Comparing Top Overlay VPN Networks: Tailscale, Netbird, Netmaker, Zerotier

Sdílet
Vložit
  • čas přidán 2. 06. 2024
  • lawrence.video/networking
    Forum post with all the details
    forums.lawrencesystems.com/t/...
    Connecting With Us
    ---------------------------------------------------
    + Hire Us For A Project: lawrencesystems.com/hire-us/
    + Tom Twitter 🐦 / tomlawrencetech
    + Our Web Site www.lawrencesystems.com/
    + Our Forums forums.lawrencesystems.com/
    + Instagram / lawrencesystems
    + Facebook / lawrencesystems
    + GitHub github.com/lawrencesystems/
    + Discord / discord
    Lawrence Systems Shirts and Swag
    ---------------------------------------------------
    ►👕 lawrence.video/swag/
    AFFILIATES & REFERRAL LINKS
    ---------------------------------------------------
    Amazon Affiliate Store
    🛒 www.amazon.com/shop/lawrences...
    UniFi Affiliate Link
    🛒 store.ui.com?a_aid=LTS
    All Of Our Affiliates that help us out and can get you discounts!
    🛒 lawrencesystems.com/partners-...
    Gear we use on Kit
    🛒 kit.co/lawrencesystems
    Use OfferCode LTSERVICES to get 10% off your order at
    🛒 www.techsupplydirect.com?aff=2
    Digital Ocean Offer Code
    🛒 m.do.co/c/85de8d181725
    HostiFi UniFi Cloud Hosting Service
    🛒 hostifi.net/?via=lawrencesystems
    Protect you privacy with a VPN from Private Internet Access
    🛒 www.privateinternetaccess.com...
    Patreon
    💰 / lawrencesystems
    Chapters
    00:00 Comparing Overlay VPN Networks Tailscale, Netbird, Netmaker, Zerotier
    02:16 What is an Overlay VPN
    03:47 Comparing Tailscale Netbird Netmaker Zerotier and Twingate
    08:34 A Detailed Look at Tailscale and Netbird features
    11:15 Self Hosted Netbird Interface
  • Věda a technologie

Komentáře • 145

  • @SE-161
    @SE-161 Před 2 měsíci +10

    thank you for the great video. I used Tailscale in the past but switched to Netbird for many reasons. You already mentioned a lot already. For me there is one killa-feature and that is, that the company behind NetBird a German company so they have to stick to the GDPR. I love it!

  • @Reducer
    @Reducer Před 5 měsíci +8

    Timely vid! I've dabbled with Tailscale, primarily because they have a good Terraform module, but I have yet to actually do stuff with this other than testing accessing my home setup from the office. Will check out alternatives.

  • @marcomoraschi3972
    @marcomoraschi3972 Před 2 měsíci +3

    very very nice disclosure at beginning. no sponsor here. by the way, nothings bad about sponsorship, I trust some youtubers and also with sponsor it's ok, but knowing before is a great choice.
    Thanks, now I can ssee the rest of the video.

  • @randomnoobpt
    @randomnoobpt Před 3 měsíci +2

    Opened this video exactly because I was made aware of Twingate, but the content I find is sponsored. Will be trying netbird, seems really easy to get things done and should be enough for my needs

  • @chrisumali9841
    @chrisumali9841 Před 5 měsíci +6

    Thanks for the demo and info. I am using Twingate, but will try Netbird. Have a great day

    • @netbirdio
      @netbirdio Před 5 měsíci +2

      Thank you from the NetBird team :)

  • @PowerUsr1
    @PowerUsr1 Před 5 měsíci +18

    My only issue with Tailscale is the ACL syntax isn’t clear from the documentation. The default is a permit any which isn’t great and it doesn’t integrate with firewall rules in pfsense the way ZeroTier does with opnsense.
    I’m not writing json rules for ACL…there needs to be a better way to do it and clearer documentation

    • @curtispavlovec
      @curtispavlovec Před 5 měsíci +11

      Thank you and I agree 100%. TS needs a better and clearer way to define rules and ACLs beyond JSON - we’re not all developers.

    • @_vr
      @_vr Před 3 měsíci +1

      I use ZeroTier for everything network myself. So amazing! People just need to be more willing to learn. OpenWRT does firewalling really good in a GUI where I configure my ZeroTier.

