How Tailscale Makes Managing Wireguard Easy

Sdílet
Vložit
  • čas přidán 19. 07. 2024
  • How Tailscale Works
    tailscale.com/blog/how-tailsc...
    How NAT traversal works
    tailscale.com/blog/how-nat-tr...
    Tailscale VS Zerotier
    • Tailscale VS Zerotier
    How To Build Your Own Wireguard VPN Server in The Cloud
    • How To Build Your Own ...
    Nebula Review
    • Nebula, the open sourc...
    ZeroTier Review
    • Zerotier Tutorial: Del...
    Getting Started With The Open Source & Free Diagram tool Diagrams.NET
    • Getting Started With T...
    Headscale:An open source, self-hosted implementation of the Tailscale coordination server.
    github.com/juanfont/headscale
    Connecting With Us
    ---------------------------------------------------
    + Hire Us For A Project: lawrencesystems.com/hire-us/
    + Tom Twitter 🐦 / tomlawrencetech
    + Our Web Site www.lawrencesystems.com/
    + Our Forums forums.lawrencesystems.com/
    + Instagram / lawrencesystems
    + Facebook / lawrencesystems
    + GitHub github.com/lawrencesystems/
    + Discord / discord
    Lawrence Systems Shirts and Swag
    ---------------------------------------------------
    ►👕 lawrence.video/swag
    AFFILIATES & REFERRAL LINKS
    ---------------------------------------------------
    Amazon Affiliate Store
    🛒 www.amazon.com/shop/lawrences...
    UniFi Affiliate Link
    🛒 store.ui.com?a_aid=LTS
    All Of Our Affiliates that help us out and can get you discounts!
    🛒 lawrencesystems.com/partners-...
    Gear we use on Kit
    🛒 kit.co/lawrencesystems
    Use OfferCode LTSERVICES to get 5% off your order at
    🛒 lawrence.video/techsupplydirect
    Digital Ocean Offer Code
    🛒 m.do.co/c/85de8d181725
    HostiFi UniFi Cloud Hosting Service
    🛒 hostifi.net/?via=lawrencesystems
    Protect you privacy with a VPN from Private Internet Access
    🛒 www.privateinternetaccess.com...
    Patreon
    💰 / lawrencesystems
    ⏱️ Timestamps ⏱️
    00:00 Tailscale Review
    01:49 How Tailscale Works
    04:52 Tailscale Pricing
    05:25 Identity Management
    06:34 Supported Clients
    07:21 Dashboard
    10:00 Tailscale Lab Test
    20:15 Final Thoughts and Security
    #Tailscale #Wireguard
  • Věda a technologie

Komentáře • 61

  • @LAWRENCESYSTEMS
    @LAWRENCESYSTEMS  Před 2 lety +5

    How Tailscale Works
    tailscale.com/blog/how-tailscale-works/
    How NAT traversal works
    tailscale.com/blog/how-nat-traversal-works/
    Tailscale VS Zerotier
    czcams.com/video/lAhD2JDVG08/video.html
    How To Build Your Own Wireguard VPN Server in The Cloud
    czcams.com/video/7yC-gJtl9mQ/video.html
    Nebula Review
    czcams.com/video/94KYUhUI1G0/video.html
    ZeroTier Review
    czcams.com/video/Bl_Vau8wtgc/video.html
    Getting Started With The Open Source & Free Diagram tool Diagrams.NET
    czcams.com/video/P3ieXjI7ZSk/video.html
    Headscale:An open source, self-hosted implementation of the Tailscale coordination server.
    github.com/juanfont/headscale
    ⏱ Timestamps ⏱
    00:00 Tailscale Review
    01:49 How Tailscale Works
    04:52 Tailscale Pricing
    05:25 Identity Management
    06:34 Supported Clients
    07:21 Dashboard
    10:00 Tailscale Lab Test
    20:15 Final Thoughts and Security

  • @VTOLfreak
    @VTOLfreak Před 2 lety +13

    I signed up for the personal pro plan after watching your videos. $48 a year for 100 clients is cheap enough that I'm not going to bother rolling my own. The best part of it is how easy it handles DNS. I have a pihole VM running and you can install tailscale on it and set it as the nameserver for all the tailscale clients. Combine this with a subnet relay into my LAN and I can reach every device by name without worrying about split DNS.

  • @KingNova23
    @KingNova23 Před 2 lety +12

    Not all Heros wear capes, thanks again Lawrence Systems!

  • @eointhomas2914
    @eointhomas2914 Před rokem +2

    Thanks Tom, I have setup Zerotier and Tailscale for a customer who is behind an ISP Router that cannot be bridged so it is behind double NAT and this allows for remote users to connect to file server, thank you

  • @BigHeadClan
    @BigHeadClan Před 11 měsíci +1

    Thanks for the demo sir! We started using these at our office to manage our backup solutions across our various clients and wanted to learn a bit more how it operates.

