AmneziaWG in RouterOS?

I am still annoyed that MT doesnt make tailscale and zerotier trust as packages as well as this amnezia thingy, mainly due to the fact that originally containers were limited to arm products but as those non-arm products are phased out and containers/apps becomes more stable and supported, you have a decent argument.

A counter argument I propose, is that MT is supposed to be a lower cost alternative for people around the world. We are spoiled in NA, to have unlimited access to information pathways in large Mbps numbers and probably more disposable income. MT provides decent products for a wide range of needs at a relatively low cost. In many countries, there is NOT free access to communication links and thus Amnezia would actually support the strategy and reach that MT is appreciated for.

Since amnezia2, apparently is Backwards compatible, on the fly with amnezia1, AND REGULAR wireguard.
To me its a no-brainer to make amnezia the MAIN wireguard option.
Any client is serviced, regular WG, BTH wireguard, Amnezia1 WG or Amnezia X wireguard.

In fact, its a smarter business model and with future growth potential. I for one would move to amnezia wireguard in a heartbeat as its more secure. Sometimes, I too don’t understand the seeming lack of practicality and foresight at MT, but eventually they come around to their senses. I hear we are getting wifi7 after all :stuck_out_tongue_winking_eye:

1 Like

Honestly I don't see the incentive for Mikrotik to help other companies make money? Releasing “official” packages for Tailscale or Zerotier means they can't promotes their own solution in the future lest it'll be a second class citizen in their own ecosystem. For SOHO/Homeowners Wireguard is more than enough and we had OpenVPN since forever, I agree that there's some friction compared to managed solution but that's UX (and knowledge) problem that can be solved with QuickSet-like UI if they really wanted to cater to casuals

For ARM, yeah, introducing new architecture in the product line is and always will be a shitshow. Fwiw I really respects Mikrotik for their commitment to feature parity where the device allows, in most of other vendor after a few years you're either need to pay for extended support or grab a new device

Containers ecosystem has really matured, OCI images is standardized and what docker do isn't exactly rocket science (jails existed since eons ago). Let them focus on developing containers, and hopefully some kind of vouched image store that's managed by the community but also signed by Mikrotik. After that everyone can run a Minecraft server on their RB5009 for all I care, and complaints why their network is slow…

On Amnezia, say it's frozen and backwards compatible, and there's a CVE on the Amnezia patch, who's responsible? For Wireguard we can rely on the Linux kernel maintainers, I don't see Amnezia community has the resource to do it timely and correctly against the main kernel tree. If it's in Mikrotik then it'll be in, potentially, millions of device

Your logic is flawed.
OpenVPN is on github as is Amnezia, you thus blindly accept one but not the other?
You have no clue what MT does to its version of linux other, and thats all behind closed doors.