOpenSource
@AwesomeOpenSource 22 күн бұрын
I'll have to take a look.
@haraldwolte3745
@haraldwolte3745 10 ай бұрын
12:00 digital ocean, linode mentioned as good VPS providers. What do others think of Azure or AWS?
@StrikevonNice
@StrikevonNice 10 ай бұрын
Both are very good but for me the simple online interface, simple (and cheaper I believe) pricing it makes sense to go with providers like Linode, Ocean, OVH. While lots more intergration with infrastrcture as code is great the often have lots of hidden charges and often lead the price increases. E.G. AWS charging for ip4 external address when some services can still only use that. Also just because there is wide intergration does not mean there are not bugs (I'm looking at you AWS terraform). If you want the cheapest there are websites and subreddit on cheap VPS but be warned, these are often companies trying to get market share and may close down suddenly as they run out of money (shame really as more comptation the better). All in all don't get hung on the pence/cent per machine like I have done. Chose something with a good dashbored and decent price, the time you spend to find the perfect thing when you can get something good is often never worth it.
@AwesomeOpenSource
@AwesomeOpenSource 10 ай бұрын
Well said!
@lezz27
@lezz27 2 ай бұрын
Thank you for the video, Brian. I was wondering If I can run Netbird on Pi4 via Docker instead of using a VPS. I do have CF account and a dedicated IPv4 address inhouse with a domain that I can plug in. I do have OpenVPN configured on my Pfsense router but wanted to give this a try.
@AwesomeOpenSource
@AwesomeOpenSource 2 ай бұрын
I haven't tried it on Pi4. You'd just have to give it a whirl and see how it goes. Definitely want some RAM for it to be able to do all the things it does. It's really a conflomeration of applications, and a nice Web UI front end, so does use some resources at times.
@JamaalAbegaz
@JamaalAbegaz 10 ай бұрын
Did we talk about the ports earlier? 10:13
@AwesomeOpenSource
@AwesomeOpenSource 10 ай бұрын
I may have edited our my earlier discussion on the number of ports that would need to be open. sometimes I talk about things a few times, but edit it down.
@Glatze603
@Glatze603 10 ай бұрын
Hi Brian, netbird seems to be a nice solution for self hosting, but it seems that ios support is still not implemented - I found forum comments from 2021, that ios support is planed, so what happened in the last 2 years? It seems that this product is not maintained really regularly.
@AwesomeOpenSource
@AwesomeOpenSource 10 ай бұрын
I believe I said it in the video, but they have their iOS client in Beta right now, so will be released after beta is done.
@Glatze603
@Glatze603 10 ай бұрын
@@AwesomeOpenSource I am looking forward. Then this app will be my favorite VPN-Solution.
@KoMa306
@KoMa306 10 ай бұрын
Could you please do a video about the assetmanagement open source shelf? Its "new" and looks nice but i dont know how to install xD
@AwesomeOpenSource
@AwesomeOpenSource 10 ай бұрын
is it called "Open Source Shelf"? If so, I'll look into it and add it to my list.
@bozidarbrozincevic2182
@bozidarbrozincevic2182 3 ай бұрын
Hi Brian. Cloud you please let me know how to keep this setup updated? Is apt-update & upgrade enough?
@AwesomeOpenSource
@AwesomeOpenSource 3 ай бұрын
If using their quick setup script, check out the 'Upgrade' section at this link docs.netbird.io/selfhosted/selfhosted-quickstart. You essentially to a backup the way they describe, then run a docker compose command to pull the latest changes, then recreate the containers. It's pretty straightforward, but if you need more help let me know.
@camaycama7479
@camaycama7479 8 ай бұрын
Why self-hosting this on a VPS? Would it be better to host it locally in your homelab?
@AwesomeOpenSource
@AwesomeOpenSource 8 ай бұрын
I do it so that I get the better up time, and so I don't have to open a bunch of ports on my home network to allow traffic through.
@retromobs6018
@retromobs6018 5 ай бұрын
I followed the steps and is met with Zitadel's introduction screen when login in with the credentials provided. I don't see any way to get to peers whatsoever.
@AwesomeOpenSource
@AwesomeOpenSource 5 ай бұрын
I have to ask, have you added peers to the system? Where are you looking for peers? I'm just not following your issue as described.
