ML
    • Recent
    • Categories
    • Tags
    • Popular
    • Users
    • Groups
    • Register
    • Login

    ZeroTier Review

    Scheduled Pinned Locked Moved IT Discussion
    vpnreviewzerotier
    107 Posts 10 Posters 68.0k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • DashrenderD
      Dashrender @Alex Sage
      last edited by

      @anonymous said:

      @scottalanmiller said:

      or anything sitting behind a gateway.

      Can you explain that?

      It's like a site to site, or client to site VPN. You (or a firewall) connect to a gateway device on the network you want to connect to, then you appear as a node on that network simply able to connect to things as if you were local.

      This is a bit more complex as you need to setup routing, etc.

      1 Reply Last reply Reply Quote 1
      • scottalanmillerS
        scottalanmiller @Alex Sage
        last edited by

        @anonymous said:

        @scottalanmiller said:

        or anything sitting behind a gateway.

        Can you explain that?

        A gateway connects the VPN to the network behind it, same as any "normal" VPN device.

        1 Reply Last reply Reply Quote 1
        • DashrenderD
          Dashrender
          last edited by

          I needed a quick and dirty single device to my server connection for a project that is suppose to last about a month. I went from zero to finished in about 30 mins. Using ZeroTier as the host, damn that was fast and easy

          Frankly I looked at Pertino first thinking they had a free for 10 users type thing, but I couldn't find immediately so I bailed and moved onto ZeroTier.

          Now time to see about standing up my own ZT host.

          JaredBuschJ 1 Reply Last reply Reply Quote 2
          • JaredBuschJ
            JaredBusch @Dashrender
            last edited by JaredBusch

            @Dashrender said:

            I needed a quick and dirty single device to my server connection for a project that is suppose to last about a month. I went from zero to finished in about 30 mins. Using ZeroTier as the host, damn that was fast and easy

            Frankly I looked at Pertino first thinking they had a free for 10 users type thing, but I couldn't find immediately so I bailed and moved onto ZeroTier.

            Now time to see about standing up my own ZT host.

            A Pertino account with no paid subscription can have 3 devices on the network.

            Works a treat for one off stuff like you mentioned as long as you need only a 1 to 1 access. I like to use it to provide RDP access to an internal PC or VM that the user can then use to access whatever they need.

            DashrenderD 1 Reply Last reply Reply Quote 0
            • DashrenderD
              Dashrender @JaredBusch
              last edited by

              @JaredBusch said:

              @Dashrender said:

              I needed a quick and dirty single device to my server connection for a project that is suppose to last about a month. I went from zero to finished in about 30 mins. Using ZeroTier as the host, damn that was fast and easy

              Frankly I looked at Pertino first thinking they had a free for 10 users type thing, but I couldn't find immediately so I bailed and moved onto ZeroTier.

              Now time to see about standing up my own ZT host.

              A Pertino account with no paid subscription can have 3 devices on the network.

              Works a treat for one off stuff like you mentioned as long as you need only a 1 to 1 access. I like to use it to provide RDP access to an internal PC or VM that the user can then use to access whatever they need.

              Aww, thanks - wow.. 3 devices, makes that super restricted, even for a casual user. ZT's 10 is fairly usable.

              1 Reply Last reply Reply Quote 0
              • stacksofplatesS
                stacksofplates
                last edited by

                @dafyre Have you found a way to display the IP addresses assigned to each peer on your own controller?

                scottalanmillerS dafyreD 2 Replies Last reply Reply Quote 1
                • scottalanmillerS
                  scottalanmiller @stacksofplates
                  last edited by

                  @johnhooks said:

                  @dafyre Have you found a way to display the IP addresses assigned to each peer on your own controller?

                  There has to be a way. Normal VPNs like OpenVPN do this.

                  1 Reply Last reply Reply Quote 0
                  • dafyreD
                    dafyre @stacksofplates
                    last edited by

                    @johnhooks Yeah, I have. I apologize for the lack of activity, but that surgery threw me for a bigger loop than I expected, lol. I'm back in mostly good working order today...

                    Anyhow, from th CLI on your controller... you should be able to:

                    zerotier-cli /controller/network    #this line will list all of the networks  you have created
                    zerotier-cli /controller/network/<nwid>/member #this line will list all of the clients in <nwid> 
                    zerotier-cli /controller/network/<nwid>/member/<memberid>  #gives you the details of the individual client... 
                    
                    {
                    	"nwid": "<nwid>",
                    	"address": "<memberid>",
                    	"controllerInstanceId": "<removed for security>",
                    	"authorized": true,
                    	"activeBridge": false,
                    	"memberRevision": 15,
                    	"clock": 1442507102271,
                    	"identity": <removed for security>
                    	"ipAssignments": ["192.168.251.88\/24"],
                    

                    As I understand it, they are planning to release an admin tool for it soon so we won't have to keep doing the CLI stuff unless you just like it, lol.

                    stacksofplatesS 1 Reply Last reply Reply Quote 1
                    • stacksofplatesS
                      stacksofplates
                      last edited by

                      This post is deleted!
                      1 Reply Last reply Reply Quote 0
                      • stacksofplatesS
                        stacksofplates @dafyre
                        last edited by stacksofplates

                        @dafyre said:

                        @johnhooks Yeah, I have. I apologize for the lack of activity, but that surgery threw me for a bigger loop than I expected, lol. I'm back in mostly good working order today...

