Install a self-hosted VPN platform // Netbird

แชร์
ฝัง
  • เผยแพร่เมื่อ 21 ธ.ค. 2024

ความคิดเห็น • 215

  • @netbirdio
    @netbirdio 9 หลายเดือนก่อน +119

    Amazing! Thank you, Christian from the whole NetBird team.

    • @christianlempa
      @christianlempa  9 หลายเดือนก่อน +7

      Thank you, guys!

    • @MichelStumpf
      @MichelStumpf 9 หลายเดือนก่อน

      Over the last couple of years, have used Tailscale, Headscale with Tailscale, Twingate... but remove everything to migrate to selfhosted Netbird... Great tool with the right features I need to my personal needs... Well done ... one thing missing though is to be able to route traffic to Internet via a given connected agent

    • @ti4go
      @ti4go 9 หลายเดือนก่อน +10

      PLEASE implement exit nodes!! There is a full git request with multiple votes for this feature

    • @RyanMcCue42
      @RyanMcCue42 9 หลายเดือนก่อน +4

      There’s an open draft PR and it is on their roadmap for this month!

    • @drizzlymood
      @drizzlymood 9 หลายเดือนก่อน +5

      The access control policy configuration is intuitive compared to Tailscale. Good job, guys.

  • @KardonGER
    @KardonGER 9 หลายเดือนก่อน +9

    Thank you Christian. Since I've struggled the last couple days with installing headscale in my environment, this is really the perfect timing for me, that you released this video 👍👍😁😁

    • @christianlempa
      @christianlempa  9 หลายเดือนก่อน +1

      Awesome! Hope it helps a bit 😊

    • @ichilvers
      @ichilvers 9 หลายเดือนก่อน

      I did like headscale / tailscale, but I needed a LAN-to-LAN solution and headscale seemed to be peer access only. I could be wrong, but I couldn't see a way of configuring LAN-to-LAN.

    • @_TbT_
      @_TbT_ 9 หลายเดือนก่อน +1

      @@ichilvers“Network routes“ is where you can configure that with Netbird.

  • @SpiritedSeeker
    @SpiritedSeeker 8 หลายเดือนก่อน +4

    +1 on the comparison video. Thanks for making this one! After banging my head against the wall getting headscale to run and realising how it is still missing a bunch of features, really excited to give a fully supported foss variant a go! I have no idea why anyone would trust tailscale to run the controllers. So I am super happy that this exists! Thanks netbird team ❤❤❤

  • @playeronthebeat
    @playeronthebeat 9 หลายเดือนก่อน +14

    Without watching the video, yet, I just wanted to chime in and say that I've tried NetBird, too, but gave up due to me not fully understanding it and it giving me a headache but I'll try it at a later stage when I got more time and I'll happily watch your video, too, to get some help and tips on that matter!
    It's like you've been listening to me!

    • @christianlempa
      @christianlempa  9 หลายเดือนก่อน +2

      Haha amazing 🤩

    • @netbirdio
      @netbirdio 9 หลายเดือนก่อน +2

      hey there. What exactly you had difficulty understanding? And what is your use case, home or work?

    • @playeronthebeat
      @playeronthebeat 9 หลายเดือนก่อน +1

      ​@@netbirdio It's for home use, really.
      I guess, it was just the combination of multiple factors: Me getting excited jumping ahead, following your guide and maybe leaving it to early.
      I'll work on it during the weekend a little further. My main point was (could be HW related!) that Zitadel was awfully slow (want to check out the other options) and I had troubles routing traffic through, for example, Finland (got a server there, where I installed NetBird, too, as well).
      I will get back to you after watching this video on looking through your documentation a little more. Honestly, it could've been my fault all the time (I'm currently sick as well, which doesn't make things better if you can't think properly lol).
      Thanks for reaching out!

    • @netbirdio
      @netbirdio 9 หลายเดือนก่อน +3

      @@playeronthebeat We probbaly need to improve our advanced guide indeed. The quickstart guide should be enough for home use :) Thank you for the feedback!

    • @Oliveira-Tech
      @Oliveira-Tech 9 หลายเดือนก่อน +1

      @@netbirdio Even when I release the ports correctly on my network, the wainting zitadel message keeps loading forever.
      I've done everything and I still can't complete the installation.