@christopherpeterson6004
@christopherpeterson6004 10 ай бұрын
I found the Android client did not transition between WiFi and cell service. Lost connectivity. After disconnecting I could continue. Hopefully this issue is fixed. I wish they would work with the existing WireGuard client. Otherwise it works great, and I appreciate the SSO authentication with Azure AD
@AwesomeOpenSource
@AwesomeOpenSource 10 ай бұрын
Definitely let them know about the bug on their github Issues page. That's the best way to get them to fix it.
@austin_colt
@austin_colt 5 ай бұрын
How to make this work with Nginx? As a noob, this is all frustrating. The Netbird documentation is so vague...
@AwesomeOpenSource
@AwesomeOpenSource 5 ай бұрын
When you say NGinX, what do you mean specifically? To use as a web-server, or as a reverse proxy?
@austin_colt
@austin_colt 5 ай бұрын
@@AwesomeOpenSource Reverse proxy for the web management. From my understanding, If I want to use this on my server at home, I would need to open ports 80, 443, and whatever UDP port that wireguard needs. I just want a self hosted wireguard VPN that has a web interface!
@plazmax
@plazmax 10 ай бұрын
Hello Brian, did you see "dockge" uptime kuma devs another project?
@AwesomeOpenSource
@AwesomeOpenSource 10 ай бұрын
I hadn't, but it looks pretty cool! Thanks for pointing it out.
@DarkNightSonata
@DarkNightSonata 9 ай бұрын
first, thank you for this awesome channel. one question, can you define a peer as an exit route ? basically meaning that all traffic can be routed through that peer ? tailscale has the ability to do that. thats very important to me, and I'm liking Netbird so far, only this feature is not clear
@AwesomeOpenSource
@AwesomeOpenSource 9 ай бұрын
I haven’t set that up yet, but yes as a I recall you can do all of those things from the server console. You can also set ACLs and so on with it.
@AwesomeOpenSource
@AwesomeOpenSource 9 ай бұрын
Here is a link to their docs on the topic. In this case the route would be out to the internet, but hopefully this helps. docs.netbird.io/how-to/routing-traffic-to-private-networks
@khanhthedag7269
@khanhthedag7269 4 ай бұрын
Hi, nicely Tutorial. I have question: Doesn't work for me. I have to wait a very long time. Waiting for Zitadel to become ready .............. Why? Please help. Thank you very much. (I have VPS by Oracle Cloud tier).
@AwesomeOpenSource
@AwesomeOpenSource 4 ай бұрын
I don't know for sure. May depend on the server resources. But, if it still won't work after making sure it meets the requirements, it may just be worth starting fresh on a new instance.
@khanhthedag7269
@khanhthedag7269 4 ай бұрын
@@AwesomeOpenSource I have deleted instance, and make a new instance. But, It's not working. I don't use again by oracle cloud tier. I have another question. Can I setup netbird server on Proxmox (VM)?
@AwesomeOpenSource
@AwesomeOpenSource 3 ай бұрын
You can, but you'll have to do a lot of port forwarding.
@yuriw777
@yuriw777 9 ай бұрын
And what about iOS clients?
@AwesomeOpenSource
@AwesomeOpenSource 9 ай бұрын
I’ve been keeping an eye and the iOS client is now available as well from the App Store.
@yuriw777
@yuriw777 9 ай бұрын
@@AwesomeOpenSource it’d be nice to have a video about it Thx and Happy New Year 🎆
@mrmoose0
@mrmoose0 8 ай бұрын
Hi Brian, thanks for your video, it's very helpful. I also tried to install Netbird on Oracle Cloud Infrastructure vps and, as happened to you, once the management interface is opened I get an error message (Network error) and the menu only shows the Peer item. How did you solve the problem? Thank you, Lorenzo.
@AwesomeOpenSource
@AwesomeOpenSource 8 ай бұрын
In Cloudflare, I had to enable gRPC. Not sure how to do that in Oracle Free Tier.
@bogy5259
@bogy5259 10 ай бұрын
Can i make a site to site VPN with netbird? and is it better than netmaker?
