Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
PLG88
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
16 ms
·
121.
▲
by
PLG88
3y ago
Do you want to share publicly (via a URL for anyone) or privately (accessible only with an endpoint and identity)? For the former, zrok frontdoor (by https://docs.zrok.io/docs/guides/frontdoor/ ) protected by
122.
▲
by
PLG88
3y ago
Curious question, why pay for Ngrok when so many free and open source alternatives exist? https://github.com/anderspitman/awesome-tunneling
123.
▲
by
PLG88
3y ago
Super cool. Have you considered using alternative technology that allows more mapping than 1 port, e.g., open source OpenZiti? This is an example of embedding their SDKs into a webhook action to connect to a server in a completely private n
124.
▲
by
PLG88
3y ago
You could also use zrok.io. It's an open source alternative which can be self-hosted or has a free SaaS. It also includes cool features like 'private sharing'. I work on the parent project
125.
▲
by
PLG88
3y ago
zrok.io is a nice open source alternative with free SaaS if you are interested. I work on the project.
126.
▲
by
PLG88
3y ago
Define 'scale'? The earlier mentioned OpenZiti has a bunch of deployments for making APIs 'dark'... in fact, here is a blog from a community memeber - https://medium.com/@rcarrascosps/how-to-create-a
127.
▲
by
PLG88
3y ago
fwiw, OpenZiti is permissively licensed under Apache2.0 as well. I work on the project.
128.
▲
by
PLG88
3y ago
There will be an Android client at some point, but its not available yet. One of the great things about zrok is that its built on OpenZiti, so we use Ziti's components as part of zrok. Ziti has an Android client ( https://pla
129.
▲
by
PLG88
3y ago
For sure. Here's a video with docker - https://www.youtube.com/watch?v=HxyvtFAvwUE&ab_channel=OpenZ... . The real game changer (but may not be relevant you) is zrok is being abled to use the OpenZiti SDKs so that yo
130.
▲
by
PLG88
3y ago
There are but they are all done by companies with an interest and therefore other parties cry foul that their product was not setup to give best performance. fwiw, I work on the OpenZiti project which may interest you too as the overlay is
131.
▲
by
PLG88
3y ago
I believe the best approach is to have a completely open source core product which its own API. You can then have a propriatery multi-tenant platform (incl. hosting, mngt, patching, support, 3rd party integrations etc) which interacts with
132.
▲
by
PLG88
3y ago
That happens if you are using the free version on Ngrok. You could also check out zrok.io, its an open source alternative I work on. We also have a free SaaS version for easy usage.
133.
▲
by
PLG88
3y ago
Lots of alternatives to Ngrok and Cloudflare - https://github.com/anderspitman/awesome-tunneling . What we need is more open source and permissives ones which are well maintained and easy to use. fwiw, I work on one in
134.
▲
by
PLG88
3y ago
Why would you say its better? Looking at the documentation I see the Tailscale replacement use case, I cannot see the Ngrok replacement....
135.
▲
by
PLG88
3y ago
You could use https://zrok.io/ , an open source ngrok alternative. You can self-host and use your own domain.
136.
▲
by
PLG88
3y ago
I work on the parent project to another ngrok alternative called zrok. Its free and open source so you could use it and contribute. We have a free SaaS version too - https://zrok.io/ . It's mostly Go based as parent, Op
137.
▲
by
PLG88
3y ago
Love the zrok mention (I work on the parent project). One note, 0.4 is now released and thus UDP tunnels supported :)
138.
▲
by
PLG88
3y ago
You could use zrok.io. Its an open source alternative to ngrok which you can self host (thus pick you own CNAME etc) as well as supporting TCP/UDP tunneling as of 0.4 release - https://blog.openziti.io/the-road-ahead-fo
139.
▲
by
PLG88
3y ago
Which tailscale vs. openziti article out of interest?
140.
▲
by
PLG88
3y ago
If you like tsnet, you will probably like the open source project I work on called OpenZiti. Its an open source overlay network that allows you to embed zero trust networking and SDN into almost anything - https://github.com/
141.
▲
by
PLG88
3y ago
Tailscale makes outbound connections so it circumvents the need for IPv6 with things like CGNAT. OP, why not use an open source equivalent to Tailscale Funnel? For example, I work on the OpenZiti project and we created zrok.io which is full
142.
▲
by
PLG88
3y ago
Spoiler alert, your cynacism is not misplaced. Its also a very short list, there are a whole bunch more, just check out https://github.com/anderspitman/awesome-tunneling . For example, I work on the project behind zrok.
143.
▲
by
PLG88
3y ago
or zrok.io
144.
▲
by
PLG88
3y ago
Huh, I did not know that about TS, I thought they were always using the nodes. I was leaning on the former point (i.e., private applications rather than public internet), I know OpenZiti fabric does optimisation across available nodes by do
145.
▲
by
PLG88
3y ago
I feel like you are answering your own question though... while a VPN hub and spoke can be faster than standard internet (by having peering relationships which are better than the users local telco - i.e., effectively circumvent and improve
146.
▲
by
PLG88
3y ago
I would note to aborsy comment 'VPN server on a cloud instance, versus running a DERP/relay' that if the overlay is architected 'correctly' then it uses mTLS connections between each hope while having E2E encryption
147.
▲
by
PLG88
3y ago
Exactly. I am awaare of Ockam, I work on the OpenZiti project ( https://github.com/openziti ). I believe our approaches to embed zero trust, private overlay networking into the app is the best way (with tunnelers for non-embe
148.
▲
by
PLG88
3y ago
Good to know, the reference article does not talk about this and I was not aware of the feature set. My personal belief is that the term 'zero trust' comes in shades of grey. I personally believe that anything internet exposed is
149.
▲
by
PLG88
3y ago
NIST SP.800-207: "Zero trust (ZT) is the term for an evolving set of cybersecurity paradigms that move defenses from static, network-based perimeters to focus on users, assets, and resources... [it] assumes there is no implicit trust g
150.
▲
by
PLG88
3y ago
Agreed, I literally just replied to the comment below, that TS/WG approach of connecting devices is not zero trust as our focus should be on protecting 'services', not 'devices'. This requries micro-segmentation, le
More ›