  • @BalintAdorjan
    @BalintAdorjan 7 หลายเดือนก่อน +2

    This thing is awesome. I'm searching for like 2 weeks now for a zero trust like get-to-home solution with which I can use domain names, and i think now I don't need to look anywhere else. Thank you for the video, I love all of yours. Thank you for the good content, keep it up!

  • @4733R70
    @4733R70 9 หลายเดือนก่อน +3

    thank you for this video! you are always reliable! i have often used in my company solutions that you brought us in your videos

    • @christianlempa
      @christianlempa  9 หลายเดือนก่อน +1

      Thank you! That's nice to hear :)

  • @Seba11PL
    @Seba11PL 9 หลายเดือนก่อน +6

    Thx! Definitly need to check this and think to change from my old one ipsec l2tp vpn.

    • @cheebadigga4092
      @cheebadigga4092 9 หลายเดือนก่อน

      same for me, using raw WireGuard at the moment and the access policy stuff in Netbird seems like a godsent

  • @fathnojoum
    @fathnojoum 7 หลายเดือนก่อน

    How to update the latest version in Linux if there is an Update notification?

  • @theprecipiceofreason
    @theprecipiceofreason 9 หลายเดือนก่อน +3

    The thing I love about VPN conversation is that it's nearly always in the context of privacy, on windows devices, while widgets just harvest all of your data and now copilot does the same. Hilarious.

  • @mihirishan
    @mihirishan 9 หลายเดือนก่อน +19

    A short speed comparison between other providers like tailscale and zerotier would be great.

    • @christianlempa
      @christianlempa  9 หลายเดือนก่อน +14

      Since it uses the same protocol stack, I didn’t consider doing it. Maybe when I make a comparison video in the future that would be a good addition 👍

    • @sulochanacharya4892
      @sulochanacharya4892 9 หลายเดือนก่อน +4

      I actually found latency to be double of that to tailscale when I did testing by connecting a dallas vps to a chicago vps

    • @LtdJorge
      @LtdJorge 9 หลายเดือนก่อน +1

      @@christianlempayeah speed comparison is not very useful. Since all use WG, a features comparison is more important, because it’s how they differentiate from each other.

    • @iwaf
      @iwaf 9 หลายเดือนก่อน

      @@LtdJorgewell it still matters to some people, and we could definitely see some differences cause tailscale has been doing a lot of optimizations on their wireguard integration for the past years
      iirc tailscale provides its own drivers for wg, which leads to better bandwidth, less latency and less cpu overhead

  • @ThatNateGuy
    @ThatNateGuy 9 หลายเดือนก่อน +6

    I would love to see a video on Zitadel, too!

    • @christianlempa
      @christianlempa  9 หลายเดือนก่อน +4

      It would be interesting, however, I'm looking at another IdP solution called authentik, video is coming next week hopefully ;)

    • @ThatNateGuy
      @ThatNateGuy 9 หลายเดือนก่อน +1

      @@christianlempa I've heard of that one as well. I'm excited!

    • @LtdJorge
      @LtdJorge 9 หลายเดือนก่อน

      ⁠@@christianlempaAuthentik is pretty simple and works well. I’d like to try Keycloak too and maybe integrate it with FreeIPA

  • @MuhammadIrfan-ni9pb
    @MuhammadIrfan-ni9pb 2 หลายเดือนก่อน +2

    How to configure netbird with nginx proxy manager ?

  • @Glatze603
    @Glatze603 9 หลายเดือนก่อน +1

    Hi Christian, thanks for this video. Netbird is awesome. I only use 2 internal vm´s as a peer group in the netbird server, that are installed in a separate vlan at home. So I have to define access policies in the netbird server ui and I have to create firewall rules at home in order to communicate with any other systems in my homelab (and in other vlans than the both vm´s) over these 2 vm´s. The advantage is, that I have another layer of security (if someone gets access to your admin-account, he could change the access ruls to any/any, but he can not change my firewall-rules in my homelab) and I only have to install 2 internal netbird-clients.
    Unfortunately some features that you described are only available with business subscription (device posture checks), but the self hosting edition is a really cool and secure solution.

  • @safaros38
    @safaros38 9 หลายเดือนก่อน

    I was breakin gmy head with this for the last 3 days and when I finally get it to work I see this video lmao. Still learned some tricks. Great stuff.

