Gentoo Archives: gentoo-user

From: Mick <michaelkintzios@×××××.com>
To: gentoo-user@l.g.o
Subject: Re: [gentoo-user] Re: Open RC problem?
Date: Sat, 05 Dec 2015 18:49:25
Message-Id: 201512051849.25840.michaelkintzios@gmail.com
In Reply to: Re: [gentoo-user] Re: Open RC problem? by Neil Bothwick
1 On Saturday 05 Dec 2015 14:31:57 Neil Bothwick wrote:
2 > On Sat, 5 Dec 2015 14:13:00 +0000, Mick wrote:
3 > > Neil, could you please spare a couple of words to explain how the
4 > > zerotier architecture works?
5 >
6 > I can do it in one word - magic!
7
8 :-)
9
10
11 > It's basically a P2P VPN. You set up a network on the controller and then
12 > join it from various machines. Those machines register with the network
13 > controller, and receive an IP address from it, but the actual
14 > communication is direct between the computers. So your data is private
15 > and if both computers are on the same LAN, you still get full LAN speed
16 > between them.
17 >
18 > It use a TUN/TAP interface, for example on this laptop:
19 >
20 > zt0: flags=4163<UP,BROADCAST,RUNNING,MULTICAST> mtu 2800
21 > inet 10.252.252.6 netmask 255.255.255.0 broadcast 10.252.252.255
22 > ether 46:96:8c:9c:02:e1 txqueuelen 500 (Ethernet)
23
24 So is this a userspace tunnel implementation, with the controller playing the
25 role of a remote VPN gateway? Like OpenVPN? What encryption does it use?
26
27
28 > So I can connect to 10.252.252.6 from any computer on my zerotier
29 > network, but you cannot. You may even have the same IP address for one of
30 > the computers on your network.
31 >
32 > It's open source and if you want optimum security, or want to run a
33 > network of more than 10 computers without paying a fee, you can run your
34 > own controller.
35
36 Wouldn't IPSec be more preferable? I'm trying to understand the benefit/need
37 for yet another tunneling solution.
38 --
39 Regards,
40 Mick

Attachments

File name MIME type
signature.asc application/pgp-signature

Replies

Subject Author
Re: [gentoo-user] Re: Open RC problem? Neil Bothwick <neil@××××××××××.uk>