techhub.social is one of the many independent Mastodon servers you can use to participate in the fediverse.
A hub primarily for passionate technologists, but everyone is welcome

Administered by:

Server stats:

5.4K
active users

#wireguard

10 posts9 participants3 posts today
Replied to Brian Nicar

@wendigo Double-check that the tunnel configuration including key pair, port numbers and IP address is correct and current. I think Proton makes you re-download those from time to time (quite possibly for key rotation if nothing else).

That the wg0 tunnel interface shows up is no guarantee that the tunnel itself is working. One of the less nice things about Wireguard; you get no obvious "thing X is wrong" error when bringing the tunnel up if something isn't up to snuff.

I forget who the Arch Linux expert out there is, but I can't get wireguard to resolve DNS at all. And my laptop has the exact same setup, and it works fine. I have tried everything I can think of or look up. If anybody out there can help me shed some light on this, I'm using a ProtonVPN config. Thanks! And a boost would be welcome if you're amenable... ;>)

Continued thread

Lastly, I have #immich in a #proxmox VM as a readonly viewer of the samba share so I can see photos on my phone and other devices. My devices connect to #wireguard when out of the house so they can still access the server to sync!

Hope that is helpful to someone, and let me know what I'm doing wrong and can improve!

🧵 4/4

If you have used and loved #Tailscale, and you still like the product but want a sensible insurance option to reduce your exposure to potential #enshittification, what *hosted* options have you looked at as alternatives?

Part of the appeal of #Tailscale for me at least was that they provided a really thoughtful UX layer over some existing cool OSS tech like #wireguard.

Also, many of us have tried self-hosting and want to minimise what they self host if at all possible.
mastodon.social/@JonathanGerla

MastodonJonathan Gerlach (@JonathanGerlach@mastodon.social)I've been really liking Tailscale, but they just took $160 million in funding and I have a weird feeling that the lenders will want to make that money back plus a profit.
Replied in thread

@JessTheUnstill @Pibble

And yes, I treat all devices as insecure and would rather invest the time and effort needed get #TechIlliterates up to speed on the #OfflinePGP method!

Given the cheapness of storage (legitimate 1TB microSD cards exist and they ain't 4-digit items!) I'd legitimately look into #OTP #encryption and (IF I had the €€€€€€ to do so!) would even sponsor implementing it in #OpenVPN, #WireGuard and #OpenSSH (for #SSH-Tunmeling).

  • The #US is a #RogueNation with a Rogue Government! The sooner we accept this reality the sooner we can not only adjust to it but act accordingly…

I sincerely wish y'all could legitimately call me a tinfoilhat but so far I've been proven right all the time...

#wireguard weirdness

My phone has a WG client on it that connects back to the house (WG server is on the ASUS router). I can connect to Internet through the tunnel, and two devices (both servers) in the LAN, but not others, even with firewall on the router turned off.

The WG config has AllowedIPs = 0.0.0.0/0

Two of the devices are JetKVMs. Three are cameras. Can't see any restrictions on there.

It's crazy that I could remote into my server in KL all the way from Kedah using only my mobile hotspot and #Wireguard #VPN connection without noticeable lag or delays whatsoever. Though, I also did the same when I was in Osaka, and I suppose that's more impressive lol - anyway, Wireguard (and #Pi-hole) = Big W.

I'm interested in setting up #WireGuard on my #Debian colo, as a #VPN solution for my phone when I'm on untrusted networks. But the quick start guide being a video is really putting me off, and the examples seem to be purely about ad-hoc peer-to-peer networking rather than a gateway.

I'm tempted to go back to my comfort zone with #OpenVPN, but I'll stick with it. At some point it'll click and I'll write a HOWTO.