  • @davidszabo6836
    @davidszabo6836 9 หลายเดือนก่อน +6

    How is this even possible that you coming up with those ideas/problems that I'm currently trying to solve? It integrates with Authentik identity provider as well, that I recently set up! Nice T-shirt by the way. :D

    • @christianlempa
      @christianlempa  9 หลายเดือนก่อน +1

      Awesome! Thanks 😊

  • @cheebadigga4092
    @cheebadigga4092 9 หลายเดือนก่อน +2

    Daaaaaaaamnnnnnnn this is awesome!!! Thank you so much for this! Gonna try it right away :D

    • @christianlempa
      @christianlempa  9 หลายเดือนก่อน +1

      Cool! Let me know how it works for you :)

    • @cheebadigga4092
      @cheebadigga4092 9 หลายเดือนก่อน

      @@christianlempa unfortunately Zitadel won't start up. Somehow some ports don't seem to be open but I setup NAT correctly. 80 and 443 are open but the others are not... maybe it's a layer 8 issue lol I'll try again sometime later today

  • @petrmotejlek1427
    @petrmotejlek1427 8 ชั่วโมงที่ผ่านมา

    Would have loved for the video to have contained also some demonstration of how this could be configured declaratively, if possible.
    Is it possible to control netbird using gitops?
    Cheers

  • @luismorales056
    @luismorales056 26 วันที่ผ่านมา

    Hi Christian,
    First off, I just wanted to say great job on the video-it was really informative! I have a quick question: Could you please share the reason you used a wildcard on the DNS record? I’m curious to understand the rationale behind it. 05:31

    • @christianlempa
      @christianlempa  26 วันที่ผ่านมา

      Thank you! :) Using wildcards is just simpler because I'm lazy and don't have to add entries for each and every service :D

    • @luismorales056
      @luismorales056 26 วันที่ผ่านมา

      @ Ohhh😂, got it. For some reason I thought it was part of the setup, but I couldn’t find it anywhere on the docs😅. Thanks!

  • @ackwood-it
    @ackwood-it 4 หลายเดือนก่อน

    Hello Christian,
    I would be interested in the options for securing the self-hosted version. Whether it is placed in a DMZ or in the LAN, DNAT/PForwarding must be set up in any case, as well as communication in the internal network. Do you have any tips for further security or do you trust the product?

    • @christianlempa
      @christianlempa  4 หลายเดือนก่อน +1

      If you don't trust the product/technology there's no reason why you should use it. As this is a critical part of your access control. What I'd do is secure the netbird service as good as possible, adding it to a DMZ (if possible), and adding 2fa to all your users.

  • @fbifido2
    @fbifido2 7 หลายเดือนก่อน +1

    @18:33 - can you make it so the admin has to approve each connection before the client can access the network?

  • @DSVWARE
    @DSVWARE 9 หลายเดือนก่อน +94

    It would be nice if you disclosed this is a sponsored / ad video... The watermarks on the top right corner is not enough

    • @keeswolterstorff940
      @keeswolterstorff940 9 หลายเดือนก่อน +11

      Absolutely have to agree here, some of the more recent videos have been with either closed source or have anti-features, or they've been sponsored ones, which seem not too unbiased of reviews.

    • @GeorgeAlexanderTrebek
      @GeorgeAlexanderTrebek 9 หลายเดือนก่อน +5

      Instantly what i thought as well... he needs to make it way more clear from the start that its an advert.

    • @brathaneq
      @brathaneq 9 หลายเดือนก่อน +36

      He said up front in first minutes that this is sponsored..

    • @thekikaz
      @thekikaz 9 หลายเดือนก่อน +1

      Agree! I understand the need for making money, but this channel is switching to an advert instead of tech channel...

    • @christianlempa
      @christianlempa  9 หลายเดือนก่อน +42

      I’ve done it at multiple places throughout the video, adding a watermark, mentioning it twice in the video (beginning and end), and added the checkmark on YT it includes a promotion.
      Please tell me: what else should I have to do in your opinion? Really! Because I don’t know…

  • @leonkernan
    @leonkernan 9 หลายเดือนก่อน +1

    Have they fixed the insane battery usage on the iOS client yet?

  • @chrisumali9841
    @chrisumali9841 7 หลายเดือนก่อน

    Awesome demo and setup, thanks for the information. Have a great day

  • @nicoladellino8124
    @nicoladellino8124 9 หลายเดือนก่อน +1

    Very useful video, THX Christian.