  •  Před 3 měsíci +5

    Tailscale with headscale as coordination server works very well for me. I would like to test netbird but currently it lacks some features that are important for me. E.g. exit nodes (will be available in march) and dual stack networking with IPv4 and IPv6. These features are already running fine with Tailscale and headscale. GoodiesHQ is currently working on an ACL UI Builder which will be integrated into the open source Admin-UI. Interesting times to come :)

  • @tjsimsgm
    @tjsimsgm Před 5 měsíci +8

    Been running netbird from v0.6.0 and it’s great it’s come along way and it’s been extremely stable, the addition of IOS and Android has been amazing

    • @netbirdio
      @netbirdio Před 5 měsíci +3

      Thank you for the kind words from the NetBird team :)

    • @sudochkinnotuos214
      @sudochkinnotuos214 Před 4 měsíci +3

      @@netbirdio I really like your product, but there is no exit node
      When it is ?

  • @GabrielSouza-iu3pd
    @GabrielSouza-iu3pd Před 2 měsíci +1

    Thanks for this! Awesome explanation as always

  • @NonyaDamnbusiness
    @NonyaDamnbusiness Před 5 měsíci +17

    ZeroTier is also available for ASUStor NAS devices, OPNsense, and even some retro gaming handheld custom firmwares like ArkOS.

    • @pankaj2106
      @pankaj2106 Před 5 měsíci +10

      He knows but intentionally did not mention to show pfsense in good light

  • @taoi11
    @taoi11 Před 5 měsíci +2

    Would love to see a follow up to this of the performance of these networks. simple speed tests even.

  • @Mikesco3
    @Mikesco3 Před 5 měsíci +2

    Totally appreciate your channel!

  • @JamieStuff
    @JamieStuff Před 5 měsíci +5

    I've been a happy Tailscale user for quite some time, and have considered going the Headscale route. However, I may well give Netbird a try. (That's what homelabs are for, right?)

  • @bltavares
    @bltavares Před 5 měsíci +5

    I haven't found anything similar to ZeroTier's 6PLANE addressing for container based routing. It's especially useful as it makes use of IPv6 NDP emulation for finding the shortest route between container.
    I haven't found any Wireguard-based solution similar yet, but I guess it would not be as seamless as zerotier automatic adressing

  • @JasonBrown527
    @JasonBrown527 Před měsícem +2

    Thanks for the video. Would really like to see a performance test comparing Tailscale and Netbird in terms of throughput and LATENCY. Everyon tests throughput, but for some reason you rarely see latency info included. Edit: Netmaker has phone apps for iOS and Android now.

  • @jackthibo7644
    @jackthibo7644 Před 5 měsíci +1

    Thanks so much for this video! I'm really excited about netbird, as I haven't seen yet an open source solution which you can easily self host. I just wonder what security aspects you got to look out for, such as separating directories of the DB files and the web server fikes etc. looking forward to Your video about netbird!! Shame is, that zerotier and any other wire guard based solution, doesn't work great.... Tinkered a lot with excluding IP ranges from zerotier, but still doesn't seem to work alongside.....

  • @kofteistkofte
    @kofteistkofte Před 3 měsíci +1

    I've been using Tailscale for a while. Their ACL syntax does require a bit getting used to but does the job really well. But their error messages when I mess up could be better. But after this video, Netbird peaked my intrest. I might try it with a test environment sometime.

  • @DarkNightSonata
    @DarkNightSonata Před 5 měsíci +13

    is the "Exit Node" feature on the roadmap in Netbird ? I think that is a very important feature to have, or at least its a more common usecase. hopefully it is, because netbird looks very promising.

    • @roadkill11000
      @roadkill11000 Před 5 měsíci +4

      Agree. Exit node is the killer feature that would keep me from trying Netbird.

    • @netbirdio
      @netbirdio Před 5 měsíci +10

      We will deliver this! Thank you for pointing this out

    • @majorgear1021
      @majorgear1021 Před 5 měsíci +1

      What is the use case for an exit node?
      I’m looking at self hosted VPN to access my home network from public networks.

    • @LionelSchinckus
      @LionelSchinckus Před 3 měsíci

      @@netbirdioDo you have an issue on GitHub to follow this?

    • @Daz2281
      @Daz2281 Před měsícem

      @@majorgear1021Exit node allows you to route out of your overlay network making it an actual tunnel network. Without the exit node you could still VPN to get access to your internal resources but you would exit locally depending on where your device is located.

