Zerotier Tutorial: Delivering the Capabilities of VPN, SDN, and SD-WAN via an Open Source System

Поделиться
HTML-код
  • Опубликовано: 4 авг 2024
  • Amazon Affiliate Store
    ➡️ www.amazon.com/shop/lawrences...
    Gear we used on Kit (affiliate Links)
    ➡️ kit.co/lawrencesystems
    Try ITProTV free of charge and get 30% off!
    ➡️ go.itpro.tv/lts
    Use OfferCode LTSERVICES to get 5% off your order at
    ➡️ lawrence.video/techsupplydirect
    Tesla Referral Program Offer
    🚘 www.tesla.com/referral/thomas...
    Lawrence Systems Shirts and Swag
    👕 teespring.com/stores/lawrence...
    Digital Ocean Offer Code
    ➡️ m.do.co/c/85de8d181725
    HostiFi UniFi Cloud Hosting Service
    ➡️ hostifi.net/?via=lawrencesystems
    Protect you privacy with a VPN from Private Internet Access
    ➡️ www.privateinternetaccess.com...
    Google Fi Service Referral Code
    📱g.co/fi/r/TA02XR
    More Of Our Affiliates that help us out and can get you discounts!
    ➡️ www.lawrencesystems.com/partn...
    Twitter
    🐦 / tomlawrencetech
    Patreon
    🔗 / lawrencesystems
    Our Forums
    🔗 forums.lawrencesystems.com/
    GitHub
    🔗 github.com/lawrencesystems/
    Discord
    🔗 / discord
    Our Web Site
    🔗 www.lawrencesystems.com/
    PIA Internet Access Affiliates Link
    www.privateinternetaccess.com...
    www.zerotier.com/
    Diagrams were done with
    www.yworks.com/products/yed
    My Command Prompt setup is on GitHub
    github.com/lawrencesystems/do...
  • НаукаНаука

Комментарии • 162

  • @newmfat
    @newmfat 2 года назад +3

    This was wonderful. As a regular user I had tried several times to understand what ZT actually was with no luck. Your way of teaching this was awesome.

  • @fairsitetechnologies9813
    @fairsitetechnologies9813 5 лет назад +6

    Just when I thought I had reached the end of the internet, Tom shows up with open source SD-WAN - BRILLIANT!

  • @knonf42
    @knonf42 5 лет назад +20

    ZeroTier is really awesome. I use it to backup data from my main synology nas to an offsite synology nas. It runns now without any issue for about six or seven months.

  • @adamking8030
    @adamking8030 5 лет назад +1

    This video was fantastic. An excellent overview of the product that really helped to ease any fear I had of implementing this at work. Keep up the great work!

  • @markarca6360
    @markarca6360 4 года назад +2

    I did install ZeroTier on both my two PCs and RDP'ed the "server" (one of the PCs I designated as a server), and it worked flawlessly.

  • @MrRedstonefreedom
    @MrRedstonefreedom Год назад

    Very very very good stuff. Huge fan of the depth-level of this video. Very accessible.

  • @elguevo3586
    @elguevo3586 5 лет назад

    Great information! I cant believe this service has gone under my radar for so long!

  • @ParrhesiaJoe
    @ParrhesiaJoe 4 года назад +8

    Informative, concise and straightforward.

  • @ti4go
    @ti4go 5 лет назад +1

    Omg! Ty!! Installed on my servers :D now can watch my videos from anywhere

  • @jim7smith
    @jim7smith 3 года назад

    Wow! Like you, Tom.... I cannot believe I did not see this before now. I am anxious to see if this will solve my problems of needing stuff from my desktop when I am not in the same room or even the same house

  • @SeanGrimes
    @SeanGrimes 5 лет назад +12

    I'd love to see a review/setup with the pfsense package! Your channel is so informative and I've been sparked by innovation in my homelab and at work by your videos. Thanks!

    • @michaelperugini4199
      @michaelperugini4199 2 года назад

      pfsense is a nightmare IMO, from a newly firewall guy, currently on sonicwall trying to find a replacement, we feel pfsense is not a drop in replacement.

  • @markmcnamee6390
    @markmcnamee6390 5 лет назад +5

    Hi Tom, another great video thank you! A follow up, or perhaps one for the how they got hacked series...securing this, and preventing backdoors using zero tier. Guess as long as endpoint security is tight, but what about BYOD networks? Best explanation that I’ve seen of exact benefits of SD-WAN though!