  • @volleyballaligse
    @volleyballaligse 9 หลายเดือนก่อน +1

    The install script fails with:
    Creating new Zitadel SPA Cli application
    ERROR calling create_service_user_secret_id: User could not be found (QUERY-Dfbg2)
    Probably a zitadel issue... :(

  • @vasquezmi
    @vasquezmi 8 หลายเดือนก่อน +1

    Hello Christian any thoughts or recommendations on how to manage netbird through a reverse proxy?

    • @christianlempa
      @christianlempa  8 หลายเดือนก่อน

      No, yet. Have just tried this self-hosting version :D

  • @JustinJ.
    @JustinJ. 9 หลายเดือนก่อน

    6:00 What are you using to do the arrows and green lines?

    • @christianlempa
      @christianlempa  9 หลายเดือนก่อน +1

      It's called "ScreenBrush"

  • @ExpandDog
    @ExpandDog 9 หลายเดือนก่อน +5

    MFA should not be a paid only option IMO, its an essential feature to a program that can access all my systems

    • @mikhailbragin5255
      @mikhailbragin5255 9 หลายเดือนก่อน +2

      It is available in a free plan via your IDP (Google, MS…) You can enable it there and it will be automatically added to NetBird

    • @Glatze603
      @Glatze603 9 หลายเดือนก่อน +1

      MFA is available in the free plan for accessing/protecting the netbird server web-ui. The function descriptions are a bit misleading.

    • @ExpandDog
      @ExpandDog 9 หลายเดือนก่อน +1

      @@Glatze603 yeah installed it myself and found that out, kinda shooting themselves in the foot a bit not pointing out what they really mean

  • @t4ir1
    @t4ir1 หลายเดือนก่อน

    This was a great video mate. You gave a lot of clarity about parts I was not aware.
    Thank you very much!
    I think that I am still wondering is how can I selfhost without being inside a VM, I just want to host it either on baremtal or on a docker which is running on baremetal, not inside a VM.
    Let's see if I can tinker enough with the self-hosting starter script enough to make that happen.
    Dankeschön!

  • @sternensens9347
    @sternensens9347 3 หลายเดือนก่อน

    How to make the docker client persistant, so it doesnt disapears after a restart?

  • @joselaveda7449
    @joselaveda7449 2 หลายเดือนก่อน

    Newbie qüestion, what if you don't have client software for a device?. Is there a client-docker implementation?. Great Video!

    • @christianlempa
      @christianlempa  2 หลายเดือนก่อน

      You can just download it for nearly all devices, Windows, Linux, Mac, iOS or Android

  • @freestudymusic550
    @freestudymusic550 9 หลายเดือนก่อน +1

    I actually use netbird a long time ago anyway great video ❤

  • @fixplizz
    @fixplizz 9 หลายเดือนก่อน

    Came across your channel and liked the videos. very high quality content. It just so happens that there is a cluster of proxmox servers of different configurations at hand. No separate storage. Can you tell me if you have any articles or videos on how to unite different hardware into one convenient interface? How to properly distribute storage and virtual machine management. Thanks in advance!

    • @christianlempa
      @christianlempa  9 หลายเดือนก่อน

      Thank you so much! :) I've done some videos on Linux Server OS, featuring Proxmox, etc. Maybe that's gonne be helpful

  • @davidzuccarini8376
    @davidzuccarini8376 6 หลายเดือนก่อน

    I have a question does autohost have limits?

  • @durgeshkshirsagar5160
    @durgeshkshirsagar5160 4 หลายเดือนก่อน

    Does this work behind CGNAT? I do not have VPS or public ip. What is the solution?

    • @christianlempa
      @christianlempa  4 หลายเดือนก่อน +1

      In that case you can use the free netbird cloud version

  • @Crypherr
    @Crypherr 6 หลายเดือนก่อน

    Thanks for the video, Any ideas as to how a self-hosted instance of Netbird can secure a Synology NAS?

    • @christianlempa
      @christianlempa  6 หลายเดือนก่อน +1

      Good question, I don't have a Synology NAS to test :/

  • @Brinkmasterj
    @Brinkmasterj 9 หลายเดือนก่อน

    In the ACL can you set up servers to not talk to each other but a set of clients have access to all servers?

    • @Glatze603
      @Glatze603 9 หลายเดือนก่อน +1

      Yes! To allow something you have to explicitly allow it via an access rule. All other traffic is denied - these are firewall basics.

  • @ashoktvm
    @ashoktvm 4 หลายเดือนก่อน

    how to increase the data transfer speed. I get a max of around 20mbps only

    • @christianlempa
      @christianlempa  4 หลายเดือนก่อน

      Maybe check with the netbird support

  • @christophappel9341
    @christophappel9341 9 หลายเดือนก่อน

    Hi christian, we tried it also on our company, but in out test every user on an domain joined laptop had the same connection and no additional authentication was needed. For us this is a no go. In a zero trust setup every user needs the own connection. Is there a setting to change this?
    Greetings christoph

  • @milicsantiago
    @milicsantiago 9 หลายเดือนก่อน

    great video Christian!

  • @KR1ML0N
    @KR1ML0N 9 หลายเดือนก่อน +1

    Might have to try this. I've been looking for an alternative to wireguard.

    • @_TbT_
      @_TbT_ 9 หลายเดือนก่อน +1

      Netbird is controller based Wireguard. The controller does the annoying key exchange for you.

  • @eikeholz
    @eikeholz 8 หลายเดือนก่อน

    Serious question: I have setup NetBird on their servers, I’ve added a few peers, but when I connect two peers to NetBird I’m not able to do or reach anything. My phone says, it’s connected to a vpn, but I’m still getting the ip address from my mobile provider, not from my home network. On my server the NetBird client runs as a docker container.. anybody has some ideas?

  • @fw_uke_ha
    @fw_uke_ha 2 หลายเดือนก่อน

    I have a proxmox ve server with a public IP, several vms (including a proxmox backupserver) and lxcs which I would like to backup on my local network. Any recommendations what would be the best way to go? In my home network, I also have a proxmox ve Server, local IP, running portainer, truenas, nextcloud and a proxmox backup server. I would like to use the pbs to use my local smb or nfs share to backup and restore my machines vise versa. I guess the easiest way would be, if both proxmox servers are sharing a secure connection? What would be best praxis to solve this? Would netbird be fine for that, or maybe tailscale? Does this hast to be installed only on the PVE host or also on every vm or lxc?

  • @zippi777
    @zippi777 หลายเดือนก่อน

    Hi Cristian, Truly fantastic application. I would like to use it in my homelab but how can I do it since I use NGINX Proxy Manager which also runs on ports 80 and 443?

    • @christianlempa
      @christianlempa  27 วันที่ผ่านมา

      Nice! You can technically do that, but I haven't done a test setup yet. Maybe I'll make a video to integrate it into authentik and traefik, but not nginx proxy manager.

    • @zippi777
      @zippi777 27 วันที่ผ่านมา

      @@christianlempa I already did it, TRAEFIK + AUTHENTIK + NETBIRD works! The challenge for me now is NETBIRD + NGINX Proxy Manager, but i know you prefer TRAEFIK :-)

  • @deeds793
    @deeds793 9 หลายเดือนก่อน

    Thanks for this video. I've been looking at all the different self hosted options out there. Does netbird work with NGINX Proxy Manager? Also thank you for touching on the routes for connecting to "LAN" resources. Hoping to use this with phones to connect to my pihole instance for on the road DNS filtering. Overall really thorough and well put together video. Keep them coming!

    • @christianlempa
      @christianlempa  9 หลายเดือนก่อน +1

      You're welcome ;) I've not tested it with NPM, but I don't see a reason why it shouldn't

  • @espressomatic
    @espressomatic 3 หลายเดือนก่อน

    iOS clients no longer able to be set up? Name/Password - perpetual "connecting." Enter setup key - always "invalid"

  • @fakharhussain219
    @fakharhussain219 9 หลายเดือนก่อน

    QQ: Why someone who uses Tailscale would switch to Netbird?

  • @repairstudio4940
    @repairstudio4940 9 หลายเดือนก่อน

    So NetBird is Peer to Peer from my understanding and can provide a secure way for other users to work on the same project. Now CloudFlare can also do the same thing basically right if your hosting your server in via a CloudFlare tunnel however its not just Peer to Peer in CloudFlare making it less secure than NetBird? Am I understanding this right Christian?
    🤔🤔

    • @christianlempa
      @christianlempa  9 หลายเดือนก่อน +2

      There will be a comparison video at some point

    • @repairstudio4940
      @repairstudio4940 9 หลายเดือนก่อน

      @@christianlempa that's be awesome thank you immensely. I get lost in so many facets of different cloud infrastructure and many can be utilized many ways and it's always awesome to explore the possibilities with them.

  • @theangelofspace155
    @theangelofspace155 9 หลายเดือนก่อน +1

    So another tailscale?

