Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • World
  • Users
  • Groups
Skins
  • Light
  • Brite
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (Cyborg)
  • No Skin
Collapse
Brand Logo

CIRCLE WITH A DOT

  1. Home
  2. Uncategorized
  3. Is it possible to "mesh" WireGuard together without something like TailScale or do you need a control plane?

Is it possible to "mesh" WireGuard together without something like TailScale or do you need a control plane?

Scheduled Pinned Locked Moved Uncategorized
7 Posts 3 Posters 14 Views
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • pertho@mastodon.bsd.cafeP This user is from outside of this forum
    pertho@mastodon.bsd.cafeP This user is from outside of this forum
    pertho@mastodon.bsd.cafe
    wrote last edited by
    #1

    Is it possible to "mesh" WireGuard together without something like TailScale or do you need a control plane? I was thinking of not using a "hub and spoke" system

    dch@bsd.networkD viq@social.hackerspace.plV 2 Replies Last reply
    1
    0
    • pertho@mastodon.bsd.cafeP pertho@mastodon.bsd.cafe

      Is it possible to "mesh" WireGuard together without something like TailScale or do you need a control plane? I was thinking of not using a "hub and spoke" system

      dch@bsd.networkD This user is from outside of this forum
      dch@bsd.networkD This user is from outside of this forum
      dch@bsd.network
      wrote last edited by
      #2

      @pertho ZeroTier FTW

      pertho@mastodon.bsd.cafeP 1 Reply Last reply
      0
      • dch@bsd.networkD dch@bsd.network

        @pertho ZeroTier FTW

        pertho@mastodon.bsd.cafeP This user is from outside of this forum
        pertho@mastodon.bsd.cafeP This user is from outside of this forum
        pertho@mastodon.bsd.cafe
        wrote last edited by
        #3

        @dch Better than Nebula?

        viq@social.hackerspace.plV dch@bsd.networkD 2 Replies Last reply
        0
        • pertho@mastodon.bsd.cafeP pertho@mastodon.bsd.cafe

          Is it possible to "mesh" WireGuard together without something like TailScale or do you need a control plane? I was thinking of not using a "hub and spoke" system

          viq@social.hackerspace.plV This user is from outside of this forum
          viq@social.hackerspace.plV This user is from outside of this forum
          viq@social.hackerspace.pl
          wrote last edited by
          #4

          @pertho "yes", but you need "something" to make each peer aware of IPs and keys of all the others. I've seen http services, etcd, DNS, DHT used for that. Pick your poison and level of polish 🤷

          Edit: I guess it sounds more like a "no", in that you need some kind of "control plane" (even if DNS or DHT) to keep peers up to date.

          Additionaly, tailscale wraps wireguard in a lot of magic to help it work in network conditions where other things wouldn't be able to.

          pertho@mastodon.bsd.cafeP 1 Reply Last reply
          0
          • pertho@mastodon.bsd.cafeP pertho@mastodon.bsd.cafe

            @dch Better than Nebula?

            viq@social.hackerspace.plV This user is from outside of this forum
            viq@social.hackerspace.plV This user is from outside of this forum
            viq@social.hackerspace.pl
            wrote last edited by
            #5

            @pertho @dch Nebula is Slack's and vibe coded

            1 Reply Last reply
            0
            • pertho@mastodon.bsd.cafeP pertho@mastodon.bsd.cafe

              @dch Better than Nebula?

              dch@bsd.networkD This user is from outside of this forum
              dch@bsd.networkD This user is from outside of this forum
              dch@bsd.network
              wrote last edited by
              #6

              @pertho haven’t used nebula but ZeroTier does real peer to peer

              1 Reply Last reply
              0
              • viq@social.hackerspace.plV viq@social.hackerspace.pl

                @pertho "yes", but you need "something" to make each peer aware of IPs and keys of all the others. I've seen http services, etcd, DNS, DHT used for that. Pick your poison and level of polish 🤷

                Edit: I guess it sounds more like a "no", in that you need some kind of "control plane" (even if DNS or DHT) to keep peers up to date.

                Additionaly, tailscale wraps wireguard in a lot of magic to help it work in network conditions where other things wouldn't be able to.

                pertho@mastodon.bsd.cafeP This user is from outside of this forum
                pertho@mastodon.bsd.cafeP This user is from outside of this forum
                pertho@mastodon.bsd.cafe
                wrote last edited by
                #7

                @viq Ah OK that makes sense. Guess I will have to rethink the topology.

                1 Reply Last reply
                0
                • stefano@mastodon.bsd.cafeS stefano@mastodon.bsd.cafe shared this topic
                Reply
                • Reply as topic
                Log in to reply
                • Oldest to Newest
                • Newest to Oldest
                • Most Votes


                • Login

                • Login or register to search.
                • First post
                  Last post
                0
                • Categories
                • Recent
                • Tags
                • Popular
                • World
                • Users
                • Groups