Live data from Hacker News

Show HN: Netrinos – A keep it simple Mesh VPN for small teams

netrinos.com

31–40 of 75 posts

Re: Show HN: Netrinos – A keep it simple Mesh VPN for small teams

#31
post #26

Earlier quoted context omitted.

Someone is making your IT team do extra work without a good understanding of their systems if they're banning tailscale or granting special network level access thinking that ip or mac address based profiling is secure. Your network should be zero trust. That means you want to treat every host that connects as if it's on the public internet; the corollary to that is you should give your hosts access to the public int…

And then a few of those users who you treated like adults who don't need surveillance make a private network among themselves and other nodes in Russia and China to exfiltrate the corporation's most sensitive intellectual property, serve as a bridge for state-sponsored bad actors to bypass your firewall, and tunnel command-and-control traffic through your "unrestricted" egress, and now your zero-trust philosophy has…

If your threat is state sponsored bad actors you've already failed. OK, great you blocked VPNs. Now they tunneled their vpn through as HTTPS. You successfully annoyed all your legit users and completely failed to stop the real problem.

Re: Show HN: Netrinos – A keep it simple Mesh VPN for small teams

#32
post #16

The "No IT Department" part of your marketing immediately turns me off because that's actively encouraging "shadow IT". We all get that sometimes companies have IT policies which are outdated and get in the way, but that's a problem for someone up the chain to solve. A team or department deciding to just start doing their own thing with something like this which isn't managed by or even known about by the official co…

IT is sometimes dysfunctional and management doesn't care.

Re: Show HN: Netrinos – A keep it simple Mesh VPN for small teams

#33

Naive question here: with WireGuard VPN, does all traffic route through the VPN or only those packets bound for the other devices in the mesh?

WireGuard itself can be configured to work either way. Our target market is smaller teams and people with limited IT skills. So, we chose not to send all traffic through the vpn. The only traffic going through the VPN is traffic to and from your other devices (in your account). Internet access is still through your default network. In the Pro version, you can route specific destinations through other peers, also belo…

Thanks for taking the time to answer! I think I'll be giving this a shot for some upcoming projects.

Re: Show HN: Netrinos – A keep it simple Mesh VPN for small teams

#34
Well, I wish you the best with this - but I really don't understand the target market.

The obvious competitor here is Tailscale. But let's say, reasons, and Tailscale isn't an option. Then you go down the path... TwinGate, Teleport, Netbird, Pomerium, Netmaker, ZeroTier, etc...

Even the initial pricing and free tier are you're up against are going to mostly be a deal breaker compared to what's out there.

Trusting a VPN provider is a lot. If you're running the control plane - why should I trust Netrinos?

Re: Show HN: Netrinos – A keep it simple Mesh VPN for small teams

#35
post #9

Earlier quoted context omitted.

One's banned in my hostel because of a stupid sysadmin. One isn't.

Would you mind revealing which one is banned? I wonder what they are using to make that determination.

They are most likely referring to tailscale in my opinion.

Re: Show HN: Netrinos – A keep it simple Mesh VPN for small teams

#37
post #16

The "No IT Department" part of your marketing immediately turns me off because that's actively encouraging "shadow IT". We all get that sometimes companies have IT policies which are outdated and get in the way, but that's a problem for someone up the chain to solve. A team or department deciding to just start doing their own thing with something like this which isn't managed by or even known about by the official co…

Or it’s a small enough company without an IT department.

Think of an SMB where you might know you need to do something (like connect a new store location to the server in your main location’s closet), but don’t know how or can’t afford to hire an IT person full time. This is probably the main market for this. Then once you get more buy in, experience, and reputation, this VPN could stay to see larger clients. That’s at least how I’d expect to see this grow.

Re: Show HN: Netrinos – A keep it simple Mesh VPN for small teams

#38
post #26

Earlier quoted context omitted.

Someone is making your IT team do extra work without a good understanding of their systems if they're banning tailscale or granting special network level access thinking that ip or mac address based profiling is secure. Your network should be zero trust. That means you want to treat every host that connects as if it's on the public internet; the corollary to that is you should give your hosts access to the public int…

And then a few of those users who you treated like adults who don't need surveillance make a private network among themselves and other nodes in Russia and China to exfiltrate the corporation's most sensitive intellectual property, serve as a bridge for state-sponsored bad actors to bypass your firewall, and tunnel command-and-control traffic through your "unrestricted" egress, and now your zero-trust philosophy has…

What’s the alternative—locking down all legitimate users and still losing the data anyway?

Network controls alone don’t stop exfiltration. HDMI/DP can move data faster than most consumer NICs. Does the system account for that scenario?

Re: Show HN: Netrinos – A keep it simple Mesh VPN for small teams

#39

Well, I wish you the best with this - but I really don't understand the target market. The obvious competitor here is Tailscale. But let's say, reasons, and Tailscale isn't an option. Then you go down the path... TwinGate, Teleport, Netbird, Pomerium, Netmaker, ZeroTier, etc... Even the initial pricing and free tier are you're up against are going to mostly be a deal breaker compared to what's out there. Trusting a V…

Isn’t that true for any new service out there? What’s the market for a search engine? And yet kagi.com is a thing.

Re: Show HN: Netrinos – A keep it simple Mesh VPN for small teams

#40

Well, I wish you the best with this - but I really don't understand the target market. The obvious competitor here is Tailscale. But let's say, reasons, and Tailscale isn't an option. Then you go down the path... TwinGate, Teleport, Netbird, Pomerium, Netmaker, ZeroTier, etc... Even the initial pricing and free tier are you're up against are going to mostly be a deal breaker compared to what's out there. Trusting a V…

Kind of confusing to expect zero competition for a valid opportunity, then you're a category founder with an uphill battle to educate the customer for free, fail, and let the next co swoop in.
Post reply on HN