    • @_TbT_
      @_TbT_ 9 หลายเดือนก่อน +1

      But with self-hosting officially supported and documented by the company itself.

    • @leonkernan
      @leonkernan 9 หลายเดือนก่อน

      More like a Headscale server and Tailscale clients.

  • @FaithMediaChannel
    @FaithMediaChannel 8 หลายเดือนก่อน

    Thank goodness for this video

    • @christianlempa
      @christianlempa  8 หลายเดือนก่อน

      Thanks for watching :)

  • @tomstechnews
    @tomstechnews 9 หลายเดือนก่อน

    Great vid! Thanks. A tailscale killer?

  • @kylelaker539
    @kylelaker539 7 หลายเดือนก่อน

    How fast do you think is this when streaming plex while netbird is on and using your mobile data accessing your plex server at home? Tailscale is doable but i have a problem where it buffers and you have to pause it for 3 to 5minutes to download the stream and watch it.?

    • @christianlempa
      @christianlempa  7 หลายเดือนก่อน

      Netbird uses the same protocol that tailscale uses, so I'd expect it to have similar performance.

  • @Roadsguy
    @Roadsguy 8 หลายเดือนก่อน

    I'm hosting it locally on my own network, but I don't see any of the tabs on the left sidebar when I log into the admin panel, so I can't proceed with adding a peer. Anyone have any idea why? I'm logged in with the automatically created admin account.

    • @christianlempa
      @christianlempa  8 หลายเดือนก่อน

      Maybe check out the support community of netbird

  • @dean.kannenberg
    @dean.kannenberg 9 หลายเดือนก่อน

    Great Video! Thank you again for that!

    • @christianlempa
      @christianlempa  9 หลายเดือนก่อน

      Glad you enjoyed it!

  • @InsaiyanTech
    @InsaiyanTech 7 หลายเดือนก่อน

    Can I encrypt the tunnel with a vpn like NordVPN while using this? So I can have it still hidden by my isp

    • @christianlempa
      @christianlempa  7 หลายเดือนก่อน

      No idea, I haven't used NordVPN yet.

    • @InsaiyanTech
      @InsaiyanTech 7 หลายเดือนก่อน

      @@christianlempa dang thanks for responding though

  • @randomnoobpt
    @randomnoobpt 9 หลายเดือนก่อน

    Since the installation is using docker, could this be done on TrueNAS Scale? I've been trying to get it working but no luck :(

    • @christianlempa
      @christianlempa  9 หลายเดือนก่อน

      In theory, yes, but since TrueNAS Scale is using Kubernetes, you'll have to write your own charts and so on. It's a bit complicated.

  • @emiellr
    @emiellr 9 หลายเดือนก่อน

    Hey Christian, your face footage at the start of the video (at least) is quite laggy *(

  • @lucaschneider4714
    @lucaschneider4714 9 หลายเดือนก่อน

    Hey Christian. Mich würde mal interessieren, als was du arbeitest, also der genaue Fachbereich. Fällt das unter DevOps oder wie ist deine genaue Job Bezeichnung (sofern du nicht vollzeit TH-camr bist)

    • @christianlempa
      @christianlempa  9 หลายเดือนก่อน +2

      Hi! Ich komme aus dem IT Support und bin aktuell als Technical Account Manager angestellt. Allerdings arbeite seit einiger Zeit mehr oder weniger Projekt-basiert was auch viel mit dem Bereich automatisierung, security, usw. zu tun hat. Eventuell werde ich mich da demnächst weiterentwickeln, aber mal sehen... ;)

  • @tailorkhartah7302
    @tailorkhartah7302 9 หลายเดือนก่อน

    new to this , its this like a vpn ?

  • @HaiHoang-nc7mp
    @HaiHoang-nc7mp 7 หลายเดือนก่อน

    I tried installing Netbird and found out that without a domain and email server I can't use it, I'm stuck there and can't use it anymore :)

  • @MadChristianX
    @MadChristianX 9 หลายเดือนก่อน

    is netbird secure? my MacOS 14.4 warns me about the client app that is has to be renewed.

  • @patrickcasavant-cssmv
    @patrickcasavant-cssmv 9 หลายเดือนก่อน

    Is the self hosted version have all the same features as the cloud version?