  • @sagarsriva
    @sagarsriva Před 5 měsíci +5

    I use both zerotier and tailscale on same machines. They work together! zerotier and tailscale also work on my openwrt router

  • @iglapsu88
    @iglapsu88 Před 5 měsíci +4

    good timing. I'm a newbie to networking and just put express VPN configuration files on my Beryl Travel Router using OpenVPN. It was super easy. Not sure if this is related or not, but thought it was cool to be able to do that.

  • @jakobholzner
    @jakobholzner Před 5 měsíci

    Thanks for the video. Kinda missed some talking points about integrating OPNSense. And also wanted to ask is there any reason you use the google chrome browser on your Linux machine?

    • @LAWRENCESYSTEMS
      @LAWRENCESYSTEMS  Před 5 měsíci +1

      OPNSense is slow on security so I don't recommend it lawrence.video/opnsense and I use Chrome for business and Firefox for personal

    • @NetworkPIMP
      @NetworkPIMP Před 5 měsíci

      @@LAWRENCESYSTEMSyou mean opnsense doesn't pay you ... got it

  • @CristianHeredia0
    @CristianHeredia0 Před 5 měsíci +3

    Curious as homelaber , running pfsense+WireGuard, when would it make sense to use netbird?

    • @LAWRENCESYSTEMS
      @LAWRENCESYSTEMS  Před 5 měsíci +2

      if you have more devices at more locations that all need to be connected .

  • @DaveHart-G
    @DaveHart-G Před 5 měsíci +3

    Is there any guidance on the horsepower required for the machines doing the wireguard encryption / decryption to ensure that this does not limit transfer rates.

    • @antikommunistischaktion
      @antikommunistischaktion Před 5 měsíci +2

      Wireguard's overhead is effectively non-existent. I have a Raspberry Pi running as a Wireguard server at home and you can't tell any difference between the VPN being on or off.
      Any overhead will be unrelated to Wireguard itself and how Wireguard is implemented. For example Tailscale does some really weird things with it for NAT traversal which does slow it down a little.

    • @DaveHart-G
      @DaveHart-G Před 5 měsíci +1

      @@antikommunistischaktionthanks for the comparison. Sounds like a case for point-to-point wireguard VPN for large file transfers

  • @MrCody760
    @MrCody760 Před 5 měsíci +4

    Exit node is possible on netbird on with Linux os right now

  • @Code-Sport
    @Code-Sport Před 4 měsíci

    Hey do you know if Tailscale is also available for opensence?

  • @MortenEghj
    @MortenEghj Před 5 měsíci +1

    How do you see this in the context of the commercial environment where site to site VPN / IPSec is still the standard ?

    • @LAWRENCESYSTEMS
      @LAWRENCESYSTEMS  Před 5 měsíci +3

      It's becoming very popular with companies due to the added individual controls.

  • @syruce76
    @syruce76 Před 5 měsíci +3

    j'apprécie votre indépendance

  • @etienneb4403
    @etienneb4403 Před 5 měsíci +1

    Great video again. They seem to be good tools. As a noob, why do I as a home user want to use these over say a Wireguard VPN included in some modem/routers like a Fritzbox? It is fast and pretty easy to setup.

    • @LAWRENCESYSTEMS
      @LAWRENCESYSTEMS  Před 5 měsíci +1

      If what you have works for you, keep doing it.

    • @netbirdio
      @netbirdio Před 5 měsíci +3

      Using these tool is mostly about removing the configuration/maintanence parts and controlling access. E.g., you won't need to manually distribute WireGuard keys with let's say NetBird.

  • @NonyaDamnbusiness
    @NonyaDamnbusiness Před 5 měsíci +5

    ZeroTier *does* have a 3rd-party open-source web UI called "ZeroUI".
    I haven't touch the ZeroTier website web UI in over a year.

  • @HectorMartinez-xv4re
    @HectorMartinez-xv4re Před 2 měsíci +1

    Would love to see NordVPNs meshnet in vids like this, I’ve been using it for a while now and have no complaints, super easy to setup and get going on all platforms including Linux/CLI.