  • @angrynerd2103
    @angrynerd2103 Před 2 lety +4

    I switched to zerotier from hamachi a while back because it was easier, better supported, and had a much friendlier speed cap. Now i mostly use a manual wireguard server but this still looks very interesting.

  • @theblendertree7216
    @theblendertree7216 Před 2 lety

    Thanks for making a video on this!

  • @alurma
    @alurma Před 2 lety

    Awesome video! Thanks

  • @IAmChrisAMA
    @IAmChrisAMA Před 2 lety +4

    Awesome tutorial. I used your guide to setup pfSense a while back and it worked without a hitch.
    I'm planning on setting up a Terminal Server for a club a school and was wondering on the best solution for setting up VPN for just access to that server and nothing else on the network. And that terminal server shouldn't have access to other network interfaces and so on.
    Will Tailscale help with this or is there another guide that can help me go through with this?

  • @Vikingza
    @Vikingza Před 2 lety +5

    Thank you for making the video, could you please look into doing a video on how to link Edge Routers using Tailscale. Thank you in advance.

  • @ScorpioHR
    @ScorpioHR Před rokem

    That's some awesome t-shirt, sir!!

  • @JPEaglesandKatz
    @JPEaglesandKatz Před 2 lety +1

    Never heard of Tailscale before but did try zerotier after your video... Setting up Tailscale is a breeze.. Seems to work great.. I cannot get it over 30mb/s either btw... maybe that is a hard cap on their end??
    Thanks a lot for bringing this sollution to my attention!! :)

  • @Shinta0SaINt
    @Shinta0SaINt Před 2 lety +1

    Hey Tom, thanks again for awesome tutorial, please do an updated complete version of WireGuard when you get a chance sir,
    Regards Shane from Trinidad 🇹🇹

    • @LAWRENCESYSTEMS
      @LAWRENCESYSTEMS  Před 2 lety +2

      czcams.com/video/7yC-gJtl9mQ/video.html

    • @Shinta0SaINt
      @Shinta0SaINt Před 2 lety +1

      @@LAWRENCESYSTEMS Thank you, much appreciated sir, I was under the impression with the recent changes to wireguard in pfsense, 'that' initial tutorial was going to be updated to reflect the changes. I will rereview accordingly. Thanks again for your time, and kind guidance to the community.
      Take care and be safe!
      regards,
      Shane.

  • @vasquezmi
    @vasquezmi Před rokem

    Interesting. Just thinking through this solution and of course risk appetite. With the dynamic ability of it to traverse the trusted network we could potentially have risk if a threat actor was able to manage the TS environment and a network / security admin was working to secure the network. Are there "kill switch" options? Referencing discussion around 12 minutes.

  • @ierosgr
    @ierosgr Před 2 lety

    Does Tails eliminates the need for the user to be admin in the machine in order to run the client?

  • @Miles-Oldenburger
    @Miles-Oldenburger Před 2 lety +2

    I fucking love tailscale

  • @HisLoveArmy
    @HisLoveArmy Před 11 měsíci

    Do you think this is "safer / more secure" than hosting your own openvpn server (and keeping it up to date, using a PSK) to then RDP into boxes? I know there are some unknows in this question but ya thought I would ask anyway

  • @Packetowl
    @Packetowl Před 2 lety +3

    This is really cool. Now I can LAN Party CS:GO with my friends sitting in a different city 😄. Free Account is more than enough to cover 10 System 😋

  • @bensavage6389
    @bensavage6389 Před rokem

    yo lawrence, can you mention in a video how you can figure PF sense to automatically kill the state? when I modify my firewall rules to block traffic I want my states to be updated so that traffic stops immediately! I was able to achieve this by using squid proxy and manually disabling the service, but I would do it in an automated fashion. as you know lawrence, squid proxy introduces a host of new problems. please please share this in one of your videos I need to figure out the secret recipe

  • @mateusjunior1937
    @mateusjunior1937 Před 2 lety

    Hi Lawrence, thanx for this video, i'm wondering, if you have some info on open source SDWAN project ?

    • @LAWRENCESYSTEMS
      @LAWRENCESYSTEMS  Před 2 lety

      Did you watch the video? I mention Headscale and Zerotier.

    • @mateusjunior1937
      @mateusjunior1937 Před 2 lety

      @@LAWRENCESYSTEMS i mean sdwan like an aggregator , or path selection for mpls links and vpn, something like riverbed or silverpeak

    • @LAWRENCESYSTEMS
      @LAWRENCESYSTEMS  Před 2 lety

      @@mateusjunior1937 zerotier.atlassian.net/wiki/spaces/SD/pages/568459265/Multipath

  • @fbifido2
    @fbifido2 Před 2 lety

    I am a little late to this party, but two questions:
    1. Did you find out why your speed over tailscale was so slow?
    2. how to say this:
    - Can we make it so that each node can only connect to a define list of nodes ?
    or - How can we create a list of servers, that every node can access, but not let the nodes access each other ???