  • @token112
    @token112 5 лет назад

    This video helped me understand sdwan so much better.

  • @robmccord9407
    @robmccord9407 3 года назад

    Thanks for all the info! Excellent video.

  • @johnnybegood8049
    @johnnybegood8049 5 лет назад +1

    That's another awesome video here. Thanks for sharing!

  • @nngabriel2
    @nngabriel2 5 лет назад

    Very nice video. Looks awesome and also open source. Thanks for sharing.

  • @motojoe8465
    @motojoe8465 5 лет назад

    Thanks for your videos Tom. I learn a lot from it and I wish I can start a company like yours.

  • @assgex
    @assgex 4 года назад +3

    Damn... I never heared of that and it is awesome! Thanks for sharing this!

  • @guillaumemigas
    @guillaumemigas 4 года назад

    Thank you. Very nice review here . I was looking for a replacement of Hamachi and I have found it with some very well detailed explanations .

  • @droknron
    @droknron 5 лет назад

    This is really excellent software that I hadn't heard of before, thank you for bringing attention to it as I really have some great use cases for this.

  • @Reaver76
    @Reaver76 5 лет назад

    Thanks a lot for this video. This will help me a lot.

  • @vgamesx1
    @vgamesx1 5 лет назад +1

    Thanks for sharing this pretty cool.

  • @Harry_Bl44346
    @Harry_Bl44346 3 года назад

    great clear video! awesome product from zerotier

  • @VBIEDdriver
    @VBIEDdriver 3 года назад +1

    Freaking awesome tutorial. Thank you as always for sharing your knowledge with us all 😀

  • @gjkrisa
    @gjkrisa 3 года назад

    Thank you so much I’ve been wanting something like this so bad but don’t remember what for now

  • @jaylacroix2108
    @jaylacroix2108 5 лет назад

    Awesome! I’m going to have to try this 😀

  • @thomascasey8171
    @thomascasey8171 5 лет назад +1

    Great explanation and demo of Zerotier. Been meaning to look into this. Full-mesh network any-to-any, the possibility of setting up your own planet server, can create multiple Zerotier interfaces (perhaps we can use 'ZTI)' to connect to multiple networks, central console, and the possibility to control flows. Need to find out if it is possible to route other networks through a single ZTI, my guess is it would be.

  • @user-qj9wv5ed9k
    @user-qj9wv5ed9k 4 года назад

    це магія!!! дякую!

  • @dbeko07
    @dbeko07 5 лет назад +16

    Would you consider creating a video to set this up for a site-to-site between two PfSense or Opnsense routers? Thanks.

  • @metinik8528
    @metinik8528 4 года назад

    awesome dea , nice explanation

  • @PileofKyle
    @PileofKyle 5 лет назад

    This is awesome!

  • @SomeGuyInSandy
    @SomeGuyInSandy 5 лет назад +1

    It looks a lot like VoIP "hairpinning", in regards to connecting clients directly together. I currently use OpenVPN, and don't really "need" this, but from a network maintenance perspective it could be useful to have an "always on" SSL encrypted path back to the office. Definitely worth a look, thanks!

  • @stevecarile6369
    @stevecarile6369 4 года назад +4

    ZeroTier is absolutely fantastic, 50 endpoint's configured with access rule's, traffic inspection setup using TEE, run your own moon using a Docker command in about 30 seconds, it's speed limit seems to be around 500MPBS which is more than enough, stable, can jump around on IP's, and OPEN SOURCE!

    • @manuelludwig5535
      @manuelludwig5535 2 года назад

      @Steve - what is this TEE tool you talk about?

    • @stevecarile6369
      @stevecarile6369 2 года назад

      @Manuel Ludwig my comment keeps getting deleted my friend im not sure why, search Google for advanced zerotier network rule set on github, in the rules it shows you the tee rule. This copies all traffic for all and sends it to whoever you specify...great for IDS and packet capturing.

  • @JohnKirk
    @JohnKirk 5 лет назад +4

    From the perspective of an MSP I think this would be amazing. Right now we have to setup a VPN on a lot of different devices and types of devices. It seems like this would allow us to manage those connections from a single user interface and save a lot of resources if clients want to connect. A level 1 help desk could do this instead of a level 3 at the request of a client. I agree with comments about personal devices though. Those devices would have to pass a security audit before being able to join and the client would have to sign a waiver.