  • @jeff8207
    @jeff8207 Před 5 měsíci +1

    Only issue I have with Tailscale is on a mobile device...when moving between Cellular and WiFi sometimes traffic does not move through Tailscale until one stops and restarts the Tailscale client. Easy enough to do but annoying. Would be great if Tailscale client would deactivate in known WiFi SSIDs and reactivate when moving to unknown WiFi SSIDs or cellular. When doing an internet search this has been mentioned multiple times by users.

  • @cltguy1234
    @cltguy1234 Před 2 měsíci

    Hey.. thanks for a great video.. Very good comparison and details of the options. I wanted to ask a question... I have a VPN esque setup with Twingate at the moment and it works well. However, it doesn't and seems it can't do on thing I'd like for it to do.. Use my private DNS on my local network instead of using my provider (cell/remote wifi) DNS. I'd like for it to block ads but also appear as if I'm using my home IP rather than somewhere else. Thanks in advance for your time.

    • @LAWRENCESYSTEMS
      @LAWRENCESYSTEMS  Před 2 měsíci +1

      If you are using Tailscale with pfsense you can choose your pfsense as an exit node.

  • @JackWeems
    @JackWeems Před 5 měsíci

    Can you compare speed on each? I looked at netbird but was turned off by the fact you have to have an account for the self hosted option. Do you what data they collect when you self host?

    • @LAWRENCESYSTEMS
      @LAWRENCESYSTEMS  Před 5 měsíci +3

      You DO NOT need an account to self host Netbird.

    • @netbirdio
      @netbirdio Před 5 měsíci +3

      There is no need for an account when self hosting NetBird.
      We collect anonymized stats about the control server installation, e.g., number of peers. But you can easily opt out from this when running the NetBird server on your

  • @AlexandruVoda
    @AlexandruVoda Před 3 měsíci +1

    Apparently NetBird will receive exit node functionality in March 2024. Also, for NetMaker you can use Ingress Gateway nodes to allow any Wireguard capable device (e.g. smartphones) to connect to the network.

  • @BlackWolF_1374
    @BlackWolF_1374 Před 5 měsíci

    can you make a video to explain how can I controle the traffic over my proxy server which people are connected to via SSH please

  • @maplenet2
    @maplenet2 Před 5 měsíci +2

    Nice video!

  • @user-qr4jf4tv2x
    @user-qr4jf4tv2x Před 14 dny

    ok so which one would work best in a self hosted game server?

  • @brucemoriarty
    @brucemoriarty Před 5 měsíci +1

    actually running it myself and loving netbird but i had 2 issues which is now 1 issue and you share the same is that that need to have an option for exit node

    • @netbirdio
      @netbirdio Před 5 měsíci +1

      We will deliver this feature! Thank you for the feedback

    • @brucemoriarty
      @brucemoriarty Před 5 měsíci

  • @user-hk3ej4hk7m
    @user-hk3ej4hk7m Před 5 měsíci +3

    Zerotier here is the only option here that allows you to self host your controller without having a public IP address, even behind CG NAT.
    The "coordination" layer is split into routing and a controller. The routing handles connecting the nodes, and the controller (which counts as another node) authorizes nodes into the network, meaning that you don't have to give them the power of managing your network, just self host your controller and let them do the routing for you. The whole architecture is pretty well though out.
    Also there's a self hosted controller web GUI called ztnet that recently popped up, it looks pretty modern and has a lot of features.

    • @ReturnJJ
      @ReturnJJ Před 5 měsíci

      You could use Headscale with the upstream Tailscale DERP relays, which is just about the same as using ZeroTier’s roots while using your own controller.
      ZeroTier kept disconnecting and crashing on both iOS and Android (doing a speedtest, the VPN literally disconnects mid test and requires a reconnect, which suggests it crashed), which is a shame because I wanted to use it for L2.

    • @user-hk3ej4hk7m
      @user-hk3ej4hk7m Před 5 měsíci

      @@ReturnJJ Thanks for correcting me! I wasn't aware of the DERP thing. Is that relatively new? Back when Headscale came out I did some research to switch but I wasn't able to find an alternative to the whole controller-roots paradigm.

    • @majorgear1021
      @majorgear1021 Před 5 měsíci

      Sounds great. I’m trying Netbird first, thought.

  • @rbartsch
    @rbartsch Před 4 měsíci

    What is the IPv6-support situation with Tailscale/Netbird?

    • @emesny
      @emesny Před 3 měsíci +1

      Tailscale supports IPv6 seamlessly. I'm running in on several hosts which are IPv6-only and it works fine.

