Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • World
  • Users
  • Groups
Skins
  • Light
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (No Skin)
  • No Skin
Collapse
Brand Logo

agnos.is Forums

  1. Home
  2. Selfhosted
  3. Friendly reminder that Tailscale is VC-funded and driving towards IPO

Friendly reminder that Tailscale is VC-funded and driving towards IPO

Scheduled Pinned Locked Moved Selfhosted
selfhosted
242 Posts 112 Posters 173 Views
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • B [email protected]

    I never really understood the point of using Tailscale over plain ol' WireGuard. I mean I guess if youve got a dozen+ nodes but I feel like most laymens topologies won't be complex beyond a regular old wireguard config

    possiblylinux127@lemmy.zipP This user is from outside of this forum
    possiblylinux127@lemmy.zipP This user is from outside of this forum
    [email protected]
    wrote last edited by [email protected]
    #211

    Wireguard doesn't do NAT/Firewall traversal nor does it have SSO

    Tailscale manages the underlying Wireguard for you. I would be great if Wireguard had native NAT traversal but that isn't the case.

    1 Reply Last reply
    6
    • P [email protected]

      I didn't really get the allure of it TBH. For most home-based nerds a simple Wireguard host (or OpnSense, OpenWRT etc running such) should be fine, and there are better options for commercial from better-known vendors in the network security space

      possiblylinux127@lemmy.zipP This user is from outside of this forum
      possiblylinux127@lemmy.zipP This user is from outside of this forum
      [email protected]
      wrote last edited by
      #212

      The "well known vendors" tend to be crap especially on a security level

      1 Reply Last reply
      1
      • U [email protected]

        I can't. I tried it first and installed it on my phone from f-droid. After opening it up, it connected to an already existing network with other people's old machines from years ago on it. I was horrified.

        So then I tried to delete my whole account and couldn't due to an error. I sent them an email about it and they took like two weeks to respond.

        possiblylinux127@lemmy.zipP This user is from outside of this forum
        possiblylinux127@lemmy.zipP This user is from outside of this forum
        [email protected]
        wrote last edited by
        #213

        Netbird isn't on F-droid

        Are we talking about the same thing?

        U 1 Reply Last reply
        2
        • K [email protected]

          I can recommend to take a look at netbird.io

          possiblylinux127@lemmy.zipP This user is from outside of this forum
          possiblylinux127@lemmy.zipP This user is from outside of this forum
          [email protected]
          wrote last edited by
          #214

          Much more user friendly

          Json is awful for config

          L 1 Reply Last reply
          1
          • T [email protected]

            Headscale requires tailscale client so it’s a no-go for me. I’m still trying to block cloudflare from my network.

            possiblylinux127@lemmy.zipP This user is from outside of this forum
            possiblylinux127@lemmy.zipP This user is from outside of this forum
            [email protected]
            wrote last edited by
            #215

            Tailscale needs Tailscale to work

            That seems obvious

            1 Reply Last reply
            0
            • Q [email protected]

              I think a lot of companies view their free plan as recruiting/advertising --- if you use TailScale personally and have a great experience then you'll bring in business by advocating for it at work.

              Of course it could go either way, and I don't rely on TailScale (it's my "backup" VPN to my home network)... we'll see, I guess.

              possiblylinux127@lemmy.zipP This user is from outside of this forum
              possiblylinux127@lemmy.zipP This user is from outside of this forum
              [email protected]
              wrote last edited by
              #216

              It also doesn't cost them much of anything

              Positive PR and little draw backs means that everyone is generally pretty happy

              1 Reply Last reply
              1
              • possiblylinux127@lemmy.zipP [email protected]

                Netbird isn't on F-droid

                Are we talking about the same thing?

