

Problem with plain Wireguard is if you can’t open ports on some devices to get a direct connection. It should be just fine with hub and spoke model, but NAT Traversal of Tailscale makes a huge difference. I can get a direct connection between 2 devices connected to mobile data and behind CG-NAT.
And also the config management if you have too many devices.
Hub and spoke, you just add new devices to Wireguard on the main device, and the new peer. Full mesh, oof.
But as far as configuring Wireguard goes, that’s pretty simple. And then there’s the weird stuff with MTU and fragmentation… but that’s not something Wireguard-specific.



There’s at least one Chinese brand that has smartphone with hot-swappable battery: https://rugone.net/products/xever-8
Unfortunately, software from these brands tends to be shit. I feel like they just outsource it to the cheapest company. Especially following this recent thing:
Source - Sophos
Report from Kaspersky