Geekzone: technology news, blogs, forums
Guest
Welcome Guest.
You haven't logged in yet. If you don't have an account you can register now.


Mehrts

858 posts

Ultimate Geek

Trusted

#303255 28-Jan-2023 10:59
Send private message

Morning GZ,

TL,DR;
Has anyone used ZeroTier for remote access to their entire home LAN via mobile device?

 



Full yarn:
I currently use Wireguard as a remote access VPN between my iPhone and home network so that I can access everything as if I was physically at home (security cameras, Pi-hole, Plex etc). This has worked great, and was super simple to set up via PiVPN running on a VM.

I've noticed that a lot of people have mentioned ZeroTier for easy access between devices over the internet. Yesterday I made an account and started dabbling with it.

For device to device connections where you can install the ZT software this is super easy, no problems at all and is a great tool for the toolbox.

However, to access devices that you can't install ZT on (such as an NVR), I've been struggling with the config to make the ZT "server" (Ubuntu VM) act as a link to my LAN. I've tried the bridging and routing methods. Bridging was a no-go, however routing gave me access to my default home LAN but not other VLANs (e.g. cameras. This wasn't a problem at all with WireGuard. The VLAN firewall rules have been defined as being accessable by devices on the default LAN, but not the other way round.

Before I go commiting a bunch of time and effort into ZT, I'm just wondering if anyone else has managed to achieve complete remote network access via ZeroTier between a mobile device (iOS/Android), and a "server" such as a Raspberry Pi or other Ubuntu machine. This is more for a learning opportunity, and I'm happy to stick with WG as it just works for whole network access.





Thinking about buying a Tesla? Feel free to use my referral link to get a few good perks when you order!


Create new topic
davidcole
5807 posts

Uber Geek

Trusted

  #3028221 28-Jan-2023 11:58
Send private message

I had a quick play with tailscale and it seemed ok. But haven’t tried Zeroteor




Previously known as psycik

OpenHAB: Gigabyte AMD A8 BrixOpenHAB with Aeotech ZWave Controller, Raspberry PI, Wemos D1 Mini, Zwave, Xiaomi Humidity and Temperature sensors
Media:Chromecast v2, ATV4 4k, ATV4, HDHomeRun Dual
Windows 10
Host Plex Server 3x3TB, 4x4TB using DriveBender, Samsung 850 evo 512 GB SSD, Hyper-V Server with 1xW10, 2xUbuntu 20.04 LTS, Backblaze Backups, usenetprime.com


 
 
 

Best TrendMicro deals for antivirus and malware protection(affiliate link).
Mehrts

858 posts

Ultimate Geek

Trusted

  #3028226 28-Jan-2023 12:10
Send private message

davidcole: I had a quick play with tailscale and it seemed ok. But haven’t tried Zeroteor


Tailscale is next on my list of things to try out.





Thinking about buying a Tesla? Feel free to use my referral link to get a few good perks when you order!


BlackHand
124 posts

Master Geek


  #3028299 28-Jan-2023 14:02
Send private message

Yes I use ZeroTier but it's setup on a Mikrotik device so it was relatively straight forward, it works great but the performance of my Wireguard VPN is much better.




Mehrts

858 posts

Ultimate Geek

Trusted

  #3028309 28-Jan-2023 14:38
Send private message

BlackHand:

 

Yes I use ZeroTier but it's setup on a Mikrotik device so it was relatively straight forward, it works great but the performance of my Wireguard VPN is much better.

 



Ok, thanks for the info. I don't think I'll pursue LAN/subnet access any further with ZeroTier, especially as I've already got a functioning setup working well with Wireguard.

ZT works brilliantly for device to device connectivity over the internet. Which is ultimately what it was designed for, hence the ease of use in that manner.





Thinking about buying a Tesla? Feel free to use my referral link to get a few good perks when you order!


michaelmurfy
meow
12249 posts

Uber Geek

Moderator
ID Verified
Trusted
Lifetime subscriber

  #3028352 28-Jan-2023 16:08
Send private message

There is also Cloudflare Zero Trust + Cloudflare Tunnels if you wish to have a secure method to access the above without a VPN. I personally use both and find them awesome + it is free.





Michael Murphy | https://murfy.nz
Referral Links: Octopus Energy ($50 Credit) | Tesla | Quic Broadband (use R122101E7CV7Q for free setup)

Are you happy with what you get from Geekzone? Please consider supporting us by subscribing.
Opinions are my own and not the views of my employer.


Mehrts

858 posts

Ultimate Geek

Trusted

  #3028514 28-Jan-2023 16:53
Send private message

Thanks for that info Mike.

 

I've just tried Tailscale and achieved entire access of multiple subnets (VLANs) from my iPhone within a few minutes of install. Much easier than ZT.

I know the ZT config issues are a "me" problem, but I just found the layout of info by ZT to be confusing. TS is three lines of extra config on the exit node/server, and a couple of checkboxes ticked. Done.





Thinking about buying a Tesla? Feel free to use my referral link to get a few good perks when you order!


davidcole
5807 posts

Uber Geek

Trusted

  #3028546 28-Jan-2023 17:47
Send private message

michaelmurfy:

There is also Cloudflare Zero Trust + Cloudflare Tunnels if you wish to have a secure method to access the above without a VPN. I personally use both and find them awesome + it is free.



Not sure if cloudflare counts an a vpn. Ie for a camera/nvr cloudflare is essentially like port forwarding. Unless you push everything behind access.