                U This user is from outside of this forum
                U This user is from outside of this forum
                [email protected]
                wrote last edited by
                #217

                It used to be

                possiblylinux127@lemmy.zipP 1 Reply Last reply
                0
                • U [email protected]

                  It used to be

                  possiblylinux127@lemmy.zipP This user is from outside of this forum
                  possiblylinux127@lemmy.zipP This user is from outside of this forum
                  [email protected]
                  wrote last edited by
                  #218

                  It has never been on F-droid. I've been following the service since it started. It didn't even have a mobile app not that long ago.

                  1 Reply Last reply
                  1
                  • 0 [email protected]

                    Or get something like a rapsberry-pi (second hand or on a sale). I have netbird running on it and I can use it to access my home network and also use it as tunnel my traffic through it.

                    G This user is from outside of this forum
                    G This user is from outside of this forum
                    [email protected]
                    wrote last edited by
                    #219

                    I don’t think that would solve the cgnat issue.
                    I use a vps because I don’t want to pay 250 a month for a starlink routable ip

                    1 Reply Last reply
                    0
                    • M [email protected]

                      CGNAT is for IPv4, the IPv6 network is separate. But if you have IPv6 connectivity on both ends setting up WG is the same as with IPv4.

                      kratoz29@lemm.eeK This user is from outside of this forum
                      kratoz29@lemm.eeK This user is from outside of this forum
                      [email protected]
                      wrote last edited by
                      #220

                      I usually have IPv6 access in my home, on the outside it varies from the ISPs 😕

                      1 Reply Last reply
                      0
                      • T [email protected]

                        Thats just how IPv6 works. You get a delegate address from your ISP for your router and then any device within that gets it own unique address. Considering how large the pool is, all address are unique. No NAT means no port forwarding needed!

                        kratoz29@lemm.eeK This user is from outside of this forum
                        kratoz29@lemm.eeK This user is from outside of this forum
                        [email protected]
                        wrote last edited by
                        #221

                        I guess so, my previous ISP also gave me IPv6 address (I could navigate using it) but I could never access my NAS services with it from an IPv6 ready network, I thought it would be the same with the newer ISP, but nope.

                        Maybe some firewall is active by the ISP? I could not do much thinker back then as I used the stock modem (router) and it was heavily locked.

                        1 Reply Last reply
                        0
                        • L [email protected]

                          I mean is anything iOS really open source?

                          F This user is from outside of this forum
                          F This user is from outside of this forum
                          [email protected]
                          wrote last edited by
                          #222

                          Yes? There are Lemmy clients that are open source, for instance. And the Wireguard client is.

                          1 Reply Last reply
                          0
                          • I [email protected]

                            Yeah, OpenVPN definitely doesn't have light spec requirements 😅 thankfully hardware is unfathomably powerful these days.

                            A This user is from outside of this forum
                            A This user is from outside of this forum
                            [email protected]
                            wrote last edited by
                            #223

                            Sure but wireguards connection is just faster.

                            1 Reply Last reply
                            0
                            • avidamoeba@lemmy.caA [email protected]

                              Corporate VPN startup Tailscale secures $230 million CAD Series C on back of “surprising” growth

                              Pennarun confirmed the company had been approached by potential acquirers, but told BetaKit that the company intends to grow as a private company and work towards an initial public offering (IPO).

                              “Tailscale intends to remain independent and we are on a likely IPO track, although any IPO is several years out,” Pennarun said. “Meanwhile, we have an extremely efficient business model, rapid revenue acceleration, and a long runway that allows us to become profitable when needed, which means we can weather all kinds of economic storms.”

                              Keep that in mind as you ponder whether and when to switch to self-hosting Headscale.

                              P This user is from outside of this forum
                              P This user is from outside of this forum
                              [email protected]
                              wrote last edited by
                              #224

                              become profitable when needed

                              By what, laying off all QA and support staff and half your developers the moment a single quarterly earnings report isn't spotlessly gilded?

