Install a self-hosted VPN platform // Netbird

Поділитися
Вставка
  • Опубліковано 26 вер 2024

КОМЕНТАРІ • 197

  • @netbirdio
    @netbirdio 6 місяців тому +103

    Amazing! Thank you, Christian from the whole NetBird team.

    • @christianlempa
      @christianlempa  6 місяців тому +7

      Thank you, guys!

    • @MichelStumpf
      @MichelStumpf 6 місяців тому

      Over the last couple of years, have used Tailscale, Headscale with Tailscale, Twingate... but remove everything to migrate to selfhosted Netbird... Great tool with the right features I need to my personal needs... Well done ... one thing missing though is to be able to route traffic to Internet via a given connected agent

    • @ti4go
      @ti4go 6 місяців тому +9

      PLEASE implement exit nodes!! There is a full git request with multiple votes for this feature

    • @RyanMcCue42
      @RyanMcCue42 6 місяців тому +4

      There’s an open draft PR and it is on their roadmap for this month!

    • @drizzlymood
      @drizzlymood 6 місяців тому +5

      The access control policy configuration is intuitive compared to Tailscale. Good job, guys.

  • @SpiritedSeeker
    @SpiritedSeeker 5 місяців тому +4

    +1 on the comparison video. Thanks for making this one! After banging my head against the wall getting headscale to run and realising how it is still missing a bunch of features, really excited to give a fully supported foss variant a go! I have no idea why anyone would trust tailscale to run the controllers. So I am super happy that this exists! Thanks netbird team ❤❤❤

  • @BalintAdorjan
    @BalintAdorjan 5 місяців тому +2

    This thing is awesome. I'm searching for like 2 weeks now for a zero trust like get-to-home solution with which I can use domain names, and i think now I don't need to look anywhere else. Thank you for the video, I love all of yours. Thank you for the good content, keep it up!

  • @KardonGER
    @KardonGER 6 місяців тому +9

    Thank you Christian. Since I've struggled the last couple days with installing headscale in my environment, this is really the perfect timing for me, that you released this video 👍👍😁😁

    • @christianlempa
      @christianlempa  6 місяців тому +1

      Awesome! Hope it helps a bit 😊

    • @ichilvers
      @ichilvers 6 місяців тому

      I did like headscale / tailscale, but I needed a LAN-to-LAN solution and headscale seemed to be peer access only. I could be wrong, but I couldn't see a way of configuring LAN-to-LAN.

    • @_TbT_
      @_TbT_ 6 місяців тому +1

      @@ichilvers“Network routes“ is where you can configure that with Netbird.

  • @playeronthebeat
    @playeronthebeat 6 місяців тому +14

    Without watching the video, yet, I just wanted to chime in and say that I've tried NetBird, too, but gave up due to me not fully understanding it and it giving me a headache but I'll try it at a later stage when I got more time and I'll happily watch your video, too, to get some help and tips on that matter!
    It's like you've been listening to me!

    • @christianlempa
      @christianlempa  6 місяців тому +2

      Haha amazing 🤩

    • @netbirdio
      @netbirdio 6 місяців тому +2

      hey there. What exactly you had difficulty understanding? And what is your use case, home or work?

    • @playeronthebeat
      @playeronthebeat 6 місяців тому +1

      ​@@netbirdio It's for home use, really.
      I guess, it was just the combination of multiple factors: Me getting excited jumping ahead, following your guide and maybe leaving it to early.
      I'll work on it during the weekend a little further. My main point was (could be HW related!) that Zitadel was awfully slow (want to check out the other options) and I had troubles routing traffic through, for example, Finland (got a server there, where I installed NetBird, too, as well).
      I will get back to you after watching this video on looking through your documentation a little more. Honestly, it could've been my fault all the time (I'm currently sick as well, which doesn't make things better if you can't think properly lol).
      Thanks for reaching out!

    • @netbirdio
      @netbirdio 6 місяців тому +3

      @@playeronthebeat We probbaly need to improve our advanced guide indeed. The quickstart guide should be enough for home use :) Thank you for the feedback!