@AwesomeOpenSource
@AwesomeOpenSource 10 ай бұрын
Can't say it's better than Netmaker. I'd say it's on par with it. The SSO integration with their quick start is a definite plus, and yes, you should be able to make a site to site setup. I haven't done it yet myself, so you may need to dig through their docs a bit.
@riaangrobler3447
@riaangrobler3447 6 ай бұрын
Thank you for the tutorial.. I can get to about 90%. :( , then I get the error when it wants to start the coturn part. >> Error response from daemon: failed to create task for container: failed to create shim task: OCI runtime create failed: runc create failed: unable to start container process: error during container init: open /proc/sys/kernel/domainname: permission denied: unknown. Any Idea pls? I am on proxmox , a lxc container with ubuntu 22.04.04 LTS . I would really like to set this up behind nginx if you can maybe make a tutorial on this? Thank you.
@AwesomeOpenSource
@AwesomeOpenSource 6 ай бұрын
Running docker on LXC can sometimes be a bit tricky. I'd say, just to start see if you can spin up a VM, and do the setup there just to see if it works, then you'll know if it's the Netbird side, or the LXC causing the issue. Also, Wireguard on Proxmos in LXC requires you to set some stuff on the host system so it will all function correctly, or at least I had to do that for the client to run in an LXC container. Do make sure you've enabled nesting in the LXC at the very least.
@cleveh8321
@cleveh8321 10 ай бұрын
Followed your instructions for a self hosted install on Oracle OCI. Everything goes well until it gets to the "Waiting for Zitadel to become ready" part. Then it just prints dots to the screen for like, well ever. It doesn't stop or move on to the next phase of the install. This is the third time I've tried to install on a freshly created Ubuntu VPS. Am I missing a step or does it normally take a few weeks for Zitadel to "become ready"? And thanks for the video/info.
@AwesomeOpenSource
@AwesomeOpenSource 10 ай бұрын
I had a couple of times where it did take a long time, and seemingly never started. No logging showing so hard to tell what happens. But, I just followed their instructions to remove it and tried agaon. Essentially, use CTRL + C to stop the process (may have to do it a few times), then use "docker compose down --volumes" to stop all containers and remove the volumes, then run "rm -f docker-compose.yml Caddyfile zitadel.env dashboard.env machinekey/zitadel-admin-sa.token turnserver.conf management.json" to remove all the files it downloaded and setup, and then I'd just try again. Generally worked fine second time around. Maybe that will help.
@yogeshtiwari8435
@yogeshtiwari8435 10 ай бұрын
Hey Sir, Needed some help i was trying to set that up on my machine inside pfsense firewall network with a public IP. I have pointed the domain as well Where as I managed to setup the netbird as well, as it shows the credential towards where process ends but can't see the dashboard online. When tried with Static IP, it just shows Login Error: User state: Unauthenticated ; Please help!!!!!!1
@AwesomeOpenSource
@AwesomeOpenSource 10 ай бұрын
Are you authenticating with the username and password provided in the terminal when the install finishes? Did you forward all ports as detailed in their documentation?
@MdMozammelHossain
@MdMozammelHossain 8 ай бұрын
Does the self-hosted netbird coordination server is for single-tenancy ?
@AwesomeOpenSource
@AwesomeOpenSource 8 ай бұрын
It can be configured for Single, or multi-tenant. Up to you to decide which. This is a setting in the setup.env file.
@plasticpippo201
@plasticpippo201 10 ай бұрын
how do you handle the tls certificate on the VPS? it kinda poses a security risk to login without a signed certificate in this case, i believe
@AwesomeOpenSource
@AwesomeOpenSource 10 ай бұрын
You can add your own certificate if you wish, it's in their more advanced documentation. Self signed certs aren't inherently risky, because they are your cert. If you are trusting a site you don't know, and who's owner / maintainer you don't know, then trusting their self-signed cert is risky indeed.
@plasticpippo201
@plasticpippo201 10 ай бұрын
@@AwesomeOpenSource thanks so much for your reply! i thought self signed certs were susceptible to man in the middle attacks
@danbrown586
@danbrown586 10 ай бұрын
I just ran through this setup an hour or so ago on an Oracle VPS, and it got a trusted cert--there weren't any cert warnings or other issues. But in principle, a self-signed cert (that you control) is even safer than a publicly-trusted cert, in that you can verify for yourself that it's the right cert. The problem is that very few people do that.