    • @LAWRENCESYSTEMS
      @LAWRENCESYSTEMS  Před 2 lety +1

      Not sure on the speed and Tailscale has a firewall rule system to control access.

  • @2gnospam
    @2gnospam Před 2 lety

    How does tailscale compare with openVPN for a small number of servers?

  • @rdsmith24
    @rdsmith24 Před 2 lety +2

    Great demo for a business user, what about the average Joe who just wants VPN back to their home LAN through laptops, phones and tablets.

    • @LAWRENCESYSTEMS
      @LAWRENCESYSTEMS  Před 2 lety +3

      Seems like an ideal fit for the average person.

    • @ZoraciousDCree
      @ZoraciousDCree Před 2 lety

      @@LAWRENCESYSTEMS As a person who is below the average person's understanding of IP networking, especially stuff about OSI layers and how they work, it's going to take me a couple weeks to wrap my head around this. I'm roughly 3 years behind the innovative curve.

    • @bmbiz
      @bmbiz Před 2 lety +1

      @@ZoraciousDCree How about now? ;)

  • @wambo4348
    @wambo4348 Před 2 lety

    I think you should consider also uploading your content on LBRY

    • @LAWRENCESYSTEMS
      @LAWRENCESYSTEMS  Před 2 lety +1

      forums.lawrencesystems.com/t/will-you-join-odysee-com/9270

  • @TiagoJoaoSilva
    @TiagoJoaoSilva Před 2 lety +4

    Is it self-hostable on a VPS or a droplet? No? If you can leave Wireguard behind, there's Nebula.

    • @fr3fou
      @fr3fou Před 2 lety

      headscale is a thing

  • @bensavage6389
    @bensavage6389 Před rokem

    has teen scale essentially become the toolkit for bot networks? it's all open sourced, including the open source version of the server. what's to stop the software rebundled into a cloaking layer and repurposed as a private botnet? trouble on the horizon brothers! can Wiregaurd and or tail scale the sniffed on the network so it can be detected?

    • @LAWRENCESYSTEMS
      @LAWRENCESYSTEMS  Před rokem

      Like any connection it can be watched and people should have proper end point monitoring so they know what is on their systems.

    • @bensavage6389
      @bensavage6389 Před rokem

      @@LAWRENCESYSTEMS Tom, I think this would be a good topic for one of your live shows, and you can then expand on different types of endpoint monitoring systems. just an idea, keep doing what you're doing rock on buddy!

  • @markloughtonUK
    @markloughtonUK Před 2 lety +1

    Are the slower speeds because it's a Free account ?

    • @LAWRENCESYSTEMS
      @LAWRENCESYSTEMS  Před 2 lety +1

      Not that I could find in the docs

    • @kittysreview9055
      @kittysreview9055 Před 2 lety +8

      It’s because they use the Go implementation. If you check their github source, you will see that. Go is hampered by constant context switching since it resides in user space. Also, there is no x86 based vector acceleration or leveraging of SSE or AVX instruction sets in the user space implementation.

  • @voiceoftreason1760
    @voiceoftreason1760 Před 2 lety

    Is there an open source alternative?

    • @LAWRENCESYSTEMS
      @LAWRENCESYSTEMS  Před 2 lety +2

      Their client is open source but the controller management is not.

  • @pepeshopping
    @pepeshopping Před 2 lety +1

    “Oh I don’t know, check the documentation”, but you do RECOMMEND IT eh?

  • @jjaard
    @jjaard Před 2 lety

    Looks like Tailscale kind of worldwide router 😂

  • @JanVokas
    @JanVokas Před 2 lety

    Just small note - NAT is not a firewall! You mentioned this couple of times during the video.

  • @blazetechstuff
    @blazetechstuff Před rokem

    this works good in China. like china to china ip address where port forwarding is impossible*.

  • @sberry25
    @sberry25 Před 2 lety

    What about Netmaker?

  • @hamhumtube
    @hamhumtube Před 2 lety +5

    There was a video that you mention closing your business and go for CZcams only. Please don’t do that. What makes this channel one of the unique ones is you being in the actual battle field. Your thoughts matter because you are not just a random guy who is reading some tutorial and showing those on VM environment. Continue you business please. And if you quit who is going to insult the networks. :)

    • @LAWRENCESYSTEMS
      @LAWRENCESYSTEMS  Před 2 lety +8

      I am not closing the business, but going to spend more time creating content and insulting networks.

    • @TerryPullen
      @TerryPullen Před rokem

      @@LAWRENCESYSTEMS "Insulting networks" 😛