    • @Oliveira-Tech
      @Oliveira-Tech 6 місяців тому +1

      @@netbirdio Even when I release the ports correctly on my network, the wainting zitadel message keeps loading forever.
      I've done everything and I still can't complete the installation.

  • @theprecipiceofreason
    @theprecipiceofreason 6 місяців тому +2

    The thing I love about VPN conversation is that it's nearly always in the context of privacy, on windows devices, while widgets just harvest all of your data and now copilot does the same. Hilarious.

  • @mihirishan
    @mihirishan 6 місяців тому +18

    A short speed comparison between other providers like tailscale and zerotier would be great.

    • @christianlempa
      @christianlempa  6 місяців тому +13

      Since it uses the same protocol stack, I didn’t consider doing it. Maybe when I make a comparison video in the future that would be a good addition 👍

    • @sulochanacharya4892
      @sulochanacharya4892 6 місяців тому +3

      I actually found latency to be double of that to tailscale when I did testing by connecting a dallas vps to a chicago vps

    • @LtdJorge
      @LtdJorge 6 місяців тому +1

      @@christianlempayeah speed comparison is not very useful. Since all use WG, a features comparison is more important, because it’s how they differentiate from each other.

    • @iwaf
      @iwaf 6 місяців тому

      @@LtdJorgewell it still matters to some people, and we could definitely see some differences cause tailscale has been doing a lot of optimizations on their wireguard integration for the past years
      iirc tailscale provides its own drivers for wg, which leads to better bandwidth, less latency and less cpu overhead

  • @4733R70
    @4733R70 6 місяців тому +3

    thank you for this video! you are always reliable! i have often used in my company solutions that you brought us in your videos

  • @Seba11PL
    @Seba11PL 6 місяців тому +6

    Thx! Definitly need to check this and think to change from my old one ipsec l2tp vpn.

    • @cheebadigga4092
      @cheebadigga4092 6 місяців тому

      same for me, using raw WireGuard at the moment and the access policy stuff in Netbird seems like a godsent

  • @Glatze603
    @Glatze603 6 місяців тому +1

    Hi Christian, thanks for this video. Netbird is awesome. I only use 2 internal vm´s as a peer group in the netbird server, that are installed in a separate vlan at home. So I have to define access policies in the netbird server ui and I have to create firewall rules at home in order to communicate with any other systems in my homelab (and in other vlans than the both vm´s) over these 2 vm´s. The advantage is, that I have another layer of security (if someone gets access to your admin-account, he could change the access ruls to any/any, but he can not change my firewall-rules in my homelab) and I only have to install 2 internal netbird-clients.
    Unfortunately some features that you described are only available with business subscription (device posture checks), but the self hosting edition is a really cool and secure solution.

  • @ThatNateGuy
    @ThatNateGuy 6 місяців тому +5

    I would love to see a video on Zitadel, too!

    • @christianlempa
      @christianlempa  6 місяців тому +3

      It would be interesting, however, I'm looking at another IdP solution called authentik, video is coming next week hopefully ;)

    • @ThatNateGuy
      @ThatNateGuy 6 місяців тому

      @@christianlempa I've heard of that one as well. I'm excited!

    • @LtdJorge
      @LtdJorge 6 місяців тому

      ⁠@@christianlempaAuthentik is pretty simple and works well. I’d like to try Keycloak too and maybe integrate it with FreeIPA

  • @davidszabo6836
    @davidszabo6836 6 місяців тому +6

    How is this even possible that you coming up with those ideas/problems that I'm currently trying to solve? It integrates with Authentik identity provider as well, that I recently set up! Nice T-shirt by the way. :D

  • @ExpandDog
    @ExpandDog 6 місяців тому +4

    MFA should not be a paid only option IMO, its an essential feature to a program that can access all my systems

    • @mikhailbragin5255
      @mikhailbragin5255 6 місяців тому +2

      It is available in a free plan via your IDP (Google, MS…) You can enable it there and it will be automatically added to NetBird

    • @Glatze603
      @Glatze603 6 місяців тому

      MFA is available in the free plan for accessing/protecting the netbird server web-ui. The function descriptions are a bit misleading.