    • @bryanyerk9911
      @bryanyerk9911 5 лет назад +1

      Have your thoughts on this matter matured? I just watched the video and I was thinking the same thing, it's almost too good to be true.

  • @mathesonstep
    @mathesonstep 5 лет назад

    This is so cool!!!

  • @markalmada9662
    @markalmada9662 5 лет назад

    Hi Tom,
    Started using open tier for 2 customers and I have to say it been fantastic. Thanks buddy.

  • @mspencerl87
    @mspencerl87 4 года назад +1

    I use the hell out of this.
    Even have it installed on my OPNsense router
    so I don't have to have the client on all my devices behind LAN
    Bridged :)

  • @user-ib5wo6mt1c
    @user-ib5wo6mt1c 5 лет назад

    شكراً لكم

  • @phamxhoang
    @phamxhoang 5 лет назад

    awsome,thank you

  • @Itay1787
    @Itay1787 5 лет назад

    looks amazing

  • @mysticsilent
    @mysticsilent 5 лет назад

    Great video! thanks didnt know about this:)

    • @mysticsilent
      @mysticsilent 5 лет назад

      Tom, how did you manage to get the nested PFsense to work with OneTier? I've tried this on my home lab and production network. It works with all my devices, but not really that great with my clients behind my second pfsense firewall. The second firewall is connected to the first PFsense which is the internet facing firewall. Everything works well for clients who are on public spaces or inside my production network. Only my lab environment will not connect great (ping loss).

  • @BenPike
    @BenPike 5 лет назад +88

    Ohhh so it's basically a free open source version of Hamachi! Wow... Remember Hamachi?

    • @stamatisxalandreos6931
      @stamatisxalandreos6931 5 лет назад +7

      Exactly! Hope it won't go the same way Hamachi did 😜

    • @vgamesx1
      @vgamesx1 5 лет назад +3

      Dang, it was so long ago the last time I ever used or even heard of that thing, now I kinda want someone to make a GUI for Zerotier similar to the one old Hamachi had, mainly just for the nostalgia, that'd be nice.

    • @inafusabi
      @inafusabi 5 лет назад +4

      No, this is a SAN layered over the internet, punching holes where you need it to. You define routing, gateways and everything of a SAN through it

    • @GarySchiltz
      @GarySchiltz 5 лет назад +6

      Hamachi was okay at times, even after Logmein took them over. But in the situations where I've tried them both, Zerotier has been able to make direct connections where Hamachi had to relay.

    • @kecius
      @kecius 5 лет назад +3

      This was my first thought when he started to explain this.

  • @jordig3412
    @jordig3412 3 года назад

    thx for the video :-)

  • @CaptZenPetabyte
    @CaptZenPetabyte 3 года назад

    This system would be perfect for off-site back-up systems!

  • @jrnmadsen2710
    @jrnmadsen2710 5 лет назад

    Fantastic ...

  • @francoisdarmon2626
    @francoisdarmon2626 2 года назад

    Hi Tom, Nice presentation. Since you made Digitalocean a host in Zerotier network, can you manage your UniFi APs telling them that their Digitalocean Controller is now reachable and can be adopted using Zerotier lan ip address instead ? Thanks for your reply.

  • @mithubopensourcelab482
    @mithubopensourcelab482 5 лет назад +2

    Hi Tom, excellent video. Thumps up. Your work is great indeed.
    I have a small query. Will zerotier works on Freenas as well. I wanted to have backup freenas on a different location to replicate my office Freenas.

    • @markarca6360
      @markarca6360 4 года назад

      What about using rsync over the ZeroTier virtual interface???

  • @peteriches1008
    @peteriches1008 5 лет назад

    Great info relayed in an easy understandable format, keep up the good work, it's very much appreciated. I like the idea of the simplicity of Zerotier but there is no mention of the complexity of introducing multiple gateways on a client and then the extra routing required for applications etc ?...you don't have this issue with a straight forward VPN. ?

    • @LAWRENCESYSTEMS
      @LAWRENCESYSTEMS  5 лет назад +2

      Zerotier is designed to install on each node you want connected therefore routing would not be needed. But it is supported and can do routing and they have work instructions on how to do that.

