3 ms·
This makes very little sense to me. Are you proposing to make your own router or switch with this stack in it, or add it onto an Arista or something? What pro
by linuxdude314 6y ago
This makes very little sense to me. Are you proposing to make your own router or switch with this stack in it, or add it onto an Arista or something?
What problem is this solving? Normally things like transit don’t have encryption because it occurs at a higher level.
To me it seems advantageous to keep the pipes dumb, curious of the rational behind this.
- viraptor 6y ago> What problem is this solving? You have two machines on networks you don't know/control and no established identities/accounts. You want to pipe some data between them without setting up a more permanent network like ZeroTier with SSH or other access. > Normally things like transit don’t have encryption because it occurs at a higher level. OpenVPN, IPsec, nebula, ZeroTier, Hamachi, and many others would disagree.
- Throwaway1771 6y agoYeah, I'd be curious to see plaintext pros and cons between this and a quick Wireguard 1:1.
- tangent128 6y agotl;dr: Hyperbeam is roughly a netcat tunnel that connects via a DHT topic instead of network address; use it where you want a secure one-off tunnel. (for example, to transfer a key for Wireguard) Wireguard: + Can tunnel arbitrary IP traffic ~ Has stricter encryption, with full asymmetric keys (and optionally adding a symmetric key) - requires permissions to load a kernel module and configure the network stack Hyperbeam: + Only needs userland UDP sockets, not a kernel module ~ Derives its keys from a passphrase, so does not require transferring a full cryptographic key between devices - is a single application-layer pipe, applicable in shell workflows but not transparently tunneling arbitrary applications
- walrus01 6y ago> Are you proposing to make your own router or switch with this stack in it, this has nothing to do with that, to me this looks like the same general concept as using netcat (nc) to pipe text, but with auto discovery and encryption.