• 9 Posts
  • 230 Comments
Joined 1 year ago
cake
Cake day: July 6th, 2023

help-circle










  • Even after you get your ideal setup with all your traffic transversing your network to a single host, you have bottle necked the whole network to the speed of that single host.

    Usually in networks devices are able to talk to each other directly across switch fabrics and not interdesr with other traffic.

    Say you have four devices A B C D each pair trying to send 1GiB/S of traffic to each other over a GbE network connected to the same switch. A,B gets 1 GbE and C,D gets 1 GbE. For a total concurrent speed of 2GbE.

    In your model since all traffic has to hit the central wireguard node W first you can only get 1GbE speed concurrently









  • is such a hassle it wouldn’t really pass in any company

    Hate to tell you, this is now the norm. Right now, today, thousands of corporate travelers!

    Company creates a travel laptop, perhaps even just a completely empty kiosk laptop. Corporate traveler downloads critical data to the laptop in an enclave (like a presentation). They have a two-factor token with them. If they need to get back to the corporate network for whatever reason, they use remote desktop software and no data is stored on the local device. They’re given policies telling them that if the computer is out of their possession, or view at any time, that the device is not to be used whatsoever afterwards. Contact security and let them deal with it.

    When the traveler comes back to the mothership, laptop is checked into IT, it’s completely wiped.

    Does remote desktop software suck? Yeah. It’s better than the alternative though