@x1dzero
@x1dzero 8 ай бұрын
The quick install script use specific version of docker container for zitadel:v2.31.3 and cockroach:v22.2.2 and when you update Netbird according to the official doc they will never be updated. What is the best way for this can I update Zitadel safely its almost 7 months old...
@AwesomeOpenSource
@AwesomeOpenSource 8 ай бұрын
You'd have to ask the folks at Netbird about that. Not sure.
@x1dzero
@x1dzero 8 ай бұрын
@@AwesomeOpenSource I updated the container to the latest version of Zitadel and encountered an error during the database update process. To resolve this issue, I had to first update to an older version before proceeding to the latest one. The system is now functioning perfectly, and it's more secure, considering that Zitadel in the QuickStart script is now seven months old.
@gadirlgadirk
@gadirlgadirk 8 ай бұрын
@@x1dzerohow do you do this? i’m not so familiar with docker so idk how or where in the file system to run the commands
@gadirlgadirk
@gadirlgadirk 8 ай бұрын
@@x1dzeroalso, what versions of everything were you on before and then after your updates?
@varodaya
@varodaya 10 ай бұрын
Is it better Than net maker
@AwesomeOpenSource
@AwesomeOpenSource 10 ай бұрын
I answered this before, but I think it's on par with netmaker. The setup is a bit easier, and you get SSO with Zitadel with this one, but functionality -wise, they are really close I think.
@cig_in_mouth3786
@cig_in_mouth3786 10 ай бұрын
Netbird is something like tailscale? Please explain
@AwesomeOpenSource
@AwesomeOpenSource 10 ай бұрын
It is similar in concept, but in my opinion a bit easier to install self hosted, and get SSO setup using Zitadel as part of their installer. So, like Tailscale, but IMO better.
@cig_in_mouth3786
@cig_in_mouth3786 10 ай бұрын
@@AwesomeOpenSource tailscale for personal use and this for team, I will watch again like single computer shared with my team?
@AwesomeOpenSource
@AwesomeOpenSource 10 ай бұрын
This can be for singlue user, or Team. It's up to you how you use it.
@alexandrearruda
@alexandrearruda 9 ай бұрын
@@AwesomeOpenSourceand Netbird have awesome features like groups and ACLs in a very very simple way to configure. Before NB, I used a self-hosted version os Zerotier and it is great too, but ACLs in Netbird is another level. The ideia os the setup-keys ('one-shot' or multiple use) , attaching a host automatically to a group is great.
@eidodoos
@eidodoos 10 ай бұрын
netbird is solution for tailscale
@AwesomeOpenSource
@AwesomeOpenSource 10 ай бұрын
I find Netbird a bit easier for self hosting for sure.
@cicievie
@cicievie 10 ай бұрын
is this similar with tailscale?
@AwesomeOpenSource
@AwesomeOpenSource 10 ай бұрын
Similar to it, but a bit easier in my opinion.
@Richard-kl8wr
@Richard-kl8wr 10 ай бұрын
Does it support LDAP ?
@AwesomeOpenSource
@AwesomeOpenSource 10 ай бұрын
I believe Zitadel does support LDAP. Here's a link to the Zitadel site on configuring LDAP as an identity provider. zitadel.com/docs/guides/integrate/identity-providers/ldap
@Richard-kl8wr
@Richard-kl8wr 10 ай бұрын
@@AwesomeOpenSource Wow thank you :)
@TerenceKearns
@TerenceKearns 6 ай бұрын
3:20 they the opposite of redis
@netputerehasn
@netputerehasn 9 ай бұрын
hello thanks man i have this error root@free:~# netbird up Error: unable to get daemon status: rpc error: code = FailedPrecondition desc = failed while getting Management Service public key: rpc error: code = PermissionDenied desc = unexpected HTTP status code received from server: 403 (Forbidden); transport: received unexpected content-type "text/html; charset=UTF-8"
@AwesomeOpenSource
@AwesomeOpenSource 9 ай бұрын
Maybe you ran it as root, or the Zitadel server didn't come up fast enough? Maybe just do a docker compose down, then docker compose up again and see if that resolves it. It's a forbidden access error.
