logoalt Hacker News

nativeit04/03/20252 repliesview on HN

> Headscale seems to have nailed down the part of bypassing the firewall and doing fancy NAT-traversal

Did they really roll-their-own for those functions? I thought this was just a control layer on top of Tailscale’s stock services on the backend, are they facilitating connections with novel methods? Apologies if I’m asking obvious questions, I use ZeroTier pretty regularly, but I am not too familiar with Tailscale.


Replies

bingo-bongo04/03/2025

They have a really great in-depth blog post describing how they do it: https://tailscale.com/blog/how-nat-traversal-works

show 2 replies
xrd04/03/2025

Can you share why you use ZeroTier over Tailscale? I run several headscale control planes and it really is nice to self-host. But, I'm curious about other options.

show 1 reply