    • @ExpandDog
      @ExpandDog 6 місяців тому

      @@Glatze603 yeah installed it myself and found that out, kinda shooting themselves in the foot a bit not pointing out what they really mean

  • @safaros38
    @safaros38 6 місяців тому

    I was breakin gmy head with this for the last 3 days and when I finally get it to work I see this video lmao. Still learned some tricks. Great stuff.

  • @DSVWARE
    @DSVWARE 6 місяців тому +90

    It would be nice if you disclosed this is a sponsored / ad video... The watermarks on the top right corner is not enough

    • @keeswolterstorff940
      @keeswolterstorff940 6 місяців тому +12

      Absolutely have to agree here, some of the more recent videos have been with either closed source or have anti-features, or they've been sponsored ones, which seem not too unbiased of reviews.

    • @GeorgeAlexanderTrebek
      @GeorgeAlexanderTrebek 6 місяців тому +5

      Instantly what i thought as well... he needs to make it way more clear from the start that its an advert.

    • @brathaneq
      @brathaneq 6 місяців тому +33

      He said up front in first minutes that this is sponsored..

    • @thekikaz
      @thekikaz 6 місяців тому +1

      Agree! I understand the need for making money, but this channel is switching to an advert instead of tech channel...

    • @christianlempa
      @christianlempa  6 місяців тому +39

      I’ve done it at multiple places throughout the video, adding a watermark, mentioning it twice in the video (beginning and end), and added the checkmark on YT it includes a promotion.
      Please tell me: what else should I have to do in your opinion? Really! Because I don’t know…

  • @cheebadigga4092
    @cheebadigga4092 6 місяців тому +2

    Daaaaaaaamnnnnnnn this is awesome!!! Thank you so much for this! Gonna try it right away :D

    • @christianlempa
      @christianlempa  6 місяців тому +1

      Cool! Let me know how it works for you :)

    • @cheebadigga4092
      @cheebadigga4092 6 місяців тому

      @@christianlempa unfortunately Zitadel won't start up. Somehow some ports don't seem to be open but I setup NAT correctly. 80 and 443 are open but the others are not... maybe it's a layer 8 issue lol I'll try again sometime later today

  • @chrisumali9841
    @chrisumali9841 4 місяці тому

    Awesome demo and setup, thanks for the information. Have a great day

  • @freestudymusic550
    @freestudymusic550 6 місяців тому +1

    I actually use netbird a long time ago anyway great video ❤

  • @TillmannHuebner
    @TillmannHuebner 3 місяці тому

    Would be more interesting to see a tutorial on how to use another auth provider instead of zitadel or how to deploy zitadel and then attach netbird so you can actually reuse zitadel.

  • @volleyballaligse
    @volleyballaligse 6 місяців тому +1

    The install script fails with:
    Creating new Zitadel SPA Cli application
    ERROR calling create_service_user_secret_id: User could not be found (QUERY-Dfbg2)
    Probably a zitadel issue... :(

  • @sternensens9347
    @sternensens9347 21 день тому

    How to make the docker client persistant, so it doesnt disapears after a restart?

  • @MhNetSecurity
    @MhNetSecurity 3 місяці тому

    Thank you for the video, I`m planning to deploy this solution to have a remote access to clients sites everywhere ,I did test that with a self-hosted server on AWS, I configured a Raspi on my local network to test with, and it`s easily blocked by the snort IPS installed on pfsense. So I imagine it wont work as all our clients have a sophisticated IPS installed.

  • @milicsantiago
    @milicsantiago 6 місяців тому

    great video Christian!

  • @espressomatic
    @espressomatic 9 днів тому

    iOS clients no longer able to be set up? Name/Password - perpetual "connecting." Enter setup key - always "invalid"

  • @deeds793
    @deeds793 6 місяців тому

    Thanks for this video. I've been looking at all the different self hosted options out there. Does netbird work with NGINX Proxy Manager? Also thank you for touching on the routes for connecting to "LAN" resources. Hoping to use this with phones to connect to my pihole instance for on the road DNS filtering. Overall really thorough and well put together video. Keep them coming!