  • @PopularWebz
    @PopularWebz 4 года назад +3

    I've tried zerotier and it is rather slick, especially being essentially zero config. There are some issues though:
    1. Constant Chatter. Due to using UDP whole punching to traverse NAT, keepalive packets are always sent. About 22MB a day which could be a problem for IOT LTE devices. It also means poor battery life on mobile.
    2. Connections get dropped. Around 20%of my ping packets get dropped.
    3. Constant background connections to root servers. Stopping the Mac menubar app doesn't shut down the interface. These connections exist to keep it warm.
    3. VPN is simple. If you just need to log in to your network from the road, I'd recommend VPN for now.
    4. Zerotier is really good if you don't have access or control over the router/NAT or you want to connect two mobile devices.

    • @gtn1994
      @gtn1994 2 года назад

      Curious if you have used Tailscale, or have an update on Zerotier since posting this comment? I was looking into implementing Zerotier in my home network, and came across tailscale and it sounds very interesting to me.

    • @PopularWebz
      @PopularWebz 2 года назад

      @@gtn1994 Have used tailscale and many wireguard tools. Right now I exclusively use ZeroTier mainly because it is the simplest. Tailscale didn't perform as well last time I used it. I don't push a lot of data through the links nor use mesh VPNs on Android/iOS devices. I hope to evaluate the different options when I find the time. I'll just say stay away from Nebula for now, it doesn't handle complex NATs yet.

  • @ivancabrera4555
    @ivancabrera4555 5 лет назад

    Nice video! can you make a video showing how to set rules ?

  • @hereenghou
    @hereenghou 5 лет назад

    as I have no clue about the technicality of this, jz wondering..can I use this to make the game connection faster. I always did wonder what the things to look at when configuring my network.

  • @williamshenk7940
    @williamshenk7940 3 года назад +2

    Excellent tutorial, I learned about this product here first.

  • @RichardBuckerCodes
    @RichardBuckerCodes 5 лет назад +1

    Since this "service" passes some or even all traffic thru the "planet" mothership...how can you be assured that the content is secure? Also since you mention "SDWAN" how resilient are their planet server(s)? And if I wanted to deploy my own MOON server is there a dependency on the planet or is the moon server strictly part of a self contained constellation?

  • @nutflixserver9146
    @nutflixserver9146 4 года назад +1

    how does zerotier integrate network logins and file shares?

  • @CAHOP2401
    @CAHOP2401 5 лет назад +1

    I've been wanting to setup some OPNSense boxes with Zerotier clients and then run OSPF between them to setup a DMVPN type of alternative and see how the performance is. Has anyone had any experience with this?

  • @manojmalviya8513
    @manojmalviya8513 4 года назад

    is there any way to bridge to local network adapter to zero tier adapter so we can access our local resources just like vpn?

  • @hothardwarehive1526
    @hothardwarehive1526 5 лет назад +4

    Powerful, but also scary. OMG, this creates a huge security hole for any networks as soon as any devices (with Internet access) behind the periphery fence have this installed and connected to that external network. I don't know what to think of this.

    • @sgtxwafflex603
      @sgtxwafflex603 5 лет назад +1

      it sounds like it would, but it would be just as hard as cracking into a site-to-site. theoretically possible but you need to be insanely precise

    • @DialM4Microcontrollr
      @DialM4Microcontrollr 5 лет назад +1

      Agreed. Although i could see this as a great tool for me / what if an end user sets this up between home and his work computer? And the home computer is not secure?

    • @sgtxwafflex603
      @sgtxwafflex603 5 лет назад +1

      well, a personal computer connected to a business network in general is a no-no. especially in this config, since it is an actual SD-WAN, not just a VPN. meaning EVERY site has the potential to be connected. I wouldn't be too happy to find a personal computer connected to our VPN, neither would our vendors (:

  • @hdinh88
    @hdinh88 4 года назад

    Nebula which Slack open sourced is worth looking at as well

  • @truthontech
    @truthontech 3 года назад

    Tom, can't thank you enough for this video. Nearly locked myself into a 2 year SDWAN contract for management of my network. Is there somewhere we can donate to your channel? Can't sit in my chair right now!

    • @LAWRENCESYSTEMS
      @LAWRENCESYSTEMS  3 года назад

      You can throw 💸money 💸 at me here www.paypal.me/lawrencesystems

  • @richardmekolichick4326
    @richardmekolichick4326 3 года назад

    I wish to preconfigure a UDP-PRO for my brother's home network so it can be as much plug and play as it can be. Then I want to remotely configure it. I also need to put a copy of the existing (on a PC at his location) Unifi config on it. Can ZeroTier be used to accomplish this?

