>openvpn too fucking slow
>the performance tuning that worked years ago isn't working anymore
>say fuck it and deploy tailscale with a foss control plane
>works really well
>does failover and mesh networking
>go to configure routed subnets for site-to-site VPN
>it acts strangely
>tailscale on freebsd doesn't support disabling SNAT across routed subnets
>all my shit's pfsense
So I either need a Linux alternative to pfSense or every site will need a sidecar VM *just* running tailscale