Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Wouldn’t it be better if companies invested more in improving Wireguard and other open source solutions?

How can you trust another company for such an important security service like VPN? What if one of their employees sells you out to the best offer?

In the build vs buy equation, often people forget that if you don’t own the keys of your door, you risk someone locks you out.



Worth noting, the WireGuard creator has specifically mentioned these sort of management features (user auth, automated configuration and coordination, ACL's) as out-of-scope of the WireGuard project. He wanted to keep it as simple as possible, and left it to 3rd parties to develop VPN platforms using WireGuard.


> How can you trust another company for such an important security service like VPN?

It’s pretty easy, you just look at Gartner’s Magic Quadrant and pick one in the upper right hand corner. Any VPN solution can have vulnerabilities and any (same) company would keep it up to date. A lot of hardware firewalls have ASICS to accelerate VPN traffic and this may be a requirement to handle the amount of traffic a company might have.


Not really, WireGuard is a protocol for direct encrypted transfer of bits on the L3 layer. Do something simple and do it well.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: