How Tailscale Makes Managing Wireguard Easy

  Рет қаралды 81,487

Lawrence Systems

Lawrence Systems

Күн бұрын

Пікірлер: 62
@LAWRENCESYSTEMS
@LAWRENCESYSTEMS 3 жыл бұрын
How Tailscale Works tailscale.com/blog/how-tailscale-works/ How NAT traversal works tailscale.com/blog/how-nat-traversal-works/ Tailscale VS Zerotier kzbin.info/www/bejne/onLLdWWAebt6Zpo How To Build Your Own Wireguard VPN Server in The Cloud kzbin.info/www/bejne/baqmXpqAqdFso7M Nebula Review kzbin.info/www/bejne/b2Wuioieiq5kfZI ZeroTier Review kzbin.info/www/bejne/eJ3Ch5SrbdynncU Getting Started With The Open Source & Free Diagram tool Diagrams.NET kzbin.info/www/bejne/hmTMlougfpyNic0 Headscale:An open source, self-hosted implementation of the Tailscale coordination server. github.com/juanfont/headscale ⏱ Timestamps ⏱ 00:00 Tailscale Review 01:49 How Tailscale Works 04:52 Tailscale Pricing 05:25 Identity Management 06:34 Supported Clients 07:21 Dashboard 10:00 Tailscale Lab Test 20:15 Final Thoughts and Security
@VTOLfreak
@VTOLfreak 3 жыл бұрын
I signed up for the personal pro plan after watching your videos. $48 a year for 100 clients is cheap enough that I'm not going to bother rolling my own. The best part of it is how easy it handles DNS. I have a pihole VM running and you can install tailscale on it and set it as the nameserver for all the tailscale clients. Combine this with a subnet relay into my LAN and I can reach every device by name without worrying about split DNS.
@KingNova23
@KingNova23 3 жыл бұрын
Not all Heros wear capes, thanks again Lawrence Systems!
@Vikingza
@Vikingza 3 жыл бұрын
Thank you for making the video, could you please look into doing a video on how to link Edge Routers using Tailscale. Thank you in advance.
@IAmChrisAMA
@IAmChrisAMA 3 жыл бұрын
Awesome tutorial. I used your guide to setup pfSense a while back and it worked without a hitch. I'm planning on setting up a Terminal Server for a club a school and was wondering on the best solution for setting up VPN for just access to that server and nothing else on the network. And that terminal server shouldn't have access to other network interfaces and so on. Will Tailscale help with this or is there another guide that can help me go through with this?
@angrynerd2103
@angrynerd2103 3 жыл бұрын
I switched to zerotier from hamachi a while back because it was easier, better supported, and had a much friendlier speed cap. Now i mostly use a manual wireguard server but this still looks very interesting.
@eointhomas2914
@eointhomas2914 Жыл бұрын
Thanks Tom, I have setup Zerotier and Tailscale for a customer who is behind an ISP Router that cannot be bridged so it is behind double NAT and this allows for remote users to connect to file server, thank you
@JPEaglesandKatz
@JPEaglesandKatz 2 жыл бұрын
Never heard of Tailscale before but did try zerotier after your video... Setting up Tailscale is a breeze.. Seems to work great.. I cannot get it over 30mb/s either btw... maybe that is a hard cap on their end?? Thanks a lot for bringing this sollution to my attention!! :)
@theblendertree7216
@theblendertree7216 3 жыл бұрын
Thanks for making a video on this!
@Miles-Oldenburger
@Miles-Oldenburger 2 жыл бұрын
I fucking love tailscale
@BigHeadClan
@BigHeadClan Жыл бұрын
Thanks for the demo sir! We started using these at our office to manage our backup solutions across our various clients and wanted to learn a bit more how it operates.
@vasquezmi
@vasquezmi Жыл бұрын
Interesting. Just thinking through this solution and of course risk appetite. With the dynamic ability of it to traverse the trusted network we could potentially have risk if a threat actor was able to manage the TS environment and a network / security admin was working to secure the network. Are there "kill switch" options? Referencing discussion around 12 minutes.
@rdsmith24
@rdsmith24 3 жыл бұрын
Great demo for a business user, what about the average Joe who just wants VPN back to their home LAN through laptops, phones and tablets.