  • @F0XH0UND007
    @F0XH0UND007 Před 5 měsíci +1

    I'd like to see a Twingate review.

    • @LAWRENCESYSTEMS
      @LAWRENCESYSTEMS  Před 5 měsíci +4

      Network Chuck did a sponsored video on it czcams.com/video/IYmXPF3XUwo/video.htmlsi=_qkDhCqpuO7iGRVZ

  • @jyothishkumar3098
    @jyothishkumar3098 Před 21 dnem

    Netbird's Android app is a little buggy (from my experience prior to Aug 2023). But it works and is cool.

  • @michelangelop3923
    @michelangelop3923 Před 5 měsíci +8

    Nebula could be mentioned as well, it's what i personally use as it's very easy to setup and provision new clients, it's only available as selfhosted and it's fully open source.
    Plus the fault us deny all and you allow the port/protocol/host that will have access and the lighthouse/manager node can be more that one, providing grrat availability.

    • @LAWRENCESYSTEMS
      @LAWRENCESYSTEMS  Před 5 měsíci +1

      I forgot to add it to the list, but it's mentioned verbally in the beginning and my video on it is in the forum post.

    • @krystophv
      @krystophv Před 5 měsíci +1

      Defined Networking now offers a non-selfhosted Nebula service, but doesn't seem to have open source clients (dnclient).

  • @scbtripwire
    @scbtripwire Před 5 měsíci +2

    My experience with Tailscale: works fine with one user, but I tried adding someone else as a user and couldn't figure out why it didn't work even with expiration turned off on everything.

  • @GerbekSergey
    @GerbekSergey Před 4 měsíci

    What we need are VLESS Reality based mesh network solutions

  • @astacc
    @astacc Před 5 měsíci +1

    ZeroTier has plugin for Mikrotik routers

  • @jinx68
    @jinx68 Před 5 měsíci +2

    Wouldn't consider netmaker as a stable product. It struggles with NAT traversal, broken GUI in windows and the web interface had a lot of bugs.

  • @JamesT65
    @JamesT65 Před 5 měsíci

    Great video I have created a small gateway with dpdk, vpp and use zerotier to route over it. Runs 100% line rate locally and maxs out the internet with little cpu use. Also makes my security bulletproof. I will add ipv6 as a next step.

  • @bradgriffiths7507
    @bradgriffiths7507 Před 5 měsíci +1

    I'd like (another) video comparing VPN and Network Overlays. My concern has been the need for Multiple Authentication methods which is fine in VPNs (eg either certificate + user creds or user creds + OTP), but network overlays seem to only be certificates which has been why I haven't taken them up.
    My use case involves an AD environment with remote users changing passwords and computer policies that run prior to users logging in.

  • @alphakamp
    @alphakamp Před 5 měsíci +2

    has tailsacle + headscale gotten closer to raw wireguard performance. last I looked it wasnt worth it

    • @antikommunistischaktion
      @antikommunistischaktion Před 5 měsíci +1

      It can't use the kernel module so it hasn't, but it's still probably the fastest overlay network I've used. I've used NFS via Tailscale and as long as my laptop is on a good connection it's relatively pain free.

    • @RogerioPereiradaSilva77
      @RogerioPereiradaSilva77 Před 4 měsíci

      @@antikommunistischaktion Agreed. Performance has never been a problem with Tailscale for me. I have a self-hosted Jellyfin instance that I can reach from anywhere using my laptop or tablet which has been a life saver when traveling and/or staying over a relative's house for a couple of days and that worked well even on saturated public networks. It did stutter and had to buffer a little bit every now and then which forced me to transcode to 720p on the latter case but it worked surprisingly well considering the limitations. Much better than I expected.

  • @97marin
    @97marin Před 5 měsíci

    Why didn't you just do a 360° rotation ok the first pilar to have the ladder under the non damaged part of the bridge?

  • @donwald3436
    @donwald3436 Před 26 dny

    Who's Lawrence?

    • @LAWRENCESYSTEMS
      @LAWRENCESYSTEMS  Před 26 dny

      I am not clever at coming up with company names so I used my last name as my company name, hence Lawrence Systems.

  • @Christos9
    @Christos9 Před 5 měsíci +1

    Tailscale adds features at a very fast pace and this looks to me like a security problem.

