Netbird is king.
from Cantaloupe@lemmy.fedioasis.cc to selfhosted@lemmy.world on 06 Mar 18:15
https://lemmy.fedioasis.cc/post/36949

Figured I’d give Netbird a go, glad I did because I can self host extremely easily by using the new services feature.

You specify a subdomain, point to a peer, specify a protocol and port, and you are good. NetBird fetches you the certificate and your site goes live fast.

I can use my Immich with my mobile data now.

Friendship ended with Cloudflare, now NetBird is my best friend.

#selfhosted

threaded - newest

prenatal_confusion@feddit.org on 06 Mar 18:29 next collapse

Shout-out for pangolin. Betbird looks interesting too!

urb5tar@lemmy.world on 06 Mar 18:32 next collapse

It’s great. And I hope it will last as it is as long as possible.

raicon@lemmy.world on 06 Mar 18:54 next collapse

I applied to work for them. Insta-rejected :/

Must be amazing

Solrac@lemmy.world on 06 Mar 19:07 next collapse

Where is this hosted? What jurisdiction is netbird in?

Dojan@pawb.social on 06 Mar 21:22 collapse

Netbird is a European company headquartered in Berlin. It’s fully FOSS and you can self-host the entire stack, unlike Tailscale which relies on a third party implementation.

There’s a script on their github that makes setup super easy.

That said, I’ve no idea where their servers are, if you opt to use their servers instead of hosting your own.

Edit: oh yeah, they also have a YouTube channel with updates and guides.

PeriodicallyPedantic@lemmy.ca on 07 Mar 03:46 collapse

It seems similar in purpose to pangolin, how do they differ?

tuxec@infosec.pub on 06 Mar 19:26 next collapse

I really wanted to keep it after deciding to switch from Tailscale, but it’s mobile app is draining my phone’s battery. It also disconnects without automatically reconnect. Now, I’m in the process of setting OpenZiti up.

How’s your experience with NetBird’s mobile app?

breadsmasher@lemmy.world on 06 Mar 19:32 collapse

just curious, why move away from tailscale?

hietsu@sopuli.xyz on 06 Mar 19:40 next collapse

Most likely three causes: U, S and A.

irmadlad@lemmy.world on 06 Mar 19:56 collapse

Didn’t downvote you, and I get what you are saying, but in another way I don’t. What makes every other country safer? Nothing that would happen here in the USA couldn’t happen or is happening in any other country. Oh, and this has nothing to do with people trash talking the US. I do it every day I’m awake. However, for those who go with this line of thought, I honestly want to know what you think Tailscale is going to do with your encrypted traffic? Because the day the world finds out that America has cracked strong ciphers, is the day you are going to see a lot of panic and movement on this planet. And I would certainly love to make that announcement. It’ll be my going out 15 minutes of fame.

Dojan@pawb.social on 06 Mar 21:26 collapse

A lot of people are boycotting as many things from the U.S. as they can because of the warmongering paedophile, and his cadre of paedo crooks.

It’s not exactly exciting to buy into products when you have that stinky orange mess breathing down your neck about how he’s going to invade your continent and annex countries.

irmadlad@lemmy.world on 06 Mar 21:47 collapse

It’s not exactly exciting to buy into products when you have that stinky orange mess breathing down your neck about how he’s going to invade your continent and annex countries.

He does like to spread fear and doubt. That’s one of his specialties. Yeah, countries enshitify too. LOL I can understand the sentiment you just expressed rather than the standard ‘Tailscale metadata’. But if you want to take care of stinky orange man, you and your country will have to stand up to him. I’m doing the best I can from this end. LOL

tuxec@infosec.pub on 06 Mar 20:08 collapse

Because the main reason I’m self-hosting is to have control over my data. This includes a lot of metadata about my infra/services/devices which Tailscale is uploading all the time to their servers. Besides that, they’re on the Enshitification road, which made me to search for 100% self-hosted alternatives. And yes, I’m going for EU based companies when it’s a viable option.

irmadlad@lemmy.world on 06 Mar 20:24 next collapse

This includes a lot of metadata about my infra/services/devices which Tailscale is uploading all the time to their servers

You gave away your metadata getting on the internet today. I like controlling my data as well, however I realize that certain compromises just have to be made in order to continue to live in a global, civilized, society.

EncryptKeeper@lemmy.world on 06 Mar 22:03 collapse

You can self host the Tailscale server via Headscale.

fta@lemmy.zip on 06 Mar 19:49 next collapse

What’s the advantage of this over cloudflare and a reverse proxy? It does the certificate management for you as well?

EncryptKeeper@lemmy.world on 06 Mar 21:59 collapse

Streamlining mostly.

Hominine@lemmy.world on 06 Mar 20:11 next collapse

Replaced a self hosted Wireguard/OVPN setup that was used to navigate corporate/public networks with Netbird a few months ago and haven’t looked back. Never having hosted Tailscale, I am impressed with the flexibility and routing an overlay VPN offers, particularly with Netbird’s management UI. The project itself seems well maintained and the team regularly adds new features, many of which I have not bothered to explore yet.
Give it a go I say.

Tinkerer@lemmy.ca on 06 Mar 22:47 next collapse

I’ve been looking at this. I’m currently hosting headacale which is super easy and nice. I might give this a try I just need to get over the hurdle of adapting this to work with podman like I have with headscale. Anybody else running this via podman quadlets?

EpicFailGuy@lemmy.world on 06 Mar 23:10 next collapse

I’ve been using Pangolin since it came out … to make my services available without opening ports, but I also use Netbird for VPN access.

Is their DNS forwarding “resources” stable? Last I heard it was in beta only … if I can eliminate one more piece of software that I have to admin and maintain, that’d be great.

dudesss@lemmy.ca on 06 Mar 23:24 next collapse

This is interesting. I’m excited to hear more about NetBird.

if you’re only hosting Immich for yourself, it might be better to look into setting up internal VPN only access to it for remote connection.

ageedizzle@piefed.ca on 07 Mar 03:30 collapse

Deflect is also a good alternative. It’s based in Montreal, Quebec. It’s what a lot of Canadian instances in the fediverse are moving too (see here).