[arm-allstar] ASL behind CGNAT.

David McGough kb4fxc at inttek.net
Fri Dec 23 03:05:15 EST 2022


Carl,

Some variety of VPN is the best choice for solving NAT issues.

Zerotier is probably the easiest VPN to setup these days.  There are many 
other great choices, too, OpenVPN and WireGuard being favorites.  OpenVPN, 
using pre-shared static keys, is probably the second simplest to setup.

Note that Zerotier does not require any of the member endpoints to use
static IP addresses nor does it need some type of dynamic DNS mechanism to
advertise the current gateway IP address, if the gateway is on a dynamic 
IP (perhaps like home DSL or cable, etc).

Socks5 *might* also work, however, since this protocol isn't natively
supported by AllStar (nor ssh, apache, etc), setup will require jumping
through multiple networking hoops, using client and server endpoints!  
This approach wouldn't be on my prospect list at all, unless it was a
required lab exercise in college, conceived of by some TA wanting to
inflict suffering on the students!!!! LOL


73, David K4FXC




On Tue, 20 Dec 2022, Carl Swanson via ARM-allstar wrote:

> Hive mind,
> 
> What is the general consensus for exposing nodes that sit behind CGNAT?
> Yeah, I know "getting a real IP address" is the proper option, but what has
> the experimenter in you used that worked well and was persistent?
> 
> I'ver looked at VPN solutions, but most of them will only expose HTTP/HTTPS
> on port 80/443, assuming you're using it for streaming whatever.
> 
> Am I really looking for a SOCKS5 proxy?
> 
> I'm experimenting with a Cloudflare tunnel right now to see if I can get
> that to work, but the initial results aren't too promising (or I'm just too
> ham handed with the config)...
> 
> What say y'all?
> 
> 73,
> 
> Carl, K6CRS
> _____________________________________________
> Carl Swanson
> cswa20026 at gmail.com
> _______________________________________________
> 
> ARM-allstar mailing list
> ARM-allstar at hamvoip.org
> http://lists.hamvoip.org/cgi-bin/mailman/listinfo/arm-allstar
> 
> Visit the BBB and RPi2/3/4 web page - http://hamvoip.org
> 



More information about the ARM-allstar mailing list