    • @christianlempa
      @christianlempa  6 місяців тому +1

      You're welcome ;) I've not tested it with NPM, but I don't see a reason why it shouldn't

  • @FaithMediaChannel
    @FaithMediaChannel 5 місяців тому

    Thank goodness for this video

  • @wombatpt
    @wombatpt 4 місяці тому +1

    Doesn't work, but thanks for the video.

  • @KR1ML0N
    @KR1ML0N 6 місяців тому +1

    Might have to try this. I've been looking for an alternative to wireguard.

    • @_TbT_
      @_TbT_ 6 місяців тому +1

      Netbird is controller based Wireguard. The controller does the annoying key exchange for you.

  • @dean.kannenberg
    @dean.kannenberg 6 місяців тому

    Great Video! Thank you again for that!

  • @Crypherr
    @Crypherr 4 місяці тому

    Thanks for the video, Any ideas as to how a self-hosted instance of Netbird can secure a Synology NAS?

    • @christianlempa
      @christianlempa  3 місяці тому +1

      Good question, I don't have a Synology NAS to test :/

  • @leonkernan
    @leonkernan 6 місяців тому +1

    Have they fixed the insane battery usage on the iOS client yet?

  • @michael.andreae
    @michael.andreae 6 місяців тому

    I have to try this!

  • @ti4go
    @ti4go 6 місяців тому

    I have stopped using Netbird because of the lack of exit nodes... Once implemented, im switching back!

    • @netbirdio
      @netbirdio 6 місяців тому +2

      On the roadmap and we are already working on it!

    • @ti4go
      @ti4go 6 місяців тому

      @@netbirdio Niice! TY!

  • @vasquezmi
    @vasquezmi 5 місяців тому +1

    Hello Christian any thoughts or recommendations on how to manage netbird through a reverse proxy?

    • @christianlempa
      @christianlempa  5 місяців тому

      No, yet. Have just tried this self-hosting version :D

  • @durgeshkshirsagar5160
    @durgeshkshirsagar5160 Місяць тому

    Does this work behind CGNAT? I do not have VPS or public ip. What is the solution?

    • @christianlempa
      @christianlempa  Місяць тому +1

      In that case you can use the free netbird cloud version

  • @fixplizz
    @fixplizz 6 місяців тому

    Came across your channel and liked the videos. very high quality content. It just so happens that there is a cluster of proxmox servers of different configurations at hand. No separate storage. Can you tell me if you have any articles or videos on how to unite different hardware into one convenient interface? How to properly distribute storage and virtual machine management. Thanks in advance!

    • @christianlempa
      @christianlempa  6 місяців тому

      Thank you so much! :) I've done some videos on Linux Server OS, featuring Proxmox, etc. Maybe that's gonne be helpful

  • @eikeholz
    @eikeholz 5 місяців тому

    Serious question: I have setup NetBird on their servers, I’ve added a few peers, but when I connect two peers to NetBird I’m not able to do or reach anything. My phone says, it’s connected to a vpn, but I’m still getting the ip address from my mobile provider, not from my home network. On my server the NetBird client runs as a docker container.. anybody has some ideas?

  • @Elker54
    @Elker54 6 місяців тому +2

    Putting MFA behind a paywall is really bad. Why? It makes no sense

    • @netbirdio
      @netbirdio 6 місяців тому +3

      It is not behind a paywall. If you use SSO login with Google, MS, Github, etc and enable MFA there, then you will have it in NetBird automatically. Also in the free plan.
      The paid one is for accounts with username/password where we will need to configure MFA manually.

  • @tsaopaulo
    @tsaopaulo 5 місяців тому

    Awsome video, can you please cover Zitadel using Google as an identity provider?

  • @thiagomz
    @thiagomz 6 місяців тому

    Thank you ! Amazing !