  • @pr0jectSkyneT
    @pr0jectSkyneT 4 года назад +2

    Can you please make a tutorial on how to make a ZeroTier Moon Root Sever on Linux or FreeNAS.

  • @Anavllama
    @Anavllama 2 года назад

    Well is there a way to get a client or a subnet attached to a router (lan side) which is on my ZT network to be forwarded through ZT to another router (client router to server router) which is also on my ZT network, and then out the internet of the server router. I am trying to mimmick what I do through wireguard. Same concept (wireguard not on the client PC itself) . Then if possible want to compare the speed/throughput between them.

  • @EmilePolka
    @EmilePolka 4 года назад +1

    I wish pfsense would already have this part of their package.

  • @tyronemiles4345
    @tyronemiles4345 4 года назад

    Sir, where is the plug-in located?

  • @lespederson4118
    @lespederson4118 2 года назад

    does anyone know if this will work behind a CGNAT ISP

  • @markarca6360
    @markarca6360 5 лет назад +8

    OPNsense have a plugin for Zerotier.

    • @rudiservo
      @rudiservo 3 года назад

      also you can install on unifi edgerouter X but it's quite slow, has a redundant site-to-site vpn with ospf is a good setup, although with upgrades it will unistall zerotier.

  • @regchan
    @regchan 5 лет назад

    any help setting one up for free i looked at source code but not sure what to do there is no you tube videos on this any help would be appreciated

  • @andrericardo6992
    @andrericardo6992 Год назад

    Hello, thanks for the video, I didn't know about Zerotier and I'm going to try it out. But I was curious about the software you used for network diagramming. What is the name of the software?

  • @paulstir
    @paulstir 3 года назад

    is it possible to link win 10 pc to unraid server ( different networs (

  • @markalmada9662
    @markalmada9662 5 лет назад

    Architecture like DNS pinhole poked as and when with the clients doing the heartbeat back to the planet to map and handshake? This seem simple but brilliant. Like a shadow network anywhere with pretty much idiot proof config. Is it really this easy?

  • @Sir.moriarty
    @Sir.moriarty 3 года назад

    Sounds cool what program do you use to make that visual example?

  • @ron1260
    @ron1260 4 года назад +1

    Installed last night on a couple ubuntu machines (two on LAN, one at DO). Really high latency, ssh session appeared unresponsive many times. Is this where my own moon server would come in handy? I didn't forward udp/9993 on any routers.

    • @crispusattucks6094
      @crispusattucks6094 3 года назад

      I know this doesn’t fix your underlying issue and this is a very very late response but for future issues like this, I would suggest trying the mosh terminal. It works far better for intermittent or high latency ssh interaction.

  • @devanhcrow
    @devanhcrow 3 года назад

    What software are you using for the network map? Been looking for something like that!

    • @LAWRENCESYSTEMS
      @LAWRENCESYSTEMS  3 года назад +1

      ruclips.net/video/P3ieXjI7ZSk/видео.html

  • @thegorn
    @thegorn 3 года назад +1

    Why would I want to share my data with with some untrusted third party with this software, when I can just run ospf over openvpn, wireguard or IPSec?

  • @pacsmile
    @pacsmile Год назад +1

    damn, they used to offer 10 clients for free, fast forward to 2023 and it's only 25 now, still plenty for home users tho.

  • @joepalovick1915
    @joepalovick1915 5 лет назад

    Thanks for another great video Tom and it seems like a great project! However, I checked out the release notes and after a flurry of point releases the last activity was in July 2018. The pre-order for the Edge points to an expired Indegogo campaign and the Synology packages are only for DSM 6.1. I'm wondering what your thoughts are of Zerotier being supported enough that it can actually be used outside of lab experiments or for a home network? I can think of numerous use cases for production environments so I'm hoping this project has legs.