                        Anyhow, from th CLI on your controller... you should be able to:

                        zerotier-cli /controller/network    #this line will list all of the networks  you have created
                        zerotier-cli /controller/network/<nwid>/member #this line will list all of the clients in <nwid> 
                        zerotier-cli /controller/network/<nwid>/member/<memberid>  #gives you the details of the individual client... 
                        
                        {
                        	"nwid": "<nwid>",
                        	"address": "<memberid>",
                        	"controllerInstanceId": "<removed for security>",
                        	"authorized": true,
                        	"activeBridge": false,
                        	"memberRevision": 15,
                        	"clock": 1442507102271,
                        	"identity": <removed for security>
                        	"ipAssignments": ["192.168.251.88\/24"],
                        

                        As I understand it, they are planning to release an admin tool for it soon so we won't have to keep doing the CLI stuff unless you just like it, lol.

                        No need to apologize! I just tried it again and it worked. I must not have waited long enough last time.

                        When it didn't work, I also tried
                        zerotier-cli -j listpeers

                        But it didn't list them either.

                        1 Reply Last reply Reply Quote 0
                        • dafyreD
                          dafyre
                          last edited by

                          I think the listpeers command is for listing other "nearby" controllers that can be used when necessary.

                          stacksofplatesS 1 Reply Last reply Reply Quote 0
                          • stacksofplatesS
                            stacksofplates @dafyre
                            last edited by stacksofplates

                            @dafyre said:

                            I think the listpeers command is for listing other "nearby" controllers that can be used when necessary.

                            It listed all of the devices on the network, but the only IP it showed was the public WAN, and it only showed the zerotier ID.

                            1 Reply Last reply Reply Quote 0
                            • dafyreD
                              dafyre
                              last edited by

                              Your devices also won't be assigned an IP address until you have authorized them into your network.

                              stacksofplatesS 1 Reply Last reply Reply Quote 0
                              • stacksofplatesS
                                stacksofplates @dafyre
                                last edited by stacksofplates

                                @dafyre said:

                                Your devices also won't be assigned an IP address until you have authorized them into your network.

                                I checked right after I ran the authorize script you wrote, but I must have needed to wait a little longer.

                                dafyreD 1 Reply Last reply Reply Quote 0
                                • dafyreD
                                  dafyre @stacksofplates
                                  last edited by

                                  @johnhooks Thanks for the heads up. I'll keep that in mind.

                                  1 Reply Last reply Reply Quote 1
                                  • quicky2gQ
                                    quicky2g
                                    last edited by

                                    Thanks for the code snippets to create a network and authorize a client. I modified the PHP script to change a client IP. I disconnected my client and reconnected to be safe and client started using the new IP.

                                    <?PHP
                                    
                                    $secret=file_get_contents('authtoken.secret');
                                    
                                    echo "Connecting with secret of $secret\n\r";
                                    
                                    $networkID="aaaaaaaaaaaaaaaa";
                                    $memberID="bbbbbbbbbb";
                                    $NewIP=array("192.168.50.10/24");
                                    
                                    $url="http://localhost:9993/controller/network/$networkID/member/$memberID?auth=$secret";
                                    $networkOption=array(
                                     'ipAssignments'=>$NewIP
                                    );
                                    
                                    //echo json_encode($networkOption);
                                    
                                    $curl=curl_init();
                                    
                                    $curlOptions=array(
                                     CURLOPT_URL=>$url,
                                     CURLOPT_POSTFIELDS=>json_encode($networkOption),
                                     CURLOPT_RETURNTRANSFER=>true
                                    );
                                    
                                    curl_setopt_array($curl,$curlOptions);
                                    
                                    $result=curl_exec($curl);
                                    
                                    print_r($result);
                                    
                                    /*
                                    echo "Sent Data: \n\r";
                                    print_r($curlOptions);
                                    */
                                    
                                    scottalanmillerS 1 Reply Last reply Reply Quote 4
                                    • scottalanmillerS
                                      scottalanmiller @quicky2g
                                      last edited by

                                      @quicky2g Welcome to the community!

                                      quicky2gQ 1 Reply Last reply Reply Quote 0
                                      • quicky2gQ
                                        quicky2g @scottalanmiller
                                        last edited by

                                        @scottalanmiller Thanks! Co-worker put me onto this article and seems like a pretty cool site. Might have to stick around 🙂

                                        dafyreD 1 Reply Last reply Reply Quote 2
                                        • scottalanmillerS
                                          scottalanmiller
                                          last edited by

                                          Awesome! Great to see people starting to steer others over here!

                                          1 Reply Last reply Reply Quote 0
                                          • dafyreD
                                            dafyre @quicky2g
                                            last edited by

                                            @quicky2g said:

                                            @scottalanmiller Thanks! Co-worker put me onto this article and seems like a pretty cool site. Might have to stick around 🙂

                                            Welcome aboard & Thanks for the code update!

                                            1 Reply Last reply Reply Quote 0
                                            • 1
                                            • 2
                                            • 3
                                            • 4
                                            • 5
                                            • 6
                                            • 3 / 6
                                            • First post
                                              Last post