  • @ichilvers
    @ichilvers 6 місяців тому

    I must confess I really like Netbird too. However I have had some issues, mainly with LANA to NetBird to LANB routing. I.e. a device on LANA talking to a device on LANB through the NetBird VPN. It only seems to work if the access control default policy is set from all to all, allowing all, which is a shame. I'm sure its a bug, or missing feature, as the UI looks like it should work. Oh Hum. That said I do like NetBird. My favourite VPN solution "would have been" NetMaker, but since features like egress and relay has moved from the CE edition NetBird got one number slot ;-)

    • @christianlempa
      @christianlempa  6 місяців тому

      Cool! Yeah, Netbird is truly amazing

  • @emiellr
    @emiellr 6 місяців тому

    Hey Christian, your face footage at the start of the video (at least) is quite laggy *(

  • @HaiHoang-nc7mp
    @HaiHoang-nc7mp 4 місяці тому

    I tried installing Netbird and found out that without a domain and email server I can't use it, I'm stuck there and can't use it anymore :)

  • @tomstechnews
    @tomstechnews 6 місяців тому

    Great vid! Thanks. A tailscale killer?

  • @xiLike2Doitx
    @xiLike2Doitx 6 місяців тому

    I wish this would rollout into kubernetes

  • @fakharhussain219
    @fakharhussain219 6 місяців тому

    QQ: Why someone who uses Tailscale would switch to Netbird?

  • @davidzuccarini8376
    @davidzuccarini8376 4 місяці тому

    I have a question does autohost have limits?

  • @InsaiyanTech
    @InsaiyanTech 4 місяці тому

    Can I encrypt the tunnel with a vpn like NordVPN while using this? So I can have it still hidden by my isp

    • @christianlempa
      @christianlempa  4 місяці тому

      No idea, I haven't used NordVPN yet.

    • @InsaiyanTech
      @InsaiyanTech 4 місяці тому

      @@christianlempa dang thanks for responding though

  • @ackwood-it
    @ackwood-it 13 днів тому

    Hello everyone,
    I found some more time to test the product. The self-hosted version lacks features. I got a business subscription to test it. That's a joke.
    1) If I activate routing, all the firewall rules created are completely ignored. If I deactivate routing, it works again. WTF?
    2) User invitations only work halfway. The recipient receives the invitation and has to enter a new password, but the user remains in pending mode after approval. WTF?
    3) Any anonymous user can access the web UI and sees a pre-selection of the local users that have already been created. WTF?
    Personally, I'm not convinced by the product!

  • @christophappel9341
    @christophappel9341 6 місяців тому

    Hi christian, we tried it also on our company, but in out test every user on an domain joined laptop had the same connection and no additional authentication was needed. For us this is a no go. In a zero trust setup every user needs the own connection. Is there a setting to change this?
    Greetings christoph

  • @sturdyblock
    @sturdyblock 2 дні тому

    Self host when possible. Using a 3rd party to host your VPN endpoints is an obvious security risk.

  • @patrickjoseph3412
    @patrickjoseph3412 6 місяців тому

    Las Pollos hermanos... Have the same shirt but purple

  • @it-fre4ki
    @it-fre4ki Місяць тому

    Looks like the OpenZiti product.

  • @Brinkmasterj
    @Brinkmasterj 6 місяців тому

    In the ACL can you set up servers to not talk to each other but a set of clients have access to all servers?

    • @Glatze603
      @Glatze603 6 місяців тому +1

      Yes! To allow something you have to explicitly allow it via an access rule. All other traffic is denied - these are firewall basics.

  • @RazoBeckett.
    @RazoBeckett. 6 місяців тому +1

    hey yooo!

  • @theangelofspace155
    @theangelofspace155 6 місяців тому +1

    So another tailscale?

    • @_TbT_
      @_TbT_ 6 місяців тому +1

      But with self-hosting officially supported and documented by the company itself.

    • @leonkernan
      @leonkernan 6 місяців тому

      More like a Headscale server and Tailscale clients.

  • @Roadsguy
    @Roadsguy 6 місяців тому

    I'm hosting it locally on my own network, but I don't see any of the tabs on the left sidebar when I log into the admin panel, so I can't proceed with adding a peer. Anyone have any idea why? I'm logged in with the automatically created admin account.

