Can't believe how much stuff is blocked in #Turkey, thank christ for @tailscale so I can connect back to my Pi in the shed and carry on the way I normally would!
So much stuff blocked either straight up or soft blocks where stuff just doesn't load.
So, I was pondering installing #headscale on a vps. Mostly because I don't want to give a 3rd party the possibilities to add nodes to my network without my knowledge.
But since that #vps is hosted somewhere, and that vps is not constantly fully encrypted (at runtime), I wonder if it even makes sense not using #tailscale itself.
While tailscale makes a nice and juicy target, my own vps is in a way just as vulnerable. Tailscale has their stuff audited, #headscale I don't know.
For some reason, #zerotier has stopped working for me entirely a few days ago. No hosts in my zerotier network could reach each other anymore. They all display as online and the controller sees them but no actual traffic is being sent or received.
Well, yesterday I decided to finally switch to #tailscale using #headscale as control server. Took about half an hour to set up and works like a charm!
#zerotier #tailscale #headscale
#Selfhosting tip: Consider to distribute your services over many physical machines with as little mutual dependencies as possible. If one goes down (and they do!) you still have the rest running. Some dependencies are difficult to avoid: the proxy server providing convenient access to services through subdomains or the #headscale server coordinating the tailscale network. I have recently moved these to a dedicated #RPi which does nothing else and this has improved stability a lot.
Ich bin gerade am evaluieren, wie ich Dienste (@nextcloud, etc.) für die Familie am beste hoste.
Ich möchte möglichst weit weg von allen kommerziellen Anbietern.
Idee:
Alles im lokalen Netz hosten und via VPN direkt an die Familie liefern.
Ich schaue mir gerade #Headscale an ( #Tailscale erlaubt nur 3 User, bevor heftige Kosten beginnen).
Ist Headscale stabil genug?
Hat das schon jemand mit @homeassistant verbunden?
📬 Headscale für Anfänger: VPN einrichten leicht gemacht
#Tutorials #controlserver #Docker #DuckDNS #Headscale #Tailscale #VPNeinrichten #webinterface https://tarnkappe.info/tutorials/headscale-fuer-anfaenger-vpn-einrichten-leicht-gemacht-275691.html
#webinterface #vpneinrichten #tailscale #headscale #duckdns #docker #controlserver #tutorials
Loving #headscale at the moment. Currently moving all #prometheus traffic over to my new overlay network
#headscale #prometheus #homelab #selfhosted
This is something I need to test some day. Looks useful: “#Headscale #deployment on #Fedora 37”
https://random-it-blog.de/overlay-network/headscale-deployment-on-fedora-37/
#Tailscale #VPN #WireGuard #Linux
#Linux #WireGuard #VPN #tailscale #Fedora #Deployment #headscale
Fantastic article! I thoroughly recommend reading it
https://tailscale.dev/blog/tailscale-sucks
#tailscale #headscale #iot #hardwarehacking #cathair
Update: Looks like some candidantes include: #Tinc (sort of the OG mesh network VPN, which I didn't realize can do NAT traversal), #Tailscale (fully Open Source if the #Headscale frontend is used), #Nebula, #Netmaker (not entirely clear but I THINK this is also open source). Thanks for the suggestions everyone!
#tinc #tailScale #headscale #nebula #netmaker
Switched from reasonably privacy respecting #tailscale to fully #selfhosted #headscale. Not much overall gain in freedom, control and privacy, but the 3rd party headscale webui is really nice, the #android tailscale app now supports headscale, and it always gives me a warm and fuzzy feeling when I host a heavily used service under my own roof.
#tailscale #selfhosted #headscale #android
📰 Découvrez notre article "Créez votre VPN Mesh facilement avec Tailscale et #Headscale" sur notre blog.
🌐 Nous vous expliquons le principe d'un VPN, son fonctionnement et nous vous présentons #Tailscale, un outil pour créer votre propre #VPN.
➡️ https://algoo.fr/fr/actualites/article/creation-facile-vpn-tailscale-et-headscale
The #Tailscale app on #iOS can now be connected to a #Headscale server. Works from version 1.38.1 … nice …#wireguard https://github.com/juanfont/headscale/blob/main/docs/iOS-client.md
#tailscale #ios #headscale #wireguard
@farcaller that was my first thought. #Gefyra Run is like #sshuttle and Bridge is more like #telepresence v1. While v2 supports some more complex multi user flows, but also difficult to maintain and commercial. It would be nice to see simple #tailscale (#headscale) in this field as well running with #k8s
#gefyra #sshuttle #telepresence #Tailscale #headscale #k8s
Trying out #tailscale, but it really sucks, it only supports github, microsoft and google as identity-provider.
I will eventually selfhost #headscale, if I like it, but I'll have to talk with my ISP again before being able to do that.
I'm still kind of at the beginning of my journey, so I'll definitely be checking some of these out.
You might consider trying out #tailscale (with #headscale so you can skip needing SSO creds for the official service, also no worries about any for-pay-only features/limits). I've been very impressed with it so far.
Just last night I got #Immich and PhotoPrism running against my photos. Only have an initial impression at the moment, but I'm sad to say that I'm unimpressed with whatever models PhotoPrism uses - object categorization is... not great.
Immich is fun, but feels less polished/featureful (though it's still early days, so this isn't really a criticism). The Immich mobile app is very promising.
@train @gctaylor @tailscale #headscale is an open source implementation of tailscale. I’ve heard good things about it. It has a pretty strong community behind it too. Netbird seems pretty neat. There’s also firezone, which is another open source option. Unfortunately i have no actual input because I’ve been happy using tailscale for my needs.
Headscale seems to mostly work as a self-managed server for tailscale clients to connect through.
At least for linux, Android and MacOS it works, though there are some tricks such as unlocking the server dialog in the Android client.
Major gap is that it's not currently clear how to create profiles for the iOS app to persuade it to use a custom server.
I have been happily using wireguard to connect some machines together for about 5 years.
Now I want to get a tailscale network set up as an alternative.
Following the big trend of '23, going to try self-hosting it using https://github.com/juanfont/headscale
Let's see how this goes...
#tailscale #headscale #wireguard
I feel like I'm a little late to the party on #Tailscale but it's gotta be my favourite new technology for the ol' #homelab.
The #Headscale project for running your own control server was remarkably easy to set up!
#tailscale #homelab #headscale