@ahmadbinali4668
@ahmadbinali4668 10 ай бұрын
First viewer
@AwesomeOpenSource
@AwesomeOpenSource 10 ай бұрын
Glad you're here.
@BangBangBang.
@BangBangBang. 10 ай бұрын
I appreciate your content but you're seemingly an advocate for "Big Cloud" services rolled out by Big Tech- Cloudflare, Digital Ocean, Vultr. $144/year ($12 x 12mos) to host that Netbird instance with Digital Ocean or some budget providers who can do a VPS service with similar specs for $48/year with the upcoming holidays?
@rouchar
@rouchar 10 ай бұрын
So?
@magog6852
@magog6852 10 ай бұрын
@@roucharHe has a point. why build big companies up if youre an “open source advocate”? Do as a i say, not as I do…
@rouchar
@rouchar 10 ай бұрын
@@magog6852 that's not how it works...
@geogmz8277
@geogmz8277 10 ай бұрын
Or get a free ARM instance from Oracle OCI... 😊 I'm running Wireguard in Phoenix Data Center for 2 years now... 4 cores, 24GB of RAM, and 200GB SSD... for free.. (of course nothing is free so privacy isn't something you should expect but I can live with) I only use it to tunnel back home via reverse proxy.
@rouchar
@rouchar 10 ай бұрын
@@magog6852 or have freedom to choose whatever you wanna do. curious how you're going to scale with 3 raspberry pi's
@j_t_eklund
@j_t_eklund 10 ай бұрын
When they monitor and steal all your trafic data, that is free? Also they are breaking EU rules on cookie usage and user choice on their homepage.
@AwesomeOpenSource
@AwesomeOpenSource 10 ай бұрын
If you don't want to use their hosted offering, then you can run it self hosted, as I show in the video. As for the cookies, you can let them know that there's an issue, and I'm sure they'd be happy to update it. I don't think it's a European company, so they may simply not realize they arent compliant with GDPR.
@mrmotofy
@mrmotofy 10 ай бұрын
@@AwesomeOpenSource It's darn hard to make sure one complies with laws in every country haha
@littlepeon
@littlepeon 4 ай бұрын
​@@mrmotofyseems that it is just easier to say that your company is not GDRP complaint and EU users should not use the software!
@Suriprofz
@Suriprofz 3 ай бұрын
Wireguard is alot easier
@AwesomeOpenSource
@AwesomeOpenSource 2 ай бұрын
I think 'easy' is a subjective term. Wireguard solves a problem for a ton of people on its own. Netbird builds on Wireguard to provide a more enterprise level set of features with a GUI that helps a person getings done with relative ease.
@BlueBearOne
@BlueBearOne 2 ай бұрын
So then netbird isn't really a VPN but instead a value add application for the VPN known as wireguard?
@Coksnuss
@Coksnuss 4 ай бұрын
This actually seems more complicated than to simply use wireguard directly😂. In addition it requires alot of dependencies and a fairly potent VPS. I don't see the benefit here.
@AwesomeOpenSource
@AwesomeOpenSource 4 ай бұрын
The benefit is that a lot of olks are better with a GUI. Not strictly a requirement. You can absolutely do all of this in Wireguard with configuration files, but sometimes a control system like this makes it easier.
@fool9111z
@fool9111z 2 ай бұрын
If you have a home server at hime, you can run this in a docker/vm. Minimal cost and investment
@Coksnuss
@Coksnuss 2 ай бұрын
​@@fool9111zI would like to believe that a docker setup isn't trivial because especially in a home-environment you would likely want to configure masquerading (aka NAT) to allow remote access to all of your home network devices. Getting this to run in docker won't work so easily. In addition to that: WireGuard is a native Linux Kernel feature. No need to run this in a docker environment. Using it natively has the least overhead possible.
@fool9111z
@fool9111z 2 ай бұрын
@@Coksnuss you are right. Docker will likely be more complicated than vm due to the network issues
@BlueBearOne
@BlueBearOne 2 ай бұрын
​@@CoksnussI'm new to this and acquiring the hardware necessary so forgive me if this is a stupid question. Isn't it a smart and best practice to have a low power machine on which your firewall and IDS is installed? External to the rest of the system? Is it also a good idea to have two for failover?