    • @RyanMcCue42
      @RyanMcCue42 9 หลายเดือนก่อน

      Yes

    • @netbirdio
      @netbirdio 9 หลายเดือนก่อน +1

      Nope. These are available in the cloud but not in the self-hosted version:
      1. Identity provider groups and users sync
      2. Event streaming to Datadog and others
      3. Peers approval
      4. Geo distributed relay servers
      5. Posture checks with Crowdstrike
      6. User invites (thought, as Christian explained in the video, it can be done with Zitadel)

    • @patrickcasavant-cssmv
      @patrickcasavant-cssmv 9 หลายเดือนก่อน

      @@netbirdio 😒Will they be add at somepoint? Do you have plan for non profit or school entities?

    • @netbirdio
      @netbirdio 9 หลายเดือนก่อน

      @@patrickcasavant-cssmv we haven’t thought about it but it is possible.
      For nonprofits and schools all cloud plans have a 50% discount.

    • @patrickcasavant-cssmv
      @patrickcasavant-cssmv 9 หลายเดือนก่อน

      @@netbirdio Maybe you shoud change this sentence on the pricing web page. "The self-hosted version is open-source and free to use "without any limitations"."

  • @MhNetSecurity
    @MhNetSecurity 6 หลายเดือนก่อน

    Thank you for the video, I`m planning to deploy this solution to have a remote access to clients sites everywhere ,I did test that with a self-hosted server on AWS, I configured a Raspi on my local network to test with, and it`s easily blocked by the snort IPS installed on pfsense. So I imagine it wont work as all our clients have a sophisticated IPS installed.

  • @TillmannHuebner
    @TillmannHuebner 6 หลายเดือนก่อน

    Would be more interesting to see a tutorial on how to use another auth provider instead of zitadel or how to deploy zitadel and then attach netbird so you can actually reuse zitadel.

  • @michaelpietrzak2067
    @michaelpietrzak2067 9 หลายเดือนก่อน

    Better than cloudflare tunnel?

    • @freestudymusic550
      @freestudymusic550 9 หลายเดือนก่อน

      Cloud flare tunnel are for end user not homelab

    • @Glatze603
      @Glatze603 9 หลายเดือนก่อน

      @@freestudymusic550That´s not correct. I use cloudflare tunnel for homelab, too. It is another technology than netbird, but awesome, too.

  • @thiagomz
    @thiagomz 9 หลายเดือนก่อน

    Thank you ! Amazing !

  • @tsaopaulo
    @tsaopaulo 8 หลายเดือนก่อน

    Awsome video, can you please cover Zitadel using Google as an identity provider?

  • @ti4go
    @ti4go 9 หลายเดือนก่อน

    I have stopped using Netbird because of the lack of exit nodes... Once implemented, im switching back!

    • @netbirdio
      @netbirdio 9 หลายเดือนก่อน +2

      On the roadmap and we are already working on it!

    • @ti4go
      @ti4go 9 หลายเดือนก่อน

      @@netbirdio Niice! TY!

  • @WolfSparc
    @WolfSparc 8 หลายเดือนก่อน

    @Christian - you change infrastructure security more often then Matt @ The Linux Cast changes distro's! 🤣

  • @michael.andreae
    @michael.andreae 9 หลายเดือนก่อน

    I have to try this!

  • @johnnydepp4114
    @johnnydepp4114 9 หลายเดือนก่อน

    Awsome Video!!!! very very nice :)

    • @christianlempa
      @christianlempa  9 หลายเดือนก่อน +1

      Thank you very much!

    • @johnnydepp4114
      @johnnydepp4114 8 หลายเดือนก่อน

      @@christianlempaYou are very much welcome :)
      What do you think of putting their selv-hosted server with so many ports open as a webfaced server ?
      I am slightly concerned
      My connections stops working if i make fw rules for the sites i want to be connected aka source ip. - I recon it can be because of the certificates from Letsencrypt cant check the connection server anymore. and Zitidal is doing somthing too, as it stalled first time installing the server when i forgot to open the ports at before install
      I actually think Headscale is better here, as you can make source ip and still working. Tho i am missing the 2FA method there
      Thanks again for the video :) :)

  • @ichilvers
    @ichilvers 9 หลายเดือนก่อน

    I must confess I really like Netbird too. However I have had some issues, mainly with LANA to NetBird to LANB routing. I.e. a device on LANA talking to a device on LANB through the NetBird VPN. It only seems to work if the access control default policy is set from all to all, allowing all, which is a shame. I'm sure its a bug, or missing feature, as the UI looks like it should work. Oh Hum. That said I do like NetBird. My favourite VPN solution "would have been" NetMaker, but since features like egress and relay has moved from the CE edition NetBird got one number slot ;-)