    • @LAWRENCESYSTEMS
      @LAWRENCESYSTEMS  5 лет назад

      The slow down in mass changes is what makes it desirable for business. The code reached a stable point and no one wants to deploy a project that is still adding lots of features and making too many changes. They have a lot of companies using this in production. Also, there is still a lot happening in their dev channel github.com/zerotier/ZeroTierOne/commits/dev

    • @joepalovick1915
      @joepalovick1915 5 лет назад

      Got it. I wouldn't want to see continuous updates either but when I saw the windows reference to Win7 and Synology to 6.1 on their website it made me wonder. I hadn't heard of it until your video and it seems like it fills/simplifies a needed void in site to site networking. Thanks again!

  • @inafusabi
    @inafusabi 5 лет назад

    Thanks to you, I now have a nice SDN toy to play with.
    I saw the tweet from #freenas who loved the video. I tested it on 2 linux distros and a win64 machine

  • @Guerilla1337
    @Guerilla1337 3 года назад

    Is this also how synology’s Quickconnect works?

  • @jotdot
    @jotdot 5 лет назад

    i was wandering about what to do about auto connecting Linux clients after reboots for persistence like cron job or does it have built in auto run options

    • @LAWRENCESYSTEMS
      @LAWRENCESYSTEMS  5 лет назад

      It installs as a service and by default runs on startup

    • @jotdot
      @jotdot 5 лет назад

      @@LAWRENCESYSTEMS thanks

  • @Tntdruid
    @Tntdruid 4 года назад +1

    Had to open UDP port 8384 to make it work.

  • @ierosgr
    @ierosgr 4 года назад

    You ve mentioned that one of the services that zerotier would be good would be for server apps. If that app runs on the server with an ip address for instance 192.168.1.100 and all clients joined together with a virtual ip of a different subnet like 10.10.1.0/24 then none of the clients would be able to run that server app.
    Also if you configure in the zerotier network the ip assigment to be in the 192.168.1.0/24 scope then how wouldnt there be a conflict if that server hosting the app would be a DHCP server also and giving ip's to the clients of the same 192.168.1.0/24 ???? Weird question i know
    PS I think that for the above to work a solution (at least I didnt find any other way) would be to define to the server-app side an automated DHCP scope 192.168.1.50 - 99 for the clients at the office leaving for example the scope 192.168.1.10 - 49 for the remote clients in order to avoid the conflict. Of course in zerotier situation you dont make the server-app oc a zerotier server but you add that pc also to the network which is different from other solutions ........ but still if the virtual segment is different from the local one I dont get how the remote clients going to access the server app.

  • @rudiservo
    @rudiservo 4 года назад

    Loving zerotier except on one point, puching DNS servers is still not an optionmakes it quite hard to work with AD.

  • @CliffordBradbury
    @CliffordBradbury 5 лет назад

    Have you tried a direct integration into pfsense? Maybe use pfsense / ZeroTier DIY controller too?

    • @LAWRENCESYSTEMS
      @LAWRENCESYSTEMS  5 лет назад

      I'm not really a code writer

    • @CliffordBradbury
      @CliffordBradbury 5 лет назад +1

      I just noticed that there were some github pfsense integrations that might make some sense to you, as you are a bit if a pfs master 😁

    • @CliffordBradbury
      @CliffordBradbury 5 лет назад

      @Etienne So what about something like a CCTV box, or some other IoT device that you have no access to install anything onto but want to include it on a Zerotier connection?

    • @mithubopensourcelab482
      @mithubopensourcelab482 5 лет назад

      Opensense, a clone of pfSense has inbuilt addon... Try out! it works as expected.

  • @JHACbiz
    @JHACbiz 4 года назад

    I want to use Windows 10 vm (Unraid) with quickbooks database server (at my home) and have users be able to connect to it remotely just as if it were on the local network. Would zerotier be capable of that?

  • @madserge11
    @madserge11 3 года назад

    Anyone else having difficulty with this app on windows machines? Cuz I can connect them to the network no problem but trying to ping it or actually using it to play a LAN game doesn't work, I can use my main Linux machine to ping all other operating systems but Windows but the windows machine can ping to my linux and other devices and get something back I even allowed zerotier through the windows firewall but still does not work at all.

  • @garethsnaim8174
    @garethsnaim8174 5 лет назад +1

    Hi I have OpenVPN running on Untangle, whilst I appreciate this is different, I am struggling to see what advantage it would have for a simple 'access home' scenario. I guess the point of this is to have multiple devices connecting from multiple locations? Is there any advantage to me installing it on a server rather than running openVPN? (the price is certainly right)

    • @LAWRENCESYSTEMS
      @LAWRENCESYSTEMS  5 лет назад +3

      We have a client that is interested in this. They have 7 locations (and more coming) with servers and each server needs to talk to the other servers. This can be done with a lot of VPN rules and routing for each location back and forth , or just one Zerotier network.

