this post was submitted on 08 Jul 2023
9 points (100.0% liked)
networking
2839 readers
1 users here now
Community for discussing enterprise networks and the ensuing chaos that comes after inheriting or building one.
founded 2 years ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
view the rest of the comments
Sorry, I commented then went to Europe for 3 weeks; Browsing detox.
Symmetric NAT wouldn't be an issue for Nebula at all -- or WireGuard, as you know, but neither ZeroTier.
If you're worried about CGNAT, it has several ways to deal with it:
https://nebula.defined.net/docs/config/punchy/
The lighthouse can also act as a bastion/proxy and handle the connections for you, if your two nodes can't speak directly.
That being said.... if you're supporting other users, I think wireguard is the way to go.