    • @christianlempa
      @christianlempa  6 місяців тому

      Maybe check out the support community of netbird

  • @repairstudio4940
    @repairstudio4940 6 місяців тому

    So NetBird is Peer to Peer from my understanding and can provide a secure way for other users to work on the same project. Now CloudFlare can also do the same thing basically right if your hosting your server in via a CloudFlare tunnel however its not just Peer to Peer in CloudFlare making it less secure than NetBird? Am I understanding this right Christian?
    🤔🤔

    • @christianlempa
      @christianlempa  6 місяців тому +2

      There will be a comparison video at some point

    • @repairstudio4940
      @repairstudio4940 6 місяців тому

      @@christianlempa that's be awesome thank you immensely. I get lost in so many facets of different cloud infrastructure and many can be utilized many ways and it's always awesome to explore the possibilities with them.

  • @johnnydepp4114
    @johnnydepp4114 6 місяців тому

    Awsome Video!!!! very very nice :)

    • @christianlempa
      @christianlempa  6 місяців тому +1

      Thank you very much!

    • @johnnydepp4114
      @johnnydepp4114 6 місяців тому

      @@christianlempaYou are very much welcome :)
      What do you think of putting their selv-hosted server with so many ports open as a webfaced server ?
      I am slightly concerned
      My connections stops working if i make fw rules for the sites i want to be connected aka source ip. - I recon it can be because of the certificates from Letsencrypt cant check the connection server anymore. and Zitidal is doing somthing too, as it stalled first time installing the server when i forgot to open the ports at before install
      I actually think Headscale is better here, as you can make source ip and still working. Tho i am missing the 2FA method there
      Thanks again for the video :) :)

  • @JustinJ.
    @JustinJ. 6 місяців тому

    6:00 What are you using to do the arrows and green lines?

  • @kylelaker539
    @kylelaker539 4 місяці тому

    How fast do you think is this when streaming plex while netbird is on and using your mobile data accessing your plex server at home? Tailscale is doable but i have a problem where it buffers and you have to pause it for 3 to 5minutes to download the stream and watch it.?

    • @christianlempa
      @christianlempa  4 місяці тому

      Netbird uses the same protocol that tailscale uses, so I'd expect it to have similar performance.

  • @MadChristianX
    @MadChristianX 6 місяців тому

    is netbird secure? my MacOS 14.4 warns me about the client app that is has to be renewed.

  • @randomnoobpt
    @randomnoobpt 6 місяців тому

    Since the installation is using docker, could this be done on TrueNAS Scale? I've been trying to get it working but no luck :(

    • @christianlempa
      @christianlempa  6 місяців тому

      In theory, yes, but since TrueNAS Scale is using Kubernetes, you'll have to write your own charts and so on. It's a bit complicated.

  • @tailorkhartah7302
    @tailorkhartah7302 6 місяців тому

    new to this , its this like a vpn ?

  • @NevillePrakash
    @NevillePrakash 6 днів тому

    Love the videos Christian and love trying out the different self hosted videos you put up. I have one question am hoping netbird or yourself can help :P . How can I implement this solution if ports 443 / 80 are in use. IE : Traefik

  • @drewlarson65
    @drewlarson65 6 місяців тому

    Here's a video idea for ya:
    MacOS: The linux-distro that will make you sad!

    • @christianlempa
      @christianlempa  6 місяців тому

      Nah, I don't want to fight or argue with the linux community :D

  • @EDIIIZ
    @EDIIIZ 5 місяців тому

    no IPv6 support unfortunately!

  • @fbifido2
    @fbifido2 4 місяці тому +1

    @18:33 - can you make it so the admin has to approve each connection before the client can access the network?

  • @michaelpietrzak2067
    @michaelpietrzak2067 6 місяців тому

    Better than cloudflare tunnel?

    • @freestudymusic550
      @freestudymusic550 6 місяців тому

      Cloud flare tunnel are for end user not homelab

    • @Glatze603
      @Glatze603 6 місяців тому

      @@freestudymusic550That´s not correct. I use cloudflare tunnel for homelab, too. It is another technology than netbird, but awesome, too.