                              1 Reply Last reply
                              5
                              • B [email protected]

                                I never really understood the point of using Tailscale over plain ol' WireGuard. I mean I guess if youve got a dozen+ nodes but I feel like most laymens topologies won't be complex beyond a regular old wireguard config

                                J This user is from outside of this forum
                                J This user is from outside of this forum
                                [email protected]
                                wrote last edited by
                                #225

                                NAT punching and proxying when a p2p connection between any 2 nodes cannot be achieved. It’s a world of difference with mobile devices when they always see each other, all the time. However, headscale does all that.

                                1 Reply Last reply
                                4
                                • M [email protected]

                                  Why does it need to be on a VPS? It seems to work on a home network when I played around with it.

                                  nfreak@lemmy.mlN This user is from outside of this forum
                                  nfreak@lemmy.mlN This user is from outside of this forum
                                  [email protected]
                                  wrote last edited by
                                  #226

                                  Well a VPS or an exposed service, but I feel like the latter ends up somewhat defeating the purpose anyway.

                                  When running locally (not exposed), it worked great until I tried to make the initial connection from mobile data - can't establish a connection to headscale if it can't reach it in the first place. Unless I'm mistaken, the headscale service needs to be publicly accessible in some way.

                                  M 1 Reply Last reply
                                  0
                                  • C [email protected]

                                    Chances are you've had the same public IP for a long time. Mine hasn't changed in 2 years.

                                    V This user is from outside of this forum
                                    V This user is from outside of this forum
                                    [email protected]
                                    wrote last edited by
                                    #227

                                    That was the case when I lived with my parents, but now it changes every 5 minutes sadly.

                                    So I had to shut down my Minecraft server etc for now because I am on a 5G modem which makes it really annoying to open up ports and point a domain to your IP

                                    loudwaterenjoyer@lemmy.dbzer0.comL 1 Reply Last reply
                                    0
                                    • H [email protected]

                                      I'm unsure if it has been mentioned, but a similar tool which is open source (you can run the backend unlike tailscale), netbird

                                      https://netbird.io/

                                      S This user is from outside of this forum
                                      S This user is from outside of this forum
                                      [email protected]
                                      wrote last edited by
                                      #228

                                      Is there an issue with Netbird's servers at the moment? In my testing devices are connected and reach eachother, but the web admin is missing a lot of functionality compared to what's in the docs. The peer devices section is there, but everything else, user settings, rules etc, isn't showing/says I don't have admin permission (of my own account.. Lol?)

                                      H 1 Reply Last reply
                                      1
                                      • F [email protected]

                                        Would you rather a difficult and hard to use program?

                                        Easy to use means people will want to adopt it, and that's what VC companies want. Nobody wants to pay millions of dollars to make a program that nobody wants to use.

                                        mobotsar@sh.itjust.worksM This user is from outside of this forum
                                        mobotsar@sh.itjust.worksM This user is from outside of this forum
                                        [email protected]
                                        wrote last edited by
                                        #229

                                        would you rather ...

                                        If it means no VC, yes, without a doubt. That's kind of the point.

                                        1 Reply Last reply
                                        1
                                        • S [email protected]

                                          Is there an issue with Netbird's servers at the moment? In my testing devices are connected and reach eachother, but the web admin is missing a lot of functionality compared to what's in the docs. The peer devices section is there, but everything else, user settings, rules etc, isn't showing/says I don't have admin permission (of my own account.. Lol?)

                                          H This user is from outside of this forum
                                          H This user is from outside of this forum
                                          [email protected]
                                          wrote last edited by
                                          #230

                                          Honestly, no idea, worth checking their GitHub etc or their status pages if they have any

                                          1 Reply Last reply
                                          0
                                          Reply
                                          • Reply as topic
                                          Log in to reply
                                          • Oldest to Newest
                                          • Newest to Oldest
                                          • Most Votes


                                          • Login

                                          • Login or register to search.
                                          • First post
                                            Last post
                                          0
                                          • Categories
                                          • Recent
                                          • Tags
                                          • Popular
                                          • World
                                          • Users
                                          • Groups