    • @christianlempa
      @christianlempa  9 หลายเดือนก่อน

      Cool! Yeah, Netbird is truly amazing

  • @Elker54
    @Elker54 9 หลายเดือนก่อน +2

    Putting MFA behind a paywall is really bad. Why? It makes no sense

    • @netbirdio
      @netbirdio 9 หลายเดือนก่อน +3

      It is not behind a paywall. If you use SSO login with Google, MS, Github, etc and enable MFA there, then you will have it in NetBird automatically. Also in the free plan.
      The paid one is for accounts with username/password where we will need to configure MFA manually.

  • @EDIIIZ
    @EDIIIZ 8 หลายเดือนก่อน

    no IPv6 support unfortunately!

  • @sturdyblock
    @sturdyblock 2 หลายเดือนก่อน +1

    Self host when possible. Using a 3rd party to host your VPN endpoints is an obvious security risk.

  • @tritnaha1345
    @tritnaha1345 7 หลายเดือนก่อน

    It's cool and all, but netbird is severely lacking in documentation - i ended up just reinstalling tailscale

  • @xiLike2Doitx
    @xiLike2Doitx 9 หลายเดือนก่อน

    I wish this would rollout into kubernetes

  • @RazoBeckett.
    @RazoBeckett. 9 หลายเดือนก่อน +1

    hey yooo!

  • @ackwood-it
    @ackwood-it 3 หลายเดือนก่อน

    Hello everyone,
    I found some more time to test the product. The self-hosted version lacks features. I got a business subscription to test it. That's a joke.
    1) If I activate routing, all the firewall rules created are completely ignored. If I deactivate routing, it works again. WTF?
    2) User invitations only work halfway. The recipient receives the invitation and has to enter a new password, but the user remains in pending mode after approval. WTF?
    3) Any anonymous user can access the web UI and sees a pre-selection of the local users that have already been created. WTF?
    Personally, I'm not convinced by the product!

  • @patrickjoseph3412
    @patrickjoseph3412 9 หลายเดือนก่อน

    Las Pollos hermanos... Have the same shirt but purple

  • @drewlarson65
    @drewlarson65 9 หลายเดือนก่อน

    Here's a video idea for ya:
    MacOS: The linux-distro that will make you sad!

    • @christianlempa
      @christianlempa  9 หลายเดือนก่อน

      Nah, I don't want to fight or argue with the linux community :D

  • @39zack
    @39zack 27 วันที่ผ่านมา

    If only VPS was not so expensive :/

    • @christianlempa
      @christianlempa  27 วันที่ผ่านมา

      I heard hostinger has some good deals right now for black week :D

  • @it-fre4ki
    @it-fre4ki 4 หลายเดือนก่อน

    Looks like the OpenZiti product.

  • @shephusted2714
    @shephusted2714 8 หลายเดือนก่อน

    just use wireguard and save money - it is the same core tech

  • @ernestoditerribile
    @ernestoditerribile 9 หลายเดือนก่อน

    Around 8 minutes your screen recording flickers a lot. You are probably using OBS, If you switch to ScreenFlow, You have a way better interface and don't run into those problems.
    Oops it is visible on all dark screens.

  • @wombatpt
    @wombatpt 7 หลายเดือนก่อน +1

    Doesn't work, but thanks for the video.

  • @yongu12
    @yongu12 9 หลายเดือนก่อน

    Netbird draining iphone battery hard. More than 50% of used battery by netbird.

  • @shanagondaarun2436
    @shanagondaarun2436 9 หลายเดือนก่อน

    from my understanding it is glorified and sophisticated tailscale service.

    • @strangetoucane
      @strangetoucane 9 หลายเดือนก่อน

      More like competitor

    • @RazoBeckett.
      @RazoBeckett. 9 หลายเดือนก่อน

      and i am happy using tailscale

    • @_TbT_
      @_TbT_ 9 หลายเดือนก่อน +4

      A correct wording would be: „Tailscale as well as Netbird are controller based Wireguard services.“ There are several other competitors in this space, e.g. Netmaker.

  • @NevillePrakash
    @NevillePrakash 3 หลายเดือนก่อน

    Love the videos Christian and love trying out the different self hosted videos you put up. I have one question am hoping netbird or yourself can help :P . How can I implement this solution if ports 443 / 80 are in use. IE : Traefik