  • @shephusted2714
    @shephusted2714 5 місяців тому

    just use wireguard and save money - it is the same core tech

  • @lucaschneider4714
    @lucaschneider4714 6 місяців тому

    Hey Christian. Mich würde mal interessieren, als was du arbeitest, also der genaue Fachbereich. Fällt das unter DevOps oder wie ist deine genaue Job Bezeichnung (sofern du nicht vollzeit UA-camr bist)

    • @christianlempa
      @christianlempa  6 місяців тому +2

      Hi! Ich komme aus dem IT Support und bin aktuell als Technical Account Manager angestellt. Allerdings arbeite seit einiger Zeit mehr oder weniger Projekt-basiert was auch viel mit dem Bereich automatisierung, security, usw. zu tun hat. Eventuell werde ich mich da demnächst weiterentwickeln, aber mal sehen... ;)

  • @yongu12
    @yongu12 6 місяців тому

    Netbird draining iphone battery hard. More than 50% of used battery by netbird.

  • @ernestoditerribile
    @ernestoditerribile 6 місяців тому

    Around 8 minutes your screen recording flickers a lot. You are probably using OBS, If you switch to ScreenFlow, You have a way better interface and don't run into those problems.
    Oops it is visible on all dark screens.

  • @shanagondaarun2436
    @shanagondaarun2436 6 місяців тому

    from my understanding it is glorified and sophisticated tailscale service.

    • @strangetoucane
      @strangetoucane 6 місяців тому

      More like competitor

    • @RazoBeckett.
      @RazoBeckett. 6 місяців тому

      and i am happy using tailscale

    • @_TbT_
      @_TbT_ 6 місяців тому +4

      A correct wording would be: „Tailscale as well as Netbird are controller based Wireguard services.“ There are several other competitors in this space, e.g. Netmaker.

  • @ackwood-it
    @ackwood-it Місяць тому

    Hello Christian,
    I would be interested in the options for securing the self-hosted version. Whether it is placed in a DMZ or in the LAN, DNAT/PForwarding must be set up in any case, as well as communication in the internal network. Do you have any tips for further security or do you trust the product?

    • @christianlempa
      @christianlempa  Місяць тому +1

      If you don't trust the product/technology there's no reason why you should use it. As this is a critical part of your access control. What I'd do is secure the netbird service as good as possible, adding it to a DMZ (if possible), and adding 2fa to all your users.

  • @ashoktvm
    @ashoktvm Місяць тому

    how to increase the data transfer speed. I get a max of around 20mbps only

  • @fathnojoum
    @fathnojoum 4 місяці тому

    How to update the latest version in Linux if there is an Update notification?

  • @nicoladellino8124
    @nicoladellino8124 6 місяців тому +1

    Very useful video, THX Christian.

  • @Trozpent
    @Trozpent 5 місяців тому

    @Christian - you change infrastructure security more often then Matt @ The Linux Cast changes distro's! 🤣

  • @tritnaha1345
    @tritnaha1345 5 місяців тому

    It's cool and all, but netbird is severely lacking in documentation - i ended up just reinstalling tailscale

  • @patrickcasavant-cssmv
    @patrickcasavant-cssmv 6 місяців тому

    Is the self hosted version have all the same features as the cloud version?

    • @RyanMcCue42
      @RyanMcCue42 6 місяців тому

      Yes

    • @netbirdio
      @netbirdio 6 місяців тому +1

      Nope. These are available in the cloud but not in the self-hosted version:
      1. Identity provider groups and users sync
      2. Event streaming to Datadog and others
      3. Peers approval
      4. Geo distributed relay servers
      5. Posture checks with Crowdstrike
      6. User invites (thought, as Christian explained in the video, it can be done with Zitadel)

    • @patrickcasavant-cssmv
      @patrickcasavant-cssmv 6 місяців тому

      @@netbirdio 😒Will they be add at somepoint? Do you have plan for non profit or school entities?

    • @netbirdio
      @netbirdio 6 місяців тому

      @@patrickcasavant-cssmv we haven’t thought about it but it is possible.
      For nonprofits and schools all cloud plans have a 50% discount.

    • @patrickcasavant-cssmv
      @patrickcasavant-cssmv 6 місяців тому

      @@netbirdio Maybe you shoud change this sentence on the pricing web page. "The self-hosted version is open-source and free to use "without any limitations"."