FOOD FOR THOUGHT Zerotier and PBX

kameleon

Member
Joined
Jul 22, 2009
Messages
111
Reaction score
15
I have seen a few posts about Zerotier here so I wanted to put my two cents in on this as I feel it is not discussed enough. I feel this would be a great workaround to a central PBX with remote nodes or a lot of mobile users without having to deal with opening it to the internet.

A little background: I have been using zerotier for a number of years. I started when they offered 100 free devices. Initially I used it personally and then setup an instance for my work. Once they announced the limitation to 50 I quickly started looking at hosting my own controller as the limit is only if you use their cloud controller. I also have trust issues with security and the potential for a company to silently add its own devices to my instance so the self hosting was a benefit in both regards. It is crazy simple to host your own controller. I have been running my personal one with multiple networks and one for my work each in their own docker containers on separate servers.

Unfortunately the project I was using for the controller is no longer being supported/updated so I am having to change. The benefit of that is I had to actually look to see what was out there with updated features and such. I found a controller that offers a lot more than the one I was using: multiple users with individual permissions, oauth, much improved interface, controller options in the GUI that were not even an option in the command line on the old one just to name a few. This one you can install on a server or do the docker compose route. https://ztnet.network/ is the one I found. Now this is not an advertisement for the controller software as honestly I have not even installed the new one yet. I am only going by what is on the tin. But going by what others who are running it say it is exactly what it appears to be.

I use my zerotier multiple ways:

  • I have a dedicated network for each of my clients machines. This allows me to push updates and such no matter what network they are on. No having to deal with port forwarding or any special sauce. Just point the updates to the ZT IP and bam.... it works.
  • I have another network that all my cellular routers connect to. This allows me to get to the GUI or even ssh session to reboot or do other maintenance tasks without crazy reverse ssh or similar.
  • One network is specifically for an "always on VPN" solution. Basically you setup a linux vm on a network that you want to route all traffic through and when you setup the zt client you enable the route all mode and it will route everything through that server no matter where you are. Its a little more involved but documented very well.
That is just a few ways I use zerotier. So pulling this back to VOIP/IncrediblePBX and how it could benefit us. We could use zerotier on the PBX and not have to worry about opening ports, using port knocker, or even having to open up VPN ports. As long as the server can reach the internet it can connect. This would even work over CGNAT. The problem comes when you have just a lone phone or a remote office. I am thinking that is when a pocket router could be handy for the lone phone situation. For the remote office it would be simple enough to do similar to the pocket router but on a slightly bigger scale and just route all the LAN traffic through the ZT network so it can directly reach the PBX.

Now my question: should this work with the ClearlyIP softphone app? I don't see why it wouldn't but I have not messed with it any either. What about the ClearlyIP phones? Are they able to install other packages like zerotier or are they limited to just what comes in the box? With the recent HP/Poly announcement about them killing off the obitalk I am looking at moving my clients to something easier to support and I like what I see with the ClearlyIP phones.
 
I use Tailscale - dead easy to setup - free personal 3 users 100 devices
With Tailscale installed on my Zorin linux box as a gateway, exit node, and subnet router and installed on my macbook pro I can access all my cloud servers without any additional configuration or whitelisting IPs
 

Members online

No members online now.

Forum statistics

Threads
26,687
Messages
174,411
Members
20,257
Latest member
Dempan
Get 3CX - Absolutely Free!

Link up your team and customers Phone System Live Chat Video Conferencing

Hosted or Self-managed. Up to 10 users free forever. No credit card. Try risk free.

3CX
A 3CX Account with that email already exists. You will be redirected to the Customer Portal to sign in or reset your password if you've forgotten it.
Back
Top