ML
    • Recent
    • Categories
    • Tags
    • Popular
    • Users
    • Groups
    • Register
    • Login

    ZeroTier - are you using it in production?

    Scheduled Pinned Locked Moved IT Discussion
    30 Posts 8 Posters 3.2k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • DashrenderD
      Dashrender @Francesco Provino
      last edited by

      @Francesco-Provino said in ZeroTier - are you using it in production?:

      I'm using it to connect my laptop to various jump hosts. Other than that, I'm testing it against openvpn to connect a remote office to an ERP. I use the free plan, it's enough for now and works very well.

      Can you answer the other questions I asked?

      F 1 Reply Last reply Reply Quote 0
      • F
        Francesco Provino @Dashrender
        last edited by

        @Dashrender I've deployed it to only the jump hosts in four company, in about half of the machines in my company and almost every machine in my home lab and other AWS instances. I don't use DNS with ZT, because the IP is static and is always the same, no matter from where I connect.

        1 Reply Last reply Reply Quote 0
        • JaredBuschJ
          JaredBusch
          last edited by

          I use it and pay for it to get the alerting.

          I have it on all the servers and then all the sales laptops. A couple users have on their desktops in the office for remoting in.

          To handle DNS, I simply set use the host file on the laptops.

          On the DC, I went into the DNS server and unchecked use all IP addresses and removed ZeroTier from the selection so that it does not auto add to DNS and cause problems for the local users.

          IRJI 1 Reply Last reply Reply Quote 2
          • scottalanmillerS
            scottalanmiller
            last edited by

            We use it in the lab but not in production. Our production is completely LANless.

            DashrenderD 1 Reply Last reply Reply Quote 0
            • JaredBuschJ
              JaredBusch
              last edited by

              0_1483023787098_upload-7d1dc0be-18da-44a2-b3c5-e92609368b3b

              1 Reply Last reply Reply Quote 2
              • JaredBuschJ
                JaredBusch
                last edited by

                I really want to setup a gateway device and merge the LAN and ZT networks into one large network so I do not have to worry about anything at all, but I have not had time to test that.

                Also the service occasionally does not fire up right and users have no idea how to fix it.

                1 Reply Last reply Reply Quote 0
                • IRJI
                  IRJ @JaredBusch
                  last edited by

                  @JaredBusch said in ZeroTier - are you using it in production?:

                  I use it and pay for it to get the alerting.

                  I don't see any pricing anywhere on their website. I also can't find the difference of free vs paid.

                  DashrenderD 1 Reply Last reply Reply Quote 0
                  • DashrenderD
                    Dashrender @scottalanmiller
                    last edited by

                    @scottalanmiller said in ZeroTier - are you using it in production?:

                    We use it in the lab but not in production. Our production is completely LANless.

                    For myself and others, please explain how you achieve a LANless state.

                    1 Reply Last reply Reply Quote 1
                    • DashrenderD
                      Dashrender @IRJ
                      last edited by

                      @IRJ said in ZeroTier - are you using it in production?:

                      @JaredBusch said in ZeroTier - are you using it in production?:

                      I use it and pay for it to get the alerting.

                      I don't see any pricing anywhere on their website. I also can't find the difference of free vs paid.

                      https://www.zerotier.com/product-ss.shtml
                      R0vuTlM.png

                      I thought they upped the free version to 100 devices? Maybe they lowered it again?

                      travisdh1T 1 Reply Last reply Reply Quote 1
                      • DashrenderD
                        Dashrender
                        last edited by

                        I just logged into my ZT account and saw this.

                        dXtYzmj.png

                        1 Reply Last reply Reply Quote 1
                        • travisdh1T
                          travisdh1 @Dashrender
                          last edited by

                          @Dashrender Probably just haven't updated that page.

                          1 Reply Last reply Reply Quote 1
                          • WLS-ITGuyW
                            WLS-ITGuy @Dashrender
                            last edited by WLS-ITGuy

                            @Dashrender said in ZeroTier - are you using it in production?:

                            As the title asks, are you using ZeroTier in production?
                            If yes, please describe your setup.
                            Is it Windows only, or a mix?
                            Do you have it deployed to every user device/server/etc, or only some?
                            Do you have any DNS related issues? If so, how have you solved them?
                            Do the devices that you've installed it on travel both in and out of office? i.e. the machine ends up on the same LAN as the servers?

                            Production
                            Windows & 3 Mac users currently - have 3 linux boxes that it will eventually get installed on.
                            Every device ~ In Office and Mobile users
                            No longer have DNS issues. Had a few early on but seems to be fixed.

                            DashrenderD 2 Replies Last reply Reply Quote 0
                            • DashrenderD
                              Dashrender @WLS-ITGuy
                              last edited by

                              @WLS-ITGuy said in ZeroTier - are you using it in production?:

                              @Dashrender said in ZeroTier - are you using it in production?:

                              As the title asks, are you using ZeroTier in production?
                              If yes, please describe your setup.
                              Is it Windows only, or a mix?
                              Do you have it deployed to every user device/server/etc, or only some?
                              Do you have any DNS related issues? If so, how have you solved them?
                              Do the devices that you've installed it on travel both in and out of office? i.e. the machine ends up on the same LAN as the servers?

