this post was submitted on 09 Jul 2023
69 points (98.6% liked)

Selfhosted

40354 readers
330 users here now

A place to share alternatives to popular online services that can be self-hosted without giving up privacy or locking you into a service you don't control.

Rules:

  1. Be civil: we're here to support and learn from one another. Insults won't be tolerated. Flame wars are frowned upon.

  2. No spam posting.

  3. Posts have to be centered around self-hosting. There are other communities for discussing hardware or home computing. If it's not obvious why your post topic revolves around selfhosting, please include details to make it clear.

  4. Don't duplicate the full text of your blog or github here. Just post the link for folks to click.

  5. Submission headline should match the article title (don’t cherry-pick information from the title to fit your agenda).

  6. No trolling.

Resources:

Any issues on the community? Report it using the report flag.

Questions? DM the mods!

founded 1 year ago
MODERATORS
top 31 comments
sorted by: hot top controversial new old
[–] [email protected] 24 points 1 year ago (3 children)

I just use wireguard that's built in to opnsense. Am I missing out on something ?

[–] [email protected] 16 points 1 year ago (1 children)

No, but some people are stuck behind CG-NAT and can't port forward to the outside world for wireguard. Things like Cloudflared, Tailscale and ZeroTier get past that.

It's of course possible to use wireguard to a VPS and tunnel into that, but that's a bit more technical to set up.

[–] rambos 1 points 1 year ago

ISP have put me behind CG NAT few weeks ago, but I just called them and they turned it off in 10 min. Hard part was to find out whats the issue since I had no clue about CG NAT. WG ftw

[–] [email protected] 6 points 1 year ago

Yeah, same here. Played with tailscale, headscale and some other wireguard mesh tools. But I prefer the plain and simple wireguard setup. My network is not that big that I need yet an other tool for managing it.

[–] hungover_pilot 2 points 1 year ago

Yeah that's what I do as well. I try to avoid tying my services to a company that can change their licensing terms. I'm trying to be self hosted after all!

[–] laxnover 17 points 1 year ago (2 children)

I’ve been using Tailscale because I like the business model they’ve been pushing. They’ve also followed through with that, expanding what the free tier of their service offers instead of restricting it more.

Although possibly biased, Tailscale has a write up comparing the two and the conclusion is that both are good at accomplishing their goals. If you have a technology or business preference, it could mostly come down to that. https://tailscale.com/compare/zerotier/

[–] [email protected] 4 points 1 year ago

Also a big fan of Tailscale. Works well out of the box and they have great documentation.

I'll also throw out its nice to see many of their articles comparing services don't end with a simple "We're better!" but a "pick whats best for your use case." Makes them look a lot better imo.

[–] [email protected] -5 points 1 year ago (2 children)

I can't believe I'm hearing so much support for non-selfhosted stuff. What's next, you're going to promote Plex?

I thought this was the selfhosted community

[–] [email protected] 7 points 1 year ago (2 children)

You can self-host Tailscale and Zerotier.

[–] [email protected] 4 points 1 year ago (1 children)

Also Plex is a staple of the self hosted community (though I prefer Jellyfin.) I'm wondering if they've confused self hosting and FOSS somehow

[–] [email protected] -2 points 1 year ago (2 children)

Plex requires a third party account, therefore not selfhosted.

[–] [email protected] 9 points 1 year ago

That's a very narrow definition of self hosting. Do you also not consider it self hosting if you use a cloud provider VPS? It relies on a 3rd party so I'd love to see the gymnastics that keep stuff on a VPS as self hosted but not Plex. If you don't consider things on a VPS as self hosted then I'm not sure what to say other than I disagree.

[–] EncryptKeeper 1 points 1 year ago

The identity service is not self hosted then. But the rest of Plex literally is. You can self host Gitea and use a third party service like openID for authentication too if you want to. Just because you self host some things doesn’t mean you HAVE to self host EVERYTHING

[–] [email protected] 0 points 1 year ago* (last edited 1 year ago) (1 children)

Yeah, but that's not what [email protected] was advertising

[–] laxnover 1 points 1 year ago

The original question was about the use of these two services. I answered their question and provided a link. I’m sorry that you took that as advertising, but the OP was asking for the basics. There are more productive ways of responding than immediately attacking, though, that would have helped get your point across. For example, providing links to things like Headscale or Netmaker to help your point about not using a third party service.

[–] [email protected] 2 points 1 year ago

It's a discussion.. calm down.. It's also a very valid way to access selfhosted systems.

[–] [email protected] 7 points 1 year ago

Tailscale "just works". Since I've set it up I've never really thought about using anything else. Adding new devices is seamless.

[–] [email protected] 7 points 1 year ago

Tailscale was the first one I tried and it has worked great for me. If I run into issues maybe I'll look at switching.

[–] [email protected] 7 points 1 year ago (1 children)

I've been using secret option 3- netbird. Kernel wireguard support, completely self hostable, and very active development.

[–] [email protected] 1 points 1 year ago (1 children)

Looks interesting. What do you do for mobile devices that need to connect to your network?

[–] [email protected] 2 points 1 year ago

There is an android app. I haven't needed to use it yet though, mobile isn't my particular use case for this. But it should work fine.

[–] wheels 3 points 1 year ago

I’ve just been trying both and the Tailscale web dashboard is a lot more polished. Tailscale also uses wireguard instead of something proprietary. But I’m wondering if the zerotier iphone app might use less battery because I’ve heard tailscale has a problem with that.

[–] carp969 3 points 1 year ago

I started with Zerotier. But at the time Zerotier didn't have exit routes, tailscale did so I tried that and haven't bothered looking at Zerotier since.

I don't know if Zerotier introduced that feature but I like that tailscale uses wireguard.

[–] kratoz29 3 points 1 year ago

I use both, mainly Tailscale because it should be faster because it is Wireguard based, but ZT always on as well as a backup.

[–] [email protected] 3 points 1 year ago

I usually just VPN to my routers if possible. Point to point is feels more reliable than a hole-punching mesh or proxy. On the other hand, this seems to create an end-to-end secure tunnel.

[–] mrclark 2 points 1 year ago

I first tried zerotier but ran into some weird issue...don't recall what it is now....and then tried tailscale and was up and running in like 15 mins. But I see others have had the absolutely opposite experience from mine where tailscale wouldn't work and zerotier would. I think they're both great products.

[–] Hemlig 2 points 1 year ago* (last edited 1 year ago)

You can use all functions from tailscale in free tier and its simple and quick.

[–] NewDataEngineer 2 points 1 year ago

Tailscale comes in my Synology packages and just works. Haven't looked at zerotier yet.

[–] [email protected] 1 points 1 year ago (1 children)

I tried and zerotier and didn't understand it, so use tinc. My own network that meshes and is only my servers

[–] [email protected] 1 points 1 year ago* (last edited 1 year ago)

I love tinc, it's so simple. I wish there were something just as easy that leveraged wireguard instead of whatever custom VPN/tunneling stuff tinc uses, as using it scares me with how seemingly little maintenance tinc gets. Like if tailscale/headscale and tinc had a baby, haha.

Is there a way to run tinc on your phone or similar? To me that's another bonus of tailscale at least.

[–] [email protected] 1 points 1 year ago

I use zero tier just because I’m a noob and was unable to make tailgate work as a docker container, but Im testing now twingate and works pretty well.

load more comments
view more: next ›