[kwlug-disc] Remote access to machine behind CG-NAT

John Sellens jsellens at syonex.com
Sat May 17 22:17:00 EDT 2025


When I was looking for a solution to a similar problem, I found
this reddit discussion useful:
    https://www.reddit.com/r/selfhosted/comments/1cptsdf/tailscale_free_alternative_for_4_people/

I also noticed that zerotier.com offers (I think) similar
functionality to tailscale, and is free up to 10 devices.

I think openvpn requires a 3rd machine as a server, which
may be extra work in your case.  If you have a 3rd machine
with a fixed IP somewhere else, SSH tunneling can help,
depending on your needs.

Hope that helps!

John

On Sat, 2025/05/17 09:34:44PM -0400, Khalid Baheyeldin <kb at 2bits.com> wrote:
| (CG-NAT = Carrier Grade NAT)
| If one has a machine behind a CG-NAT network provider, the
| usual port forwarding techniques and Dynamic DNS no longer
| work.
| 
| What other options do I have?
| There is VPN, where one sets up their own VPN on a virtual
| server. And there are the commercial providers.
| 
| WireGuard seems to be the newer technology with less
| resource utilization. TailScale is a Canadian VPN provider
| who provide hosted WireGuard.
| Anyone tried them? Do they have a free (or low cost) tier?
| 
| There is also the tried and tested OpenVPN, but it uses
| more resources.
| 
| All ideas and recommendations welcome.
| -- 
| Khalid M. Baheyeldin

| _______________________________________________
| kwlug-disc mailing list
| To unsubscribe, send an email to kwlug-disc-leave at kwlug.org
| with the subject "unsubscribe", or email
| kwlug-disc-owner at kwlug.org to contact a human being.



More information about the kwlug-disc mailing list