                              Production
                              Windows & 3 Mac users currently - have 3 linux boxes that it will eventually get installed on.
                              Every device ~ In Office and Mobile users
                              No longer have DNS issues. Had a few early on but seems to be fixed.

                              Do you have Active Directory?

                              WLS-ITGuyW 1 Reply Last reply Reply Quote 0
                              • WLS-ITGuyW
                                WLS-ITGuy @Dashrender
                                last edited by

                                @Dashrender Yes

                                1 Reply Last reply Reply Quote 0
                                • DashrenderD
                                  Dashrender @WLS-ITGuy
                                  last edited by

                                  @WLS-ITGuy said in ZeroTier - are you using it in production?:

                                  Every device ~ In Office and Mobile users

                                  Do you mobile users ever come into the office and plug/wifi onto the main network?

                                  WLS-ITGuyW 1 Reply Last reply Reply Quote 0
                                  • WLS-ITGuyW
                                    WLS-ITGuy @Dashrender
                                    last edited by

                                    @Dashrender Yes. We are a school so the professors have a home office where they need access to the network and then also use the OnPrem network as well.

                                    Mapped drives work well on both ZeroTier and LAN. I did have some issues where I had to make changes to the host file but I have removed that since we changed the local domain name to simplify things.

                                    DashrenderD 1 Reply Last reply Reply Quote 0
                                    • DashrenderD
                                      Dashrender @WLS-ITGuy
                                      last edited by

                                      @WLS-ITGuy said in ZeroTier - are you using it in production?:

                                      @Dashrender Yes. We are a school so the professors have a home office where they need access to the network and then also use the OnPrem network as well.

                                      Mapped drives work well on both ZeroTier and LAN. I did have some issues where I had to make changes to the host file but I have removed that since we changed the local domain name to simplify things.

                                      Any details you can provide would be great.

                                      My past trials with ZT on a Windows Domain have had massive DNS issues, primarily in the fact that they would register both the local IP and the ZT IP, and DNS would often provide the ZT IP and non ZT PCs couldn't get there. Of course this is solved by putting all PCs on ZT, but won't solve it for things like printers who make DNS calls.

                                      JaredBuschJ 1 Reply Last reply Reply Quote 0
                                      • JaredBuschJ
                                        JaredBusch @Dashrender
                                        last edited by

                                        @Dashrender said in ZeroTier - are you using it in production?:

                                        My past trials with ZT on a Windows Domain have had massive DNS issues, primarily in the fact that they would register both the local IP and the ZT IP, and DNS would often provide the ZT IP and non ZT PCs couldn't get there. Of course this is solved by putting all PCs on ZT, but won't solve it for things like printers who make DNS calls.

                                        Why did you leave DNS actively listening on the ZT addresses?

                                        DashrenderD 1 Reply Last reply Reply Quote 1
                                        • DashrenderD
                                          Dashrender @JaredBusch
                                          last edited by

                                          @JaredBusch said in ZeroTier - are you using it in production?:

                                          @Dashrender said in ZeroTier - are you using it in production?:

                                          My past trials with ZT on a Windows Domain have had massive DNS issues, primarily in the fact that they would register both the local IP and the ZT IP, and DNS would often provide the ZT IP and non ZT PCs couldn't get there. Of course this is solved by putting all PCs on ZT, but won't solve it for things like printers who make DNS calls.

                                          Why did you leave DNS actively listening on the ZT addresses?

                                          Because at the time we were all learning. You replace DNS on AD with Host files. I wonder if you can turn that on it's ear and disable DNS on the local network and only use it on the ZT network if that would be enough to solve the issues? though I'm not sure what you do with things like printers/scanners that use resolution.

                                          JaredBuschJ 1 Reply Last reply Reply Quote 0
                                          • JaredBuschJ
                                            JaredBusch @Dashrender
                                            last edited by

                                            @Dashrender said in ZeroTier - are you using it in production?:

                                            @JaredBusch said in ZeroTier - are you using it in production?:

                                            @Dashrender said in ZeroTier - are you using it in production?:

                                            My past trials with ZT on a Windows Domain have had massive DNS issues, primarily in the fact that they would register both the local IP and the ZT IP, and DNS would often provide the ZT IP and non ZT PCs couldn't get there. Of course this is solved by putting all PCs on ZT, but won't solve it for things like printers who make DNS calls.

                                            Why did you leave DNS actively listening on the ZT addresses?

                                            Because at the time we were all learning. You replace DNS on AD with Host files. I wonder if you can turn that on it's ear and disable DNS on the local network and only use it on the ZT network if that would be enough to solve the issues? though I'm not sure what you do with things like printers/scanners that use resolution.

                                            You are mixing this up. I disable the interface in DNS. I am not replacing DNS with a host. I am specifically using the host file for 2 entries. The domain.local and the dc1.domain.local (same entry) and a entry for internalwebserver.domain.local

                                            Everything else uses normal DNS in or out of the network.

                                            Yes, this means when off the network, the devices only finds the 2 systems with host entries.

                                            Disabling the interface in DNS prevents lots of auto DNS entries on the ZT network getting into the Windows DNS.

                                            DashrenderD 1 Reply Last reply Reply Quote 0
                                            • 1
                                            • 2
                                            • 2 / 2
                                            • First post
                                              Last post