    • @shady4tv
      @shady4tv 5 лет назад

      @@LAWRENCESYSTEMS ohhh that makes sense so this is like a private LAN in the "Cloud". If I understand this correctly.... rather than routing a bunch of traffic through several VPNs this is advantageous because you'd connect your devices to a "private cloud"...

    • @garethsnaim8174
      @garethsnaim8174 5 лет назад

      Yeah fair enough, as a home gamer though its occurred to me I might be able to get roon to work, a music player that wont work over VPN. I'll have a play!

    • @garethsnaim8174
      @garethsnaim8174 5 лет назад

      I got this going and it works for my needs so thanks for the heads up, if nothing else I can listen to my entire music collection via roon at work, worth the entry effort alone!

    • @PopularWebz
      @PopularWebz 4 года назад

      You could also create a network between only mobile devices. There is no need to route everything through a single point which a VPN would require.

  • @SavannahTL
    @SavannahTL 2 года назад

    Can Zerotier work for Voip?

  • @hadphild
    @hadphild 2 года назад

    Really wish PFSense would integrate seamlessly

  • @mr_fukiyato
    @mr_fukiyato 5 лет назад +3

    It's here some chance run zerotier from FreeNAS jail? 😉

  • @fbifido2
    @fbifido2 5 лет назад

    Which ports are needed on a fully locked down firewall?

    • @LAWRENCESYSTEMS
      @LAWRENCESYSTEMS  5 лет назад +2

      none

    • @markalmada9662
      @markalmada9662 5 лет назад

      @@LAWRENCESYSTEMS udp pinhole with heart beat to plant to poke the holes as and when

  • @Brian-nz6ns
    @Brian-nz6ns 2 года назад

    So you're connecting individual devices to an overlay network, and you have to install a 3rd party client on each device? This seems limited in usefulness. Can you not bridge entire networks? I don't see how this "delivers the capabilities of VPN" Am I missing something?

  • @JoeKingstonS
    @JoeKingstonS 5 лет назад

    I wish pfSense implements this soon like OPNsense.

    • @JoeKingstonS
      @JoeKingstonS 5 лет назад

      pfSense might will be adding this to version 2.5

  • @ffiit5864
    @ffiit5864 5 лет назад

    Should I use this instead of OpenVPN?

    • @potorrero
      @potorrero 5 лет назад

      You could. Totally

  • @charliebrownau
    @charliebrownau 5 лет назад

    Can this be integrated into a PFSENSE box ?

    • @LAWRENCESYSTEMS
      @LAWRENCESYSTEMS  5 лет назад

      With the right coding it's a Possibility

    • @mithubopensourcelab482
      @mithubopensourcelab482 5 лет назад

      Opensense, a clone of pfSense has inbuilt addon... Try out! it works as expected.

  • @segersta
    @segersta 4 года назад

    One big thing i use with zerotier is bridge mode so i can have one server that bridge all my home network devices on that specific vlan. So not every device need to have a client installed. zerotier.atlassian.net/wiki/spaces/SD/pages/7471125/Layer+2+Bridging+of+Ethernet+and+ZeroTier+Networks+on+Linux

  • @dupinboulette
    @dupinboulette 3 года назад

    Like flexiwan SD WAN

  • @cfisupply
    @cfisupply 5 лет назад

    Only was half listening and not watching as I'm at work (Shhh... Don't tell the boss!), But... How would this work as a 'replacement' for a OpenVPN setup for getting a remote user (Android phone) connected to a FreePBX server so it can make and receive calls?
    Long story short, and I will ask in the forums, I'm looking for a way to connect my Android phone to my FreePBX server for calls, but don't really want *ALL* traffic from my phone to go through a VPN. I'm in an area with crappy DSL service and don't want to add a hurdle I don't need.

  • @danjones4002
    @danjones4002 5 лет назад

    i just tried to set this up. but when i tried to join on by ubuntu server i got.... miss authentication token and authtoken.secrets

  • @__brodul__
    @__brodul__ 2 года назад

    It's not opensource anymore :(

  • @sagarsriva
    @sagarsriva Год назад +1

    Free is now 25 devices not 100