@LAWRENCESYSTEMS
@LAWRENCESYSTEMS 3 жыл бұрын
Seems like an ideal fit for the average person.
@ZoraciousDCree
@ZoraciousDCree 3 жыл бұрын
@@LAWRENCESYSTEMS As a person who is below the average person's understanding of IP networking, especially stuff about OSI layers and how they work, it's going to take me a couple weeks to wrap my head around this. I'm roughly 3 years behind the innovative curve.
@bmbiz
@bmbiz 2 жыл бұрын
@@ZoraciousDCree How about now? ;)
@pepeshopping
@pepeshopping 3 жыл бұрын
“Oh I don’t know, check the documentation”, but you do RECOMMEND IT eh?
@LAWRENCESYSTEMS
@LAWRENCESYSTEMS 3 жыл бұрын
¯\_(ツ)_/¯
@HisLoveArmy
@HisLoveArmy Жыл бұрын
Do you think this is "safer / more secure" than hosting your own openvpn server (and keeping it up to date, using a PSK) to then RDP into boxes? I know there are some unknows in this question but ya thought I would ask anyway
@bensavage6389
@bensavage6389 Жыл бұрын
yo lawrence, can you mention in a video how you can figure PF sense to automatically kill the state? when I modify my firewall rules to block traffic I want my states to be updated so that traffic stops immediately! I was able to achieve this by using squid proxy and manually disabling the service, but I would do it in an automated fashion. as you know lawrence, squid proxy introduces a host of new problems. please please share this in one of your videos I need to figure out the secret recipe
@hamhumtube
@hamhumtube 3 жыл бұрын
There was a video that you mention closing your business and go for KZbin only. Please don’t do that. What makes this channel one of the unique ones is you being in the actual battle field. Your thoughts matter because you are not just a random guy who is reading some tutorial and showing those on VM environment. Continue you business please. And if you quit who is going to insult the networks. :)
@LAWRENCESYSTEMS
@LAWRENCESYSTEMS 3 жыл бұрын
I am not closing the business, but going to spend more time creating content and insulting networks.
@TerryPullen
@TerryPullen Жыл бұрын
@@LAWRENCESYSTEMS "Insulting networks" 😛
@TiagoJoaoSilva
@TiagoJoaoSilva 3 жыл бұрын
Is it self-hostable on a VPS or a droplet? No? If you can leave Wireguard behind, there's Nebula.
@fr3fou
@fr3fou 2 жыл бұрын
headscale is a thing
@Shinta0SaINt
@Shinta0SaINt 3 жыл бұрын
Hey Tom, thanks again for awesome tutorial, please do an updated complete version of WireGuard when you get a chance sir, Regards Shane from Trinidad 🇹🇹
@LAWRENCESYSTEMS
@LAWRENCESYSTEMS 3 жыл бұрын
kzbin.info/www/bejne/baqmXpqAqdFso7M
@Shinta0SaINt
@Shinta0SaINt 3 жыл бұрын
@@LAWRENCESYSTEMS Thank you, much appreciated sir, I was under the impression with the recent changes to wireguard in pfsense, 'that' initial tutorial was going to be updated to reflect the changes. I will rereview accordingly. Thanks again for your time, and kind guidance to the community. Take care and be safe! regards, Shane.
@ScorpioHR
@ScorpioHR Жыл бұрын
That's some awesome t-shirt, sir!!
@Packetowl
@Packetowl 3 жыл бұрын
This is really cool. Now I can LAN Party CS:GO with my friends sitting in a different city 😄. Free Account is more than enough to cover 10 System 😋
@LAWRENCESYSTEMS
@LAWRENCESYSTEMS 3 жыл бұрын
😎
@markloughtonUK
@markloughtonUK 3 жыл бұрын
Are the slower speeds because it's a Free account ?
@LAWRENCESYSTEMS
@LAWRENCESYSTEMS 3 жыл бұрын
Not that I could find in the docs
@kittysreview9055
@kittysreview9055 3 жыл бұрын
It’s because they use the Go implementation. If you check their github source, you will see that. Go is hampered by constant context switching since it resides in user space. Also, there is no x86 based vector acceleration or leveraging of SSE or AVX instruction sets in the user space implementation.
@ierosgr
@ierosgr 3 жыл бұрын
Does Tails eliminates the need for the user to be admin in the machine in order to run the client?
@mateusjunior1937
@mateusjunior1937 3 жыл бұрын
Hi Lawrence, thanx for this video, i'm wondering, if you have some info on open source SDWAN project ?
@LAWRENCESYSTEMS
@LAWRENCESYSTEMS 3 жыл бұрын
Did you watch the video? I mention Headscale and Zerotier.
@mateusjunior1937
@mateusjunior1937 3 жыл бұрын
@@LAWRENCESYSTEMS i mean sdwan like an aggregator , or path selection for mpls links and vpn, something like riverbed or silverpeak
@LAWRENCESYSTEMS
@LAWRENCESYSTEMS 3 жыл бұрын
@@mateusjunior1937 zerotier.atlassian.net/wiki/spaces/SD/pages/568459265/Multipath
@jjaard
@jjaard 2 жыл бұрын
Looks like Tailscale kind of worldwide router 😂
@alurma
@alurma 2 жыл бұрын
Awesome video! Thanks
@JanVokas
@JanVokas 3 жыл бұрын
Just small note - NAT is not a firewall! You mentioned this couple of times during the video.
@LAWRENCESYSTEMS
@LAWRENCESYSTEMS 3 жыл бұрын
Correct, but most SMB firewalls also do NAT.
@bensavage6389
@bensavage6389 Жыл бұрын
has teen scale essentially become the toolkit for bot networks? it's all open sourced, including the open source version of the server. what's to stop the software rebundled into a cloaking layer and repurposed as a private botnet? trouble on the horizon brothers! can Wiregaurd and or tail scale the sniffed on the network so it can be detected?
@LAWRENCESYSTEMS
@LAWRENCESYSTEMS Жыл бұрын
Like any connection it can be watched and people should have proper end point monitoring so they know what is on their systems.
@bensavage6389
@bensavage6389 Жыл бұрын
@@LAWRENCESYSTEMS Tom, I think this would be a good topic for one of your live shows, and you can then expand on different types of endpoint monitoring systems. just an idea, keep doing what you're doing rock on buddy!
@blazetechstuff
@blazetechstuff Жыл бұрын
this works good in China. like china to china ip address where port forwarding is impossible*.
@wambo4348
@wambo4348 3 жыл бұрын
I think you should consider also uploading your content on LBRY
@LAWRENCESYSTEMS
@LAWRENCESYSTEMS 3 жыл бұрын
forums.lawrencesystems.com/t/will-you-join-odysee-com/9270
@2gnospam
@2gnospam 3 жыл бұрын
How does tailscale compare with openVPN for a small number of servers?
@LAWRENCESYSTEMS
@LAWRENCESYSTEMS 3 жыл бұрын
Very different solution
@voiceoftreason1760
@voiceoftreason1760 2 жыл бұрын
Is there an open source alternative?
@LAWRENCESYSTEMS
@LAWRENCESYSTEMS 2 жыл бұрын
Their client is open source but the controller management is not.
@fbifido2
@fbifido2 2 жыл бұрын
I am a little late to this party, but two questions: 1. Did you find out why your speed over tailscale was so slow? 2. how to say this: - Can we make it so that each node can only connect to a define list of nodes ? or - How can we create a list of servers, that every node can access, but not let the nodes access each other ???
@LAWRENCESYSTEMS
@LAWRENCESYSTEMS 2 жыл бұрын
Not sure on the speed and Tailscale has a firewall rule system to control access.
@sberry25
@sberry25 3 жыл бұрын
What about Netmaker?
@LAWRENCESYSTEMS
@LAWRENCESYSTEMS 3 жыл бұрын
¯\_(ツ)_/¯
@voiceoftreason1760
@voiceoftreason1760 2 жыл бұрын
The SSPL seems a troublesome license
Tailscale VS Zerotier
25:33
Lawrence Systems
Рет қаралды 127 М.
How to Setup The Tailscale VPN and Routing on pfsense
17:10
Lawrence Systems
Рет қаралды 86 М.
РОДИТЕЛИ НА ШКОЛЬНОМ ПРАЗДНИКЕ
01:00
SIDELNIKOVVV
Рет қаралды 3 МЛН
From Small To Giant Pop Corn #katebrush #funny #shorts
00:17
Kate Brush
Рет қаралды 72 МЛН
小天使和小丑太会演了!#小丑#天使#家庭#搞笑
00:25
家庭搞笑日记
Рет қаралды 36 МЛН
What's ACTUALLY running in my Homelab?
19:21
Hardware Haven
Рет қаралды 196 М.
FINALLY! A Better Way To Restore Leather
19:49
Wranglerstar
Рет қаралды 175 М.
Serve and Funnel | Tailscale Explained
6:22
Tailscale
Рет қаралды 21 М.
But how does bitcoin actually work?
25:16
3Blue1Brown
Рет қаралды 15 МЛН
Syncthing Tutorial: Open Source & Private File Sync Made Simple
29:59
Lawrence Systems
Рет қаралды 62 М.
Negative Time is Real, Physicists Confirm. Kind Of.
6:59
Sabine Hossenfelder
Рет қаралды 99 М.
РОДИТЕЛИ НА ШКОЛЬНОМ ПРАЗДНИКЕ
01:00
SIDELNIKOVVV
Рет қаралды 3 МЛН