Previously known as psycik

OpenHAB: Gigabyte AMD A8 BrixOpenHAB with Aeotech ZWave Controller, Raspberry PI, Wemos D1 Mini, Zwave, Xiaomi Humidity and Temperature sensors
Media:Chromecast v2, ATV4 4k, ATV4, HDHomeRun Dual
Windows 10
Host Plex Server 3x3TB, 4x4TB using DriveBender, Samsung 850 evo 512 GB SSD, Hyper-V Server with 1xW10, 2xUbuntu 20.04 LTS, Backblaze Backups, usenetprime.com




michaelmurfy
meow
12249 posts

Uber Geek

Moderator
ID Verified
Trusted
Lifetime subscriber

  #3028549 28-Jan-2023 17:58
Send private message

@davidcole It is not a VPN but with Cloudflare Tunnels you're able to open up services using the "cloudflared" service without needing to port forward. This creates a tunnel directly to Cloudflare.

 

From there, you can use Zero-Trust Policies to secure apps behind Cloudflare. This means you can, for example, use Google Auth to allow access to your web application.

 

This doesn't work with services that are not web apps but it is a very nifty service to allow for access to applications that may only be internal only in a secure manner. I personally use it for Jellyfin for example.





Michael Murphy | https://murfy.nz
Referral Links: Octopus Energy ($50 Credit) | Tesla | Quic Broadband (use R122101E7CV7Q for free setup)

Are you happy with what you get from Geekzone? Please consider supporting us by subscribing.
Opinions are my own and not the views of my employer.


davidcole
5807 posts

Uber Geek

Trusted

  #3028588 28-Jan-2023 20:41
Send private message

michaelmurfy:

@davidcole It is not a VPN but with Cloudflare Tunnels you're able to open up services using the "cloudflared" service without needing to port forward. This creates a tunnel directly to Cloudflare.


From there, you can use Zero-Trust Policies to secure apps behind Cloudflare. This means you can, for example, use Google Auth to allow access to your web application.


This doesn't work with services that are not web apps but it is a very nifty service to allow for access to applications that may only be internal only in a secure manner. I personally use it for Jellyfin for example.



Yes I use it with home assistant - which is got pretty good built in security. But I wouldn’t recommend it for a camera. And certainly not a camera where you connect via app/api - as you can’t limit connectivity. It’s is like port forwarding but without port forwarding.

Zerotoer and tailscale at least make a protected network like a vpn. Which is better for that scenario.

I haven’t tried jellyfin with cf - keep meaning to




Previously known as psycik

OpenHAB: Gigabyte AMD A8 BrixOpenHAB with Aeotech ZWave Controller, Raspberry PI, Wemos D1 Mini, Zwave, Xiaomi Humidity and Temperature sensors
Media:Chromecast v2, ATV4 4k, ATV4, HDHomeRun Dual
Windows 10
Host Plex Server 3x3TB, 4x4TB using DriveBender, Samsung 850 evo 512 GB SSD, Hyper-V Server with 1xW10, 2xUbuntu 20.04 LTS, Backblaze Backups, usenetprime.com


ANglEAUT
1945 posts

Uber Geek

Trusted
Lifetime subscriber

  #3029808 31-Jan-2023 00:49
Send private message

Thanks all for the shared info. Learning as we go along.

 

 





Please keep this GZ community vibrant by contributing in a constructive & respectful manner.


Create new topic





News and reviews »

New Air Traffic Management Platform and Resilient Buildings a Milestone for Airways
Posted 6-Dec-2023 05:00


Logitech G Launches New Flagship Console Wireless Gaming Headset Astro A50 X
Posted 5-Dec-2023 21:00


NordVPN Helps Users Protect Themselves From Vulnerable Apps
Posted 5-Dec-2023 14:27


First-of-its-Kind Flight Trials Integrate Uncrewed Aircraft Into Controlled Airspace
Posted 5-Dec-2023 13:59


Prodigi Technology Services Announces Strategic Acquisition of Conex
Posted 4-Dec-2023 09:33


Samsung Announces Galaxy AI
Posted 28-Nov-2023 14:48


Epson Launches EH-LS650 Ultra Short Throw Smart Streaming Laser Projector
Posted 28-Nov-2023 14:38


Fitbit Charge 6 Review
Posted 27-Nov-2023 16:21


Cisco Launches New Research Highlighting Gap in Preparedness for AI
Posted 23-Nov-2023 15:50


Seagate Takes Block Storage System to New Heights Reaching 2.5 PB
Posted 23-Nov-2023 15:45


Seagate Nytro 4350 NVMe SSD Delivers Consistent Application Performance and High QoS to Data Centers
Posted 23-Nov-2023 15:38


Amazon Fire TV Stick 4k Max (2nd Generation) Review
Posted 14-Nov-2023 16:17


Over half of New Zealand adults surveyed concerned about AI shopping scams
Posted 3-Nov-2023 10:42


Super Mario Bros. Wonder Launches on Nintendo Switch
Posted 24-Oct-2023 10:56


Google Releases Nest WiFi Pro in New Zealand
Posted 24-Oct-2023 10:18









Geekzone Live »

Try automatic live updates from Geekzone directly in your browser, without refreshing the page, with Geekzone Live now.



Are you subscribed to our RSS feed? You can download the latest headlines and summaries from our stories directly to your computer or smartphone by using a feed reader.







MyHeritage