  • @RuiFungYip
    @RuiFungYip Před 5 měsíci +1

    Though tailscale (hosted by them) has a bunch of convenient features such as Tailscale SSH, taildrop and funnels.
    And for the most part, I think trusting that the coordination server hasn't been compromised is what tailnet lock is supposed to be for? According to them anyway.
    (I've actually integrated tailscale into my home network with full subnet routing and everything.)

    • @LAWRENCESYSTEMS
      @LAWRENCESYSTEMS  Před 5 měsíci

      It's a new beta feature but looks promising.

    • @RuiFungYip
      @RuiFungYip Před 5 měsíci

      @LAWRENCESYSTEMS tailnet lock?
      I've had it enabled since they introduced it. They've improved the ux for signing new nodes since then. Now you can click a button in the admin panel that will open the deaktop client /mobile app to prompt you to sign nodes.
      Not sure if they've addressed that one ux issue regarding shared nodes and tailnet lock though. (Nodes accessing your shared nodes need to have their keys signed too, it was missing ux, not sure if its changed though.)

  • @brandonchappell1535
    @brandonchappell1535 Před 5 měsíci +2

    Tailscale works great for my needs, its was super easy, even for me, to setup (most this command prompt stuff gives me a headache) and it just Works !! Just tunneled in checked up on my server from my phone while at the beach!! Would be nice if they made a Core plugin too though! as sometimes i dont have both NAS' turned on, and can only tunnel in if scale nas is on

    • @DaveHart-G
      @DaveHart-G Před 5 měsíci +1

      In the review there is mention of BSD support. I’m also a GUI guy, not brave enough to try stuff that requires significant CL interface.
      I run an Ubuntu VM on my TrueNAS Core with Tailscale and use it to provide access to other services on the TrueNAS server

    • @brandonchappell1535
      @brandonchappell1535 Před 5 měsíci

      @@DaveHart-G yeh, i have seen people do custom jails with it in, using scripts etc, so it is possible but id prefer plug in. Running it from my VM could work though, thats good idea !! Can it still become the exit node, and give u access to rest of your network?

  • @manitoba-op4jx
    @manitoba-op4jx Před 3 měsíci

    the only thing stopping my from using headscale is the fact that it uses docker. i hate using docker.

  • @antaishizuku
    @antaishizuku Před 5 měsíci

    Zerotier has a opnsense module

  • @eidodoos
    @eidodoos Před 4 měsíci

    netbird ftw

  • @MichaelWDietrich
    @MichaelWDietrich Před měsícem

    how can netbird cost 5$/user/month if I am selfhosting it? Or is this the "not selfhosted" version?

  • @sergefedorow8430
    @sergefedorow8430 Před 2 měsíci +1

    Netbird sounds very promised.

  • @TechySpeaking
    @TechySpeaking Před 5 měsíci +1

    first

  • @alumseal
    @alumseal Před 3 měsíci

    waiting for self hosted netbird setup and explanation

  • @MrAntropex
    @MrAntropex Před 5 měsíci +6

    poorly carried out, biased towards pfsense omitting that zerotier also does have an opnsense plugin. also not really showing all mentioned solutions equally. barely a real comparison. sorry, I've seen better, less biased vids from you tom.

    • @pelonloc
      @pelonloc Před 4 měsíci +1

      Yes, you can tell who is he "favoring".

  • @grtitann7425
    @grtitann7425 Před 5 měsíci +53

    Your channel is nice and informative, but your pfsense bias it's doing a disservice to other possibly better options, like OPNsense, specially if you care for the morality of the devs or vendors.

    • @PhrozenN
      @PhrozenN Před 5 měsíci

      Netgate has bad morals?

    • @magog6852
      @magog6852 Před 5 měsíci

      @@PhrozenNlolololol

    • @xbhollandx
      @xbhollandx Před 5 měsíci +21

      He’s gone over it many times before. Because opnsense is downstream, they don’t fix bugs or contribute code. So vulnerabilities take considerably longer to be patched. The support contracts are also sub-optimal when compared with the netgate equivalent.

    • @Darkk6969
      @Darkk6969 Před 5 měsíci +1

      @@xbhollandx Yep. One of the MAIN reasons why I am still using pfsense. Security is more important than features.

    • @shammyh
      @shammyh Před 5 měsíci +9

      ​@@xbhollandx Opnsense is not downstream of pfsense. It's a fork. And do you have any evidence to back claims about vuln patch cycle times?