@clee79
@clee79 10 ай бұрын
If there are limits to use the software, it's not open source, it's bullshit.
@AwesomeOpenSource
@AwesomeOpenSource 10 ай бұрын
I don't guess I understand where this comment is coming from. The limits are on a hosted plan by Netbird, not the self hosted version. The software is open source, and Licensed with BSD-3.
@RomvnlyPlays
@RomvnlyPlays 9 ай бұрын
Yea it is open source. If I make the source malicious (ie selling your data , extreme telemetry, DRM) itself but you’re free to do as you wish with the program, it is still open source. What you’re thinking about is the term ‘free software’ by the FSF.
@BurkenProductions
@BurkenProductions 10 ай бұрын
You should never have a non root user ffs
@AwesomeOpenSource
@AwesomeOpenSource 10 ай бұрын
Did I say this by mistake? I'm not understanding the comment.
@EvgeniyDev41
@EvgeniyDev41 10 ай бұрын
Russia already blocked the whole wireguard protocol. There is no reason for use this solutions. Teach on our examples. Modern governments can block it in one day.😢
@kenny45532
@kenny45532 10 ай бұрын
I'm curious to know what examples. How do they achieve that level of blocking? Or is it simply banned and not permitted for use?
@EvgeniyDev41
@EvgeniyDev41 10 ай бұрын
@@kenny45532 This works in the DPI method. All providers have equipment installed that analyzes traffic. The whole protocol is blocked, it is physically impossible to connect to any server.
@GrishTech
@GrishTech 10 ай бұрын
Well. It’s going to use turn relay, right? So it should still somewhat work.
@AwesomeOpenSource
@AwesomeOpenSource 10 ай бұрын
Sorry to hear this. It sucks when a government won't allow the citizens the freedom to choose how they communicate securely with others. Maybe someone will come up with a way to bypass it someday.
@vobaboba
@vobaboba 10 ай бұрын
Actually Wireguard does work between peers inside Russia. I am using it every day in my work, and have no problem except shitty Rostelecom routers sometimes refusing to work properly (they brake Wireguard and OpenVPN UDP handshakes until you reboot them). And Netbird does work too. But I didn't test peers outside Russia.
@BurkenProductions
@BurkenProductions 10 ай бұрын
This is BAD , you dont want a third party in managing your vpn.
@AwesomeOpenSource
@AwesomeOpenSource 10 ай бұрын
It's okay to not trust others with your networking, that's why they made it open source, and allow you to run it yourself. But others find value in a cloud hosted offering.
@magog6852
@magog6852 10 ай бұрын
Burken your comments suck. Elaborate on your points like an adult
@w0ode198
@w0ode198 10 ай бұрын
At least when deciding to make a comment, kindly elaborate so it's contains more information. Your comments suck.
@BPL-Whipster
@BPL-Whipster 6 ай бұрын
There are lots of companies that offer this as a service, including companies that open source and companies that don't. For instance, lots of companies pay for zScaler, Azure WAN, and commercial Tailscale or Zerotier for instance.
How Strong is Tin Foil? 💪
00:26
Preston
Рет қаралды 142 МЛН
Офицер, я всё объясню
01:00
История одного вокалиста
Рет қаралды 5 МЛН
哈莉奎因怎么变骷髅了#小丑 #shorts
00:19
好人小丑
Рет қаралды 55 МЛН
Create Your Own Private VPN with Netbird
37:05
Jim's Garage
Рет қаралды 21 М.
All You Need Is An Old Device...
28:13
Jim's Garage
Рет қаралды 17 М.
Getting started with NetBird
9:23
NetBird
Рет қаралды 6 М.
Secure your HomeLab for FREE // Wazuh
33:59
Christian Lempa
Рет қаралды 58 М.
The Open Source Software I use in 2024 - Part 2
31:12
Awesome Open Source
Рет қаралды 71 М.
The Free and Open Source Software I Use in 2024 - Part 1
28:31
Awesome Open Source
Рет қаралды 269 М.
Install a self-hosted VPN platform // Netbird
30:36
Christian Lempa
Рет қаралды 79 М.
How Strong is Tin Foil? 💪
00:26
